Latest CVE Feed
-
8.8
HIGHCVE-2025-11292
A weakness has been identified in Belkin F9K1015 1.00.10. Affected is an unknown function of the file /goform/formBSSetSitesurvey. Executing manipulation of the argument wan_ipaddr can lead to command injection. The attack can be launched remotely. The ex... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Injection
-
9.0
HIGHCVE-2025-11293
A security vulnerability has been detected in Belkin F9K1015 1.00.10. Affected by this vulnerability is an unknown functionality of the file /goform/formConnectionSetting. The manipulation of the argument max_Conn leads to buffer overflow. The attack may ... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11294
A vulnerability was detected in Belkin F9K1015 1.00.10. Affected by this issue is some unknown functionality of the file /goform/formL2TPSetup. The manipulation of the argument L2TPUserName results in buffer overflow. The attack may be launched remotely. ... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11295
A flaw has been found in Belkin F9K1015 1.00.10. This affects an unknown part of the file /goform/formPPPoESetup. This manipulation of the argument pppUserName causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been pub... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11296
A vulnerability has been found in Belkin F9K1015 1.00.10. This vulnerability affects unknown code of the file /goform/formPPTPSetup. Such manipulation of the argument pptpUserName leads to buffer overflow. The attack can be executed remotely. The exploit ... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11297
A vulnerability was found in Belkin F9K1015 1.00.10. This issue affects some unknown processing of the file /goform/formSetLanguage. Performing manipulation of the argument webpage results in buffer overflow. The attack is possible to be carried out remot... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
8.8
HIGHCVE-2025-11298
A vulnerability was determined in Belkin F9K1015 1.00.10. Impacted is an unknown function of the file /goform/formSetWanStatic. Executing manipulation of the argument m_wan_ipaddr can lead to command injection. The attack may be performed from remote. The... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Injection
-
9.0
HIGHCVE-2025-11299
A vulnerability was identified in Belkin F9K1015 1.00.10. The affected element is an unknown function of the file /goform/formWanTcpipSetup. The manipulation of the argument pppUserName leads to buffer overflow. It is possible to initiate the attack remot... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11300
A security flaw has been discovered in Belkin F9K1015 1.00.10. The impacted element is an unknown function of the file /goform/formWlanMP. The manipulation of the argument ateFunc results in buffer overflow. It is possible to launch the attack remotely. T... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11301
A weakness has been identified in Belkin F9K1015 1.00.10. This affects an unknown function of the file /goform/formWlanSetupWPS. This manipulation of the argument webpage causes buffer overflow. The attack can be initiated remotely. The exploit has been m... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11302
A security vulnerability has been detected in Belkin F9K1015 1.00.10. This impacts an unknown function of the file /goform/formWpsStart. Such manipulation of the argument pinCode leads to buffer overflow. The attack can be launched remotely. The exploit h... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
8.8
HIGHCVE-2025-11303
A vulnerability was detected in Belkin F9K1015 1.00.10. Affected is an unknown function of the file /goform/mp. Performing manipulation of the argument command results in command injection. The attack may be initiated remotely. The exploit is now public a... Read more
- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Injection
-
6.1
MEDIUMCVE-2025-11306
A vulnerability was found in qianfox FoxCMS up to 1.2. This affects an unknown part of the file /index.php/Search of the component Search Page. The manipulation of the argument keyword results in cross site scripting. The attack can be executed remotely. ... Read more
Affected Products : foxcms- Published: Oct. 05, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Cross-Site Scripting
-
8.2
HIGHCVE-2025-29192
Flowise before 3.0.5 allows XSS via a FORM element and an INPUT element when an admin views the chat log.... Read more
Affected Products : flowise- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Cross-Site Scripting
-
8.2
HIGHCVE-2025-50538
Flowise before 3.0.5 allows XSS via an IFRAME element when an admin views the chat log.... Read more
Affected Products : flowise- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Cross-Site Scripting
-
9.0
HIGHCVE-2025-11324
A vulnerability was identified in Tenda AC18 15.03.05.19(6318). Affected by this vulnerability is an unknown functionality of the file /goform/setNotUpgrade. Such manipulation of the argument newVersion leads to stack-based buffer overflow. The attack can... Read more
- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11325
A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some unknown functionality of the file /goform/fast_setting_pppoe_set. Performing manipulation of the argument Username results in stack-based buffer overflow. ... Read more
- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11326
A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMacFilterSet. Executing manipulation of the argument wifi_chkHz can lead to stack-based buffer overflow. The attack may be performed from ... Read more
- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11327
A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of the file /goform/SetUpnpCfg. The manipulation of the argument upnpEn leads to stack-based buffer overflow. It is possible to initiate th... Read more
- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-11328
A vulnerability was detected in Tenda AC18 15.03.05.19(6318). This issue affects some unknown processing of the file /goform/SetDDNSCfg. The manipulation of the argument ddnsEn results in stack-based buffer overflow. It is possible to launch the attack re... Read more
- Published: Oct. 06, 2025
- Modified: Oct. 07, 2025
- Vuln Type: Memory Corruption