Vulnerabilities > Yifanwireless

DATE CVE VULNERABILITY TITLE RISK
2023-10-11 CVE-2023-24479 Improper Authentication vulnerability in Yifanwireless Yf325 Firmware 1.020221108
An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-287
critical
9.8
2023-10-11 CVE-2023-31272 Out-of-bounds Write vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-787
critical
9.8
2023-10-11 CVE-2023-32632 Command Injection vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A command execution vulnerability exists in the validate.so diag_ping_start functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-77
critical
9.8
2023-10-11 CVE-2023-32645 Unspecified vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A leftover debug code vulnerability exists in the httpd debug credentials functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless
critical
9.8
2023-10-11 CVE-2023-34346 Out-of-bounds Write vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A stack-based buffer overflow vulnerability exists in the httpd gwcfg.cgi get functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-787
critical
9.8
2023-10-11 CVE-2023-34365 Out-of-bounds Write vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A stack-based buffer overflow vulnerability exists in the libutils.so nvram_restore functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-787
critical
9.8
2023-10-11 CVE-2023-34426 Out-of-bounds Write vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A stack-based buffer overflow vulnerability exists in the httpd manage_request functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-787
critical
9.8
2023-10-11 CVE-2023-35055 Classic Buffer Overflow vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-120
critical
9.8
2023-10-11 CVE-2023-35056 Classic Buffer Overflow vulnerability in Yifanwireless Yf325 Firmware 1.020221108
A buffer overflow vulnerability exists in the httpd next_page functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-120
critical
9.8
2023-10-11 CVE-2023-35965 Out-of-bounds Write vulnerability in Yifanwireless Yf325 Firmware 1.020221108
Two heap-based buffer overflow vulnerabilities exist in the httpd manage_post functionality of Yifan YF325 v1.0_20221108.
network
low complexity
yifanwireless CWE-787
critical
9.8