CVE-2026-100745
A vulnerability has been found in Edimax BR-6428nC 1.16. The impacted element is an unknown function of the file /goform/formWizSurvey of th
CVSS
6.3
Medio
EPSS
0.3%
p21
KEV
—
Exploit Today
6
0-100
Publicado: 27 sept 2026 · Última mod.: 27 sept 2026 · CWE-119 · CWE-121
Sin historial EPSS suficiente todavía.
A vulnerability has been found in Edimax BR-6428nC 1.16. The impacted element is an unknown function of the file /goform/formWizSurvey of the component Wireless Wizard Handler. The manipulation of the argument interface1/interface2 leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
- tzh00203.notion.sitehttps://tzh00203.notion.site/Edimax-BR-6428nC-formWizSurvey-Interface-Stack-Overflow-33db5c52018a80b5b950feb29846006c
- vuldb.comhttps://vuldb.com/cve/CVE-2026-100745
- vuldb.comhttps://vuldb.com/submit/906337
- vuldb.comhttps://vuldb.com/vuln/410616
- vuldb.comhttps://vuldb.com/vuln/410616/cti
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-1008925.3 MED—
——0A vulnerability was found in aligungr UERANSIM up to 3.3.0. This affects the function ULInformationTransfer of the file src/gnb/rrc/handler.cpp of the component nr-gnb. Performing a manipulation of the argument dedicatedNASMessage results in memory corruption. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.3hCVE-2026-1008887.3 ALT—
——0A weakness has been identified in Trusted Domain Project OpenDKIM up to 2.11.0. This affects the function dkim_canon_selecthdrs of the file libopendkim/dkim-canon.c of the component DKIM Signature Header Selection. Executing a manipulation of the argument h can lead to out-of-bounds write. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.4hCVE-2026-88772——
KEV—50Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability5hCVE-2026-1007409.9 CRÍ36.9%
——11A vulnerability was detected in D-Link DIR-895L A1_102b07. Impacted is the function tunnel_set_params of the file tunnel.c of the component L2TP Control Channel Parser. Performing a manipulation results in out-of-bounds write. The attack may be initiated remotely. The exploit is now public and may be used.1dCVE-2026-883887.5 ALT22.3%
——7Espruino 2v29 (commit bffc6d0) contains a stack-based buffer overflow vulnerability in the JavaScript error stack-trace handling path on 64-bit builds. A remote attacker can supply JavaScript input that triggers an exception and reaches jslPrintTokenLineMarker(), which passes the address of a 4-byte int column variable to jsvGetLineAndCol() as a size_t pointer. jsvGetLineAndCol() performs an 8-byte write through the mismatched pointer, overwriting adjacent stack memory.3dCVE-2026-580088.1 ALT1.2%
——0Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured or Implemented Memory Protections.
This issue affects Trusted Firmware: through socfpga_v2.14.0.3d