漏洞列表 360895
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2024-55026
An issue in the reset_pj.cgi endpoint of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 allows un
CRITICAL 9.8 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55025
Incorrect access control in the VNC component of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 a
MEDIUM 6.5 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55024
An authentication bypass vulnerability in the authorization mechanism of Weintek cMT-3072XH2 easyweb
HIGH 8.8 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55023
Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded encryption k
MEDIUM 5.3 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55022
Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain an authenticated command
HIGH 8.8 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55021
Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded password in
HIGH 7.5 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55020
A command injection vulnerability in the DHCP activation feature of Weintek cMT-3072XH2 easyweb Web
CRITICAL 9.8 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2024-55019
Incorrect access control in the component download_wb.cgi of Weintek cMT-3072XH2 easyweb Web Version
MEDIUM 6.5 2026-03-03
weintek easyweb weintek cmt-3072xh2_firmware
NVD
CVE-2026-3437
An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Portwell
HIGH 7.8 2026-03-03
portwell engineering_toolkits
NVD
CVE-2026-26890
Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage
LOW 2.7 2026-03-03
oretnom23 pharmacy_point_of_sale_system
NVD
CVE-2026-0540
DOMPurify 3.1.3 through 3.3.1 and 2.5.3 through 2.5.8, fixed in commit 729097f, contain a cross-site
MEDIUM 6.1 2026-03-03
cure53 dompurify
NVD
CVE-2025-69765
Tenda AX3 firmware v16.03.12.11 contains a stack overflow in formGetIptv function and the list param
HIGH 7.5 2026-03-03
tenda ax3_firmware
NVD
CVE-2025-67840
Multiple authenticated OS command injection vulnerabilities exist in the Cohesity (formerly Stone Ra
HIGH 7.2 2026-03-03
cohesity tranzman
NVD
CVE-2025-63912
Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to use a weak cryptogra
HIGH 7.5 2026-03-03
cohesity tranzman
NVD
CVE-2025-63911
Cohesity TranZman Migration Appliance Release 4.0 Build 14614 was discovered to contain an authentic
HIGH 7.2 2026-03-03
cohesity tranzman
NVD
CVE-2025-63910
An authenticated arbitrary file upload vulnerability in Cohesity TranZman Migration Appliance Releas
HIGH 7.2 2026-03-03
cohesity tranzman
NVD
CVE-2025-63909
Incorrect access control in the component /opt/SRLtzm/bin/TapeDumper of Cohesity TranZman Migration
HIGH 7.2 2026-03-03
cohesity tranzman
NVD
CVE-2025-15599
DOMPurify 3.1.3 through 3.2.6 and 2.5.3 through 2.5.8 contain a cross-site scripting vulnerability t
MEDIUM 6.1 2026-03-03
cure53 dompurify
NVD
CVE-2023-31044
An issue was discovered in Nokia Impact before Mobile 23_FP1. In Impact DM 19.11 onwards, a remote a
LOW 2.0 2026-03-03
nokia impact_mobile
NVD
CVE-2021-35486
A Cross-Site Request Forgery (CSRF) vulnerability in Nokia IMPACT through 19.11.2.10-202101180421502
HIGH 8.1 2026-03-03
nokia impact_mobile
NVD