Command Injection in apmcfgupload endpoint for DrayTek Gateway Devices (CVE-2024-12987)
CVE number = CVE-2024-12987 A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected
Read MoreThe latest Security Vulnerabilities
CVE number = CVE-2024-12987 A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected
Read MoreCVE-2025-25254- This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fortinet FortiWeb.
Read MoreAn elevation of privilege vulnerability exists when Visual Studio improperly handles pipeline job tokens.
Read MoreA vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device.
Read MoreAn out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files.
Read MoreCVE number = CVE-2025-20188 A vulnerability in the Out-of-Band Access Point (AP) Image Download feature of Cisco IOS XE Software
Read MoreThis vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Cisco IOS XE.
Read MoreSchema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute arbitrary code.
Read MoreThis vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Cisco IOS XE.
Read MoreCVE number = CVE-2024-10445 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology BeeStation BST150-4T
Read More