CVE-2026-35085
- EPSS 0.47%
- Veröffentlicht 03.06.2026 10:42:22
- Zuletzt bearbeitet 08.06.2026 17:16:50
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.
CVE-2026-35084
- EPSS 0.46%
- Veröffentlicht 03.06.2026 10:42:03
- Zuletzt bearbeitet 08.06.2026 17:17:07
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.
CVE-2026-35083
- EPSS 0.46%
- Veröffentlicht 03.06.2026 10:41:44
- Zuletzt bearbeitet 08.06.2026 17:17:13
A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.
CVE-2026-35082
- EPSS 0.49%
- Veröffentlicht 03.06.2026 10:41:00
- Zuletzt bearbeitet 08.06.2026 17:17:22
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
CVE-2026-35081
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:40:44
- Zuletzt bearbeitet 08.06.2026 17:17:25
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
CVE-2026-35080
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:40:25
- Zuletzt bearbeitet 08.06.2026 17:17:29
The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
CVE-2026-35079
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:39:51
- Zuletzt bearbeitet 08.06.2026 17:17:32
The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
CVE-2026-35078
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:39:33
- Zuletzt bearbeitet 08.06.2026 17:17:35
The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
CVE-2026-35077
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:39:12
- Zuletzt bearbeitet 08.06.2026 17:17:39
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
CVE-2026-35076
- EPSS 0.37%
- Veröffentlicht 03.06.2026 10:38:49
- Zuletzt bearbeitet 08.06.2026 17:17:42
The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.