CVE-2022-37239
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.
Source: CVE-2022-37239
CVE-2022-37239
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.
Source: CVE-2022-37239
CVE-2022-37100
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateMacClone.
Source: CVE-2022-37100
CVE-2022-37099
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateSnat.
Source: CVE-2022-37099
CVE-2022-37082
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a command injection vulnerability via the host_time parameter at the function NTPSyncWithHost.
Source: CVE-2022-37082
CVE-2022-37081
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a command injection vulnerability via the command parameter at setting/setTracerouteCfg.
Source: CVE-2022-37081
CVE-2022-37080
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the command parameter at setting/setTracerouteCfg.
Source: CVE-2022-37080
CVE-2022-37079
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a command injection vulnerability via the hostName parameter in the function setOpModeCfg.
Source: CVE-2022-37079
CVE-2022-37077
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the pppoeUser parameter.
Source: CVE-2022-37077
CVE-2022-37078
TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a command injection vulnerability via the lang parameter at /setting/setLanguageCfg.
Source: CVE-2022-37078
CVE-2022-36455
TOTOLink A3600R V4.1.2cu.5182_B20201102 was discovered to contain a command injection vulnerability via the username parameter in /cstecgi.cgi.
Source: CVE-2022-36455