Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2023-28452 Unspecified vulnerability in Coredns.Io Coredns
An issue was discovered in CoreDNS through 1.10.1.
network
low complexity
coredns-io
7.5
2024-09-18 CVE-2024-34026 Out-of-bounds Write vulnerability in Openplcproject Openplc V3 Firmware 20240404
A stack-based buffer overflow vulnerability exists in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC _v3 b4702061dc14d1024856f71b4543298d77007b88.
network
low complexity
openplcproject CWE-787
critical
9.8
2024-09-18 CVE-2024-36980 Out-of-bounds Read vulnerability in Openplcproject Openplc V3 Firmware 20240404
An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88.
network
low complexity
openplcproject CWE-125
7.5
2024-09-18 CVE-2024-36981 Out-of-bounds Read vulnerability in Openplcproject Openplc V3 Firmware 20240404
An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of OpenPLC_v3 b4702061dc14d1024856f71b4543298d77007b88.
network
low complexity
openplcproject CWE-125
7.5
2024-09-18 CVE-2024-39589 Incorrect Type Conversion or Cast vulnerability in Openplcproject Openplc V3 Firmware 20240528
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a.
network
low complexity
openplcproject CWE-704
7.5
2024-09-18 CVE-2024-39590 Incorrect Type Conversion or Cast vulnerability in Openplcproject Openplc V3 Firmware 20240528
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a.
network
low complexity
openplcproject CWE-704
7.5
2024-09-18 CVE-2024-46550 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the CGIbyFieldName parameter at chglog.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46551 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sBPA_Pwd parameter at inet15.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46552 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sStRtMskShow parameter at ipstrt.cgi.
network
low complexity
draytek CWE-120
7.5
2024-09-18 CVE-2024-46553 Classic Buffer Overflow vulnerability in Draytek Vigor3910 Firmware 4.3.2.6
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ipaddrmsk%d parameter at v2x00.cgi.
network
low complexity
draytek CWE-120
7.5