CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Cross-site request forgery (CSRF) vulnerability on NEC Aterm WF800HP devices with firmware 1.0.17 and earlier allows remote attackers to hijack the authentication of arbitrary users. |
3Aterm DlinkRealtek26Dir 501 Firmware Dir 515 FirmwareDir 600l Firmware+23 moreApr 22, 2026 May 1, 2015 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023. |