Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Doma

#15912of 56,330
18Total CVSS
Vulnerabilities · 2
High
2
PT-2026-30383
9.0
2026-04-04
Unknown · Utt Hiper 1250Gw · CVE-2026-5566
**Name of the Vulnerable Software and Affected Versions** UTT HiPER 1250GW versions prior to 3.2.7-210907-180535 **Description** A buffer overflow exists in the `/goform/formNatStaticMap` endpoint. The issue occurs due to improper handling of the `NatBind` argument within the `strcpy()` function, which allows unauthenticated remote exploitation. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, restrict access to the `/goform/formNatStaticMap` endpoint to minimize the risk of exploitation.
PT-2026-30384
9.0
2026-04-04
Tenda · Tenda M3 · CVE-2026-5567
Name of the Vulnerable Software and Affected Versions Tenda M3 version 1.0.0.10 Description A flaw exists in the Destination Handler component of Tenda M3 version 1.0.0.10. Manipulation of the `policyType` argument in the `setAdvPolicyData` function, accessible via the '/goform/setAdvPolicyData' endpoint, can lead to a buffer overflow. This issue can be exploited remotely. Recommendations For Tenda M3 version 1.0.0.10, avoid manipulating the `policyType` argument in the `setAdvPolicyData` function via the '/goform/setAdvPolicyData' endpoint.