Common Vulnerabilities and Exposures (CVE)

CVE-2026-3804

Mar 9, 2026 05:32:09 UTC

A security flaw has been discovered in Tenda i3 1.0.0.6(2204). This vulnerability affects the function formWifiMacFilterSet of the file /goform/WifiMacFilterSet. The manipulation of the argument index results in stack-based buffer overflow....

CVE-2025-7195

Mar 9, 2026 05:12:44 UTC

Early versions of Operator-SDK provided an insecure method to allow operator containers to run in environments that used a random UID. Operator-SDK before 0.15.2 provided a script, user_setup, which modifies the permissions of the /etc/pass...

CVE-2026-3803

Mar 9, 2026 05:02:09 UTC

A vulnerability was identified in Tenda i3 1.0.0.6(2204). This affects the function formWifiMacFilterGet of the file /goform/WifiMacFilterGet. The manipulation of the argument index leads to stack-based buffer overflow. It is possible to in...

CVE-2026-30896

Mar 9, 2026 05:01:16 UTC

The installer for Qsee Client versions 1.0.1 and prior insecurely load Dynamic Link Libraries (DLLs). When a user is directed to place some malicious DLL to the same directory and execute the affected installer, then arbitrary code may be e...

CVE-2026-3802

Mar 9, 2026 04:32:09 UTC

A vulnerability was determined in Tenda i3 1.0.0.6(2204). Affected by this issue is the function formexeCommand of the file /goform/exeCommand. Executing a manipulation of the argument cmdinput can lead to stack-based buffer overflow. The a...

CVE-2026-3801

Mar 9, 2026 04:02:10 UTC

A vulnerability was found in Tenda i3 1.0.0.6(2204). Affected by this vulnerability is the function formSetAutoPing of the file /goform/setAutoPing. Performing a manipulation of the argument ping1/ping2 results in stack-based buffer overflo...

CVE-2026-3822

Mar 9, 2026 03:38:35 UTC

Taipower APP developed by Taipower has an Improper Certificate Validation vulnerability. When establishing an HTTPS connection with the server, the application fails to verify the server-side TLS/SSL certificate. This flaw allows an unauthe...

CVE-2026-3800

Mar 9, 2026 03:32:12 UTC

A vulnerability has been found in SourceCodester/janobe Resort Reservation System 1.0. Affected is the function doInsert of the file /controller.php?action=add. Such manipulation of the argument image leads to unrestricted upload. The attac...

CVE-2026-3799

Mar 9, 2026 03:32:09 UTC

A flaw has been found in Tenda i3 1.0.0.6(2204). This impacts the function formSetCfm of the file /goform/setcfm. This manipulation of the argument funcpara1 causes stack-based buffer overflow. Remote exploitation of the attack is possible....

CVE-2026-3798

Mar 9, 2026 03:02:07 UTC

A vulnerability was detected in Comfast CF-AC100 2.6.0.8. This affects the function sub_44AC14 of the file /cgi-bin/mbox-config?method=SET&section=ping_config of the component Request Path Handler. The manipulation results in command inject...

CVE-2026-3631

Mar 9, 2026 02:56:06 UTC

Delta Electronics COMMGR2 has Buffer Over-read DoS vulnerability.

CVE-2026-3630

Mar 9, 2026 02:49:40 UTC

Delta Electronics COMMGR2 has Stack-based Buffer Overflow vulnerability.

CVE-2026-3797

Mar 9, 2026 02:32:20 UTC

A security vulnerability has been detected in Tiandy Video Surveillance System 视频监控平台 7.17.0. The impacted element is the function uploadFile of the file /src/com/tiandy/easy7/core/rest/CLS_REST_File.java. The manipulation of the argument f...

CVE-2026-3796

Mar 9, 2026 02:32:08 UTC

A weakness has been identified in Qi-ANXIN QAX Virus Removal up to 2025-10-22. The affected element is the function ZwTerminateProcess in the library QKSecureIO_Imp.sys of the component Mini Filter Driver. Executing a manipulation can lead ...

CVE-2026-3795

Mar 9, 2026 02:02:07 UTC

A security flaw has been discovered in doramart DoraCMS 3.0.x. Impacted is the function createFileBypath of the file /DoraCMS/server/app/router/api/v1.js. Performing a manipulation results in path traversal. The attack can be initiated remo...