Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.9 MEDIUM
CVE-2026-36616 — Mercusys Hardcoded WiFi Credentials

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key, and default PSK embedded in the production firmware…

| Misconfiguration
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
4.3 MEDIUM
CVE-2026-36615 — Mercusys AC12G Information Disclosure

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 exposes an undocumented /agileconfigreset endpoint that returns internal buffer contents to unauthenticated attackers on the adjacent network.

| Information Disclosure
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
4.3 MEDIUM
CVE-2026-36613 — Mercusys Uninitialized Buffer Information Disclosure

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized internal buffer contents when receiving HTTP POST requests to undefined paths, exposing server state to una…

| Information Disclosure
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
6.4 MEDIUM
CVE-2026-36612 — Mercusys AC12G: WPS 2.0 Weak Lockout Policy

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts).

| Authentication
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
7.3 HIGH
CVE-2026-36611 — Mercusys UPnP Uninitialized Buffer Exposure

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized buffer when receiving POST requests without SOAPAction header on UPnP port 1900, exposing internal memory t…

Remote | Information Disclosure
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
5.9 MEDIUM
CVE-2026-36610 — Mercusys AC12G Cleartext DDNS Credential Transmission

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 transmits DDNS credentials over plaintext HTTP with only Base64 encoding. The firmware contains no TLS implementation, allowing man-in-the-mid…

Remote | Cryptography
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
7.3 HIGH
CVE-2026-36609 — Mercusys AC12G Authentication Bypass via Static Nonce and Predictable Encoding

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 uses a static authentication nonce that does not change between requests from the same source IP. Combined with the predictable XOR-bas…

Remote | Authentication
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
8.8 HIGH
CVE-2026-36608 — Mercusys UPnP Port Forwarding Vulnerability

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the router's own admin interface by accepting its own IP (192.168.1.1) or local…

| Misconfiguration
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
8.8 HIGH
CVE-2026-36607 — Mercusys AC12G Brute-Force Vulnerability

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change endpoint (code=10), which lacks the rate limiting applied to th…

| Authentication
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
7.1 HIGH
CVE-2026-36606 — Mercusys AC12G Configuration Backup DES Encryption Weakness

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 encrypts configuration backups with a hardcoded DES key using single DES in ECB mode. An attacker who obtains a backup file can decrypt…

| Cryptography
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
6.5 MEDIUM
CVE-2026-36605 — Mercusys HTTP Denial of Service

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 is vulnerable to a HTTP denial of service via a low number of crafted incomplete HTTP requests, causing a persistent crash that require…

| Denial of Service
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
6.5 MEDIUM
CVE-2026-36604 — Mercusys AC12G: Host Header Validation Bypass via DNS Rebinding

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 does not validate the HTTP Host header, enabling DNS rebinding attacks. An external attacker can rebind a domain to the router's intern…

Remote | Misconfiguration
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
0.0 NA
CVE-2026-36603 — Mercusys AC12G Router Unauthenticated UPnP Port Mapping Vulnerability

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 exposes 15 of 18 UPnP IGD actions without authentication on port 1900, including AddPortMapping and GetExternalIPAddress. UPnP is enabl…

| Authentication
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
0.0 NA
CVE-2026-36602 — Mercusys AC12G Kernel Memory Disclosure Vulnerability

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 discloses kernel memory layout via the UPnP GetStatusInfo action. An unauthenticated attacker on the adjacent network can obtain a raw …

| Information Disclosure
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
0.0 NA
CVE-2026-36460 — Dovestones ADPhonebook Cross Site Scripting

Dovestones Softwares ADPhonebook before v4.0.1.1 is vulnerable to a Cross Site Scripting vulnerability. The /Admin/Save API allows an authenticated admin user to store malicious JavaScript payloads i…

| Cross-Site Scripting
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
6.1 MEDIUM
CVE-2026-20233 — Cisco Webex Meetings Cross-Site Scripting Vulnerability

A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. Cisco has addressed this…

webex_meetings webex | Remote | Cross-Site Scripting
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
8.6 HIGH
CVE-2026-20230 — Cisco Unified Communications Manager SSRF Vulnerability

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attack…

unified_communications_manager | Remote | Server-Side Request Forgery
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
6.1 MEDIUM
CVE-2026-20175 — Cisco Finesse File Inclusion Vulnerability

A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to b…

finesse | Remote | Path Traversal
Jun 03, 2026 Jun 04, 2026
Jun 03, 2026
Jun 04, 2026
0.0 NA
CVE-2025-71314 — drm/panthor: Recover from panthor_gpu_flush_caches() failures

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Recover from panthor_gpu_flush_caches() failures We have seen a few cases where the whole memory subsystem is blocke…

linux_kernel | Denial of Service
Jun 03, 2026 Jun 03, 2026
Jun 03, 2026
Jun 03, 2026
0.0 NA
CVE-2025-71313 — PCI: endpoint: Add missing NULL check for alloc_workqueue()

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Add missing NULL check for alloc_workqueue() alloc_workqueue() can return NULL on memory allocation failure. Witho…

linux_kernel | Memory Corruption
Jun 03, 2026 Jun 03, 2026
Jun 03, 2026
Jun 03, 2026
Showing 20 of 7149 Results