A vulnerability, which was classified as critical, has been found in UTT HiPER 810 1.7.4-141218. The impacted element is the function strcpy of the file /goform/setSysAdm. This manipulation of the argument passwd1 causes buffer overflow.
This vulnerability is registered as CVE-2026-1162. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability classified as problematic was found in pbrong hrms 1.0.1. The affected element is the function UpdateRecruitmentById of the file /handler/recruitment.go. The manipulation results in cross site scripting.
This vulnerability is cataloged as CVE-2026-1161. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in PHPGurukul Directory Management System 1.0. Impacted is an unknown function of the file /index.php of the component Search. The manipulation of the argument searchdata leads to sql injection.
This vulnerability is listed as CVE-2026-1160. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability described as critical has been identified in itsourcecode Online Frozen Foods Ordering System 1.0. This issue affects some unknown processing of the file /order_online.php. Executing a manipulation of the argument product_name can lead to sql injection.
This vulnerability is tracked as CVE-2026-1159. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability marked as critical has been reported in Totolink LR350 9.3.5u.6369_B20220309. This vulnerability affects the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. Performing a manipulation of the argument ssid results in buffer overflow.
This vulnerability is identified as CVE-2026-1158. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability labeled as critical has been found in Totolink LR350 9.3.5u.6369_B20220309. This affects the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument ssid leads to buffer overflow.
This vulnerability is referenced as CVE-2026-1157. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability identified as critical has been detected in Totolink LR350 9.3.5u.6369_B20220309. Affected by this issue is the function setWiFiBasicCfg of the file /cgi-bin/cstecgi.cgi. This manipulation of the argument ssid causes buffer overflow.
The identification of this vulnerability is CVE-2026-1156. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability categorized as critical has been discovered in Totolink LR350 9.3.5u.6369_B20220309. Affected by this vulnerability is the function setWiFiEasyGuestCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ssid results in buffer overflow.
This vulnerability was named CVE-2026-1155. The attack may be performed from remote. In addition, an exploit is available.