Skip to main content

CWE archive

CWE-77 CVEs

Programmatic archive

3,626 CVEs tagged with CWE-77953 Critical, 1,471 High, 772 Medium, 428 Low, 2 Unrated.

CVE-2026-31255

Published Apr 27, 2026

A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is located in the /goform/SetSambaCfg interface, where improper handling of the guestu…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
16.4
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-7140

Published Apr 27, 2026

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such man…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7139

Published Apr 27, 2026

A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7138

Published Apr 27, 2026

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setNtpCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handl…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7137

Published Apr 27, 2026

A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setStorageCfg of the file /cgi-bin/cstecgi.cgi of the component CGI H…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7136

Published Apr 27, 2026

A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setDmzCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Hand…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-30352

Published Apr 27, 2026

A remote code execution (RCE) vulnerability in the /devserver/start endpoint of leonvanzyl autocoder commit 79d02a allows attackers to execute arbitrary code via providing a craft…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2026-7125

Published Apr 27, 2026

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi of the component CGI…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7124

Published Apr 27, 2026

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. Affected by this vulnerability is the function setIpv6LanCfg of the file /cgi-bin/cstecgi.cgi of the compon…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7123

Published Apr 27, 2026

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function setIptvCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7122

Published Apr 27, 2026

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such ma…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7121

Published Apr 27, 2026

A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. This manipulat…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-7119

Published Apr 27, 2026

A vulnerability was detected in Tenda HG3 2.0. The impacted element is an unknown function of the file /boaform/formCountrystr. The manipulation of the argument countrystr results…

CVSS 7.4 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-7102

Published Apr 27, 2026

A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacMac of the component httpd. The manipulation of the argument…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-7096

Published Apr 27, 2026

A security flaw has been discovered in Tenda HG3 2.0 300003070. This vulnerability affects the function formgponConf of the file /boaform/admin/formgponConf. The manipulation of t…

CVSS 7.4 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-7067

Published Apr 27, 2026

A vulnerability was determined in D-Link DIR-822 A_101. The impacted element is the function system of the file /udhcpcd/dhcpd.c of the component udhcpd DHCP Service. This manipul…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-7066

Published Apr 27, 2026

A vulnerability was found in choieastsea simple-openstack-mcp up to 767b2f4a8154cca344344b9725537a58399e6036. The affected element is the function exec_openstack of the file serve…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7064

Published Apr 26, 2026

A flaw has been found in AgentDeskAI browser-tools-mcp up to 1.2.0. This issue affects some unknown processing of the file browser-tools-server/browser-connector.ts. Executing a m…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7062

Published Apr 26, 2026

A security vulnerability has been detected in Intina47 context-sync up to 2.0.0. This affects an unknown part of the file src/git-integration.ts of the component Git Integration.…

CVSS 5.5 · Medium
evidence mentions
6
Buzz score
26.0

CVE-2026-7061

Published Apr 26, 2026

A weakness has been identified in Toowiredd chatgpt-mcp-server up to 0.1.0. Affected by this issue is some unknown functionality of the file src/services/docker.service.ts of the…

CVSS 5.5 · Medium
evidence mentions
6
Buzz score
26.0

CVE-2026-7058

Published Apr 26, 2026

A vulnerability has been found in 666ghj MiroFish up to 0.1.2. The impacted element is the function SimulationIPCClient.send_command of the file backend/app/services/simulation_ip…

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
24.4

CVE-2026-7039

Published Apr 26, 2026

A security vulnerability has been detected in tufantunc ssh-mcp up to 1.5.0. The affected element is the function shell.write of the file src/index.ts. Such manipulation of the ar…

CVSS 7.1 · High
evidence mentions
5
Buzz score
24.4

CVE-2026-7037

Published Apr 26, 2026

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Ha…

CVSS 8.9 · High
evidence mentions
5
Buzz score
29.4

CVE-2026-6992

Published Apr 25, 2026

A vulnerability was identified in Linksys MR9600 2.0.6.206937. This affects the function BTRequestGetSmartConnectStatus of the file /etc/init.d/run_central2.sh of the component JN…

CVSS 7.3 · High
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-6989

Published Apr 25, 2026

A vulnerability has been found in Tenda F453 up to 1.0.0.3. Impacted is the function TendaTelnet of the file /goform/telnet of the component Telnet Service. Such manipulation lead…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort
Showing 326-350 of 3,626 CVEsPage 14 of 146