CVE-2026-44854
- EPSS 0.26%
- Veröffentlicht 12.05.2026 18:58:19
- Zuletzt bearbeitet 14.05.2026 15:12:35
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the underlying operating system, po...
CVE-2026-44853
- EPSS 0.26%
- Veröffentlicht 12.05.2026 18:56:48
- Zuletzt bearbeitet 14.05.2026 15:05:17
Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to upload arbitrary files to the underlying operating system, po...
CVE-2026-44852
- EPSS 0.09%
- Veröffentlicht 12.05.2026 18:55:53
- Zuletzt bearbeitet 15.05.2026 21:16:36
An authenticated remote code execution vulnerability exists in the AOS-8 and AOS-10 web-based management interface. A vulnerability in the certificate download functionality could allow an authenticated remote attacker to overwrite arbitrary files on...
CVE-2026-23827
- EPSS 0.12%
- Veröffentlicht 12.05.2026 18:54:47
- Zuletzt bearbeitet 15.05.2026 12:45:03
A heap-based buffer overflow vulnerability exists in a Network management service of AOS-8 and AOS-10 that could allow an unauthenticated remote attacker to achieve remote code execution. Successful exploitation could allow an unauthenticated attacke...
CVE-2026-23826
- EPSS 0.08%
- Veröffentlicht 12.05.2026 18:53:47
- Zuletzt bearbeitet 15.05.2026 12:44:58
A vulnerability in a network management service of AOS-8 Operating System could allow an unauthenticated remote attacker to exploit this vulnerability by sending specially crafted network packets to the affected device, potentially resulting in a den...
CVE-2026-23825
- EPSS 0.07%
- Veröffentlicht 12.05.2026 18:52:50
- Zuletzt bearbeitet 15.05.2026 12:44:47
Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacker could exploit these vulnerabilities by sending specially crafted network messages to the affected service. Due to insufficient ...
CVE-2026-23824
- EPSS 0.03%
- Veröffentlicht 12.05.2026 18:51:54
- Zuletzt bearbeitet 15.05.2026 12:44:50
Vulnerabilities exist in a protocol-handling component of AOS-8 and AOS-10 Operating Systems. An unauthenticated attacker could exploit these vulnerabilities by sending specially crafted network messages to the affected service. Due to insufficient ...
CVE-2026-23812
- EPSS 0.02%
- Veröffentlicht 04.03.2026 16:13:48
- Zuletzt bearbeitet 09.03.2026 19:14:53
A vulnerability has been identified where an attacker connecting to an access point as a standard wired or wireless client can impersonate a gateway by leveraging an address-based spoofing technique. Successful exploitation enables the redirection of...
CVE-2026-23811
- EPSS 0.02%
- Veröffentlicht 04.03.2026 16:12:32
- Zuletzt bearbeitet 09.03.2026 19:19:27
A vulnerability in the client isolation mechanism may allow an attacker to bypass Layer 2 (L2) communication restrictions between clients and redirect traffic at Layer 3 (L3). In addition to bypassing policy enforcement, successful exploitation - whe...
CVE-2026-23810
- EPSS 0.04%
- Veröffentlicht 04.03.2026 16:11:35
- Zuletzt bearbeitet 09.03.2026 19:20:48
A vulnerability in the packet processing logic may allow an authenticated attacker to craft and transmit a malicious Wi-Fi frame that causes an Access Point (AP) to classify the frame as group-addressed traffic and re-encrypt it using the Group Tempo...