CVE-2024-57703 |
Description: Tenda AC8v4 V16.03.34.06 has a stack overflow vulnerability. Affected by this vulnerability is the function setSchedWifi of the file /goform/openSchedWifi. The manipulation of the argument schedEndTime leads to stack-based buffer overflow.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57684 |
Description: An access control issue in the component formDMZ.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the DMZ service of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57683 |
Description: An access control issue in the component websURLFilterAddDel of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the filter settings of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57682 |
Description: An information disclosure vulnerability in the component d_status.asp of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to access sensitive information via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57681 |
Description: An access control issue in the component form2alg.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the agl service of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57680 |
Description: An access control issue in the component form2PortriggerRule.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the port trigger of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57679 |
Description: An access control issue in the component form2RepeaterSetup.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G repeater service of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57678 |
Description: An access control issue in the component form2WlAc.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G mac access control list of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57677 |
Description: An access control issue in the component form2Wan.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the wan service of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|
CVE-2024-57676 |
Description: An access control issue in the component form2WlanBasicSetup.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G wlan service of the device via a crafted POST request.
EPSS Score: 0.04%
January 17th, 2025 (6 months ago)
|