|
1161
|
7.5 |
HIGH
Network
|
-
|
-
|
An application using spring-security-saml2-service-provider and the REDIRECT binding for SAML 2.0 Login or Logout may be vulnerable to a denial of service by way of an unbounded writer that inflates …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-40988
|
2026-06-10 09:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1162
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2026-10238
|
2026-06-10 08:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1163
|
8.1 |
HIGH
Network
|
-
|
-
|
Insecure permissions in bookcars v8.3 allows authenticated attackers to escalate privileges from user to admin via modifying their user type.
|
CWE-284
Improper Access Control
|
CVE-2026-36720
|
2026-06-10 07:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1164
|
7.8 |
HIGH
Local
|
-
|
-
|
Multiple Microsoft-sigend UEFI SHIM bootloaders are vulnerable to SecureBoot bypass. An attacker with administrative privileges or the ability to modify the boot process could use one of the vulnerab…
|
-
|
CVE-2026-8863
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1165
|
6.3 |
MEDIUM
Network
|
-
|
-
|
SemCms 5.0 is vulnerable to Cross Site Request Forgery (CSRF) via crafted POST request to /admin/semcms_user.php.
|
CWE-352
Origin Validation Error
|
CVE-2026-39170
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1166
|
7.5 |
HIGH
Network
|
-
|
-
|
SEMCMS 5.0 is vulnerable to unauthorized access in SEMCMS_copy.php.
|
CWE-284
Improper Access Control
|
CVE-2026-39169
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1167
|
7.5 |
HIGH
Network
|
-
|
-
|
Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the macAddr parameter of the formDelStaState function. This vulnerability allows attackers to c…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-36822
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1168
|
7.5 |
HIGH
Network
|
-
|
-
|
Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the picCropName parameter of the formCropAndSetWewifiPic function. This vulnerability allows at…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-36821
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1169
|
7.5 |
HIGH
Network
|
-
|
-
|
Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the webAuthWhiteUserInfo parameter of the formAddWebAuthWhiteUser function. This vulnerability …
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-36820
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1170
|
7.5 |
HIGH
Network
|
-
|
-
|
Shenzhen Tenda Technology Co., Ltd Tenda W20E v15.11.0.6 was discovered to contain a buffer overflow in the bindMACAddr parameter of the fromSetDhcpRules function. This vulnerability allows attackers…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-36819
|
2026-06-10 06:17 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|