CVE-2015-7246(发布:2017-04-24 14:59:00)NM

[原文]D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account, which makes it easier for remote attackers to obtain administrative access.

CVE-2016-1560(发布:2017-04-21 16:59:00)NM

[原文]ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for the root shell account and (2) support for the support account in the web interface, which allows remote attackers to obtain administrative access via an SSH or HTTP session.

CVE-2016-3109(发布:2017-04-21 16:59:00)NMS

[原文]The backend/Login/load/ script in Shopware before 5.1.5 allows remote attackers to execute arbitrary code.

CVE-2016-1555(发布:2017-04-21 11:59:00)NM

[原文](1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) boardDataWW.php in Netgear WN604 before 3.3.3 and WN802Tv2, WNAP210v2, WNAP320, WNDAP350, WNDAP360, and WNDAP660 before allow remote attackers to execute arbitrary commands.

CVE-2016-1558(发布:2017-04-21 11:59:00)NM

[原文]Buffer overflow in D-Link DAP-2310 2.06 and earlier, DAP-2330 1.06 and earlier, DAP-2360 2.06 and earlier, DAP-2553 H/W ver. B1 3.05 and earlier, DAP-2660 1.11 and earlier, DAP-2690 3.15 and earlier, DAP-2695 1.16 and earlier, DAP-3320 1.00 and earlier, and DAP-3662 1.01 and earlier allows remote attackers to have unspecified impact via a crafted 'dlink_uid' cookie.

CVE-2016-4898(发布:2017-04-13 13:59:00)NM

[原文]The datamover module in the Linux version of NovaBACKUP DataCenter before is vulnerable to remote command execution via unspecified attack vectors.

