A vulnerability categorized as critical has been discovered in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument wepkey2 results in buffer overflow.
This vulnerability is reported as CVE-2026-7503. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability identified as critical has been detected in nextlevelbuilder GoClaw and GoClaw Lite up to 3.8.5. This affects an unknown function of the component RPC Handler. This manipulation causes improper authorization.
This vulnerability appears as CVE-2026-7505. The attack may be initiated remotely. In addition, an exploit is available.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in SourceCodester Hotel Management System 1.0. This impacts an unknown function of the file /index.php/reservation/check. Such manipulation of the argument room_type leads to sql injection.
This vulnerability is traded as CVE-2026-7506. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability marked as critical has been reported in Bootstrap CMS 0.9.0-alpha. Affected is an unknown function of the file resources/views/pages/show.blade.php of the component Page Creation Handler. Performing a manipulation of the argument body results in code injection. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is known as CVE-2026-7508. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
The code repository of the project has not been active for many years.
A vulnerability described as critical has been identified in OWAP DefectDojo up to 2.55.4. Affected by this vulnerability is an unknown functionality of the component Benchmark/Engagement/Product/Survey. Executing a manipulation can lead to authorization bypass.
This vulnerability is handled as CVE-2026-7510. The attack can be executed remotely. Additionally, an exploit exists.
Upgrading the affected component is recommended.
A vulnerability was found in UTT HiPER 1200GW up to 2.5.3-1703 and classified as critical. The affected element is the function strcpy of the file /goform/formUser. Executing a manipulation can lead to buffer overflow.
This vulnerability is tracked as CVE-2026-7512. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability was found in UTT HiPER 1200GW up to 2.5.3-170306. It has been classified as critical. The impacted element is the function strcpy of the file /goform/formRemoteControl. The manipulation leads to buffer overflow.
This vulnerability is listed as CVE-2026-7513. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability categorized as problematic has been discovered in js2py up to 0.74. Affected by this issue is the function js2py.disable_pyimport of the component API Call Handler. Such manipulation leads to privilege escalation.
This vulnerability is referenced as CVE-2024-28397. The attack needs to be initiated within the local network. Furthermore, an exploit is available.
A vulnerability was found in Camaleon CMS up to 2.8.1. It has been rated as problematic. Affected by this issue is the function download_private_file. Performing a manipulation results in information disclosure.
This vulnerability was named CVE-2024-46987. The attack may be initiated remotely. In addition, an exploit is available.
Upgrading the affected component is advised.
A vulnerability labeled as critical has been found in FreeBSD. This affects an unknown function of the component dhclient. The manipulation results in heap-based buffer overflow.
This vulnerability was named CVE-2026-42512. The attack may be performed from remote. There is no available exploit.
A patch should be applied to remediate this issue.
A vulnerability classified as critical was found in FreeBSD up to p2/p6/p11/p12. This impacts an unknown function of the file dhclient.conf of the component BOOTP File Handler. Such manipulation leads to improper neutralization of quoting syntax.
This vulnerability is listed as CVE-2026-42511. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in FreeBSD. Affected by this vulnerability is an unknown functionality of the component File Descriptor Handler. Performing a manipulation results in stack-based buffer overflow.
This vulnerability is identified as CVE-2026-39457. The attack is only possible with local access. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in FreeBSD. The affected element is an unknown function of the component Message Handler. This manipulation causes heap-based buffer overflow.
The identification of this vulnerability is CVE-2026-35547. The attack needs to be done within the local network. There is no exploit available.
It is suggested to install a patch to address this issue.