Security
Headlines
HeadlinesLatestCVEs

Tag

#git

CVE-2023-45577: bug_submit/D-Link/DI-7xxxx/bug9.md at main · Archerber/bug_submit

An issue in DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the wanid parameter of the H5/speedlimit.data function.

CVE
#vulnerability#git
3 Essential Steps to Strengthen SaaS Security

SaaS security is broad, possibly confusing, but undeniably crucial. Make sure you have the basics in place: discovery, risk assessment, and user access management.

Why Zero Trust Is the Cloud Security Imperative

The security principle of zero trust is the cornerstone of robust cloud security.

CVE-2023-36950: bug_submit/TOTOLINK/loginauth.md at main · Archerber/bug_submit

TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the http_host parameter in the function loginAuth.

CVE-2023-36955: bug_submit/TOTOLINK/CP300+_4.md at main · Archerber/bug_submit

TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the function UploadCustomModule.

CVE-2023-44808: bug_submit/D-Link/DIR-820l/bug3.md at main · Archerber/bug_submit

D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_4507CC function.

CVE-2023-36954: bug_submit/TOTOLINK/CP300+_3.md at main · Archerber/bug_submit

TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.

CVE-2023-36953: bug_submit/TOTOLINK/CP300+_2.md at main · Archerber/bug_submit

TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.

CVE-2023-44809: bug_submit/D-Link/DIR-820l/bug1.md at main · Archerber/bug_submit

D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions.

CVE-2023-45573: bug_submit/D-Link/DI-7xxxx/bug7.md at main · Archerber/bug_submit

Buffer Overflow vulnerability in DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the wild/mx parameter of the ddns.asp function.