Overview
Description
A remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of internal functions, aka 'Microsoft SQL Server Remote Code Execution Vulnerability'.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- Ebyte
- Ebyte NE2-D11 Firmware
27 Aug 2026
Published
28 Aug 2026
Updated
CVSS v3.1
CRITICAL (9.8)
EPSS
0.52%
KEV
Description
The Ebyte device relies on client side authentication logic that can be
reproduced by unauthenticated users. An attacker may generate valid
authentication requests and bypass authentication to obtain
administrative access to the device.
Statistics
- 1 Post
Last activity: 10 hours ago
Description
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- Xiiaozet
- Xiiaozet LK100W
27 Aug 2026
Published
28 Aug 2026
Updated
CVSS v3.1
HIGH (8.8)
EPSS
1.22%
KEV
Description
Xiiaozet LK100W is vulnerable to OS command injection through its
web-based management interface. An authenticated attacker may be able to
execute arbitrary operating system commands with elevated privileges,
potentially resulting in unauthorized access to sensitive information or
complete device compromise.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- Xiiaozet
- Xiiaozet LK100W
27 Aug 2026
Published
28 Aug 2026
Updated
CVSS v3.1
CRITICAL (9.8)
EPSS
0.67%
KEV
Description
Xiiaozet LK100Wt contains an authentication weakness within an
administrative service that may allow an attacker to bypass intended
access controls and obtain command execution capabilities. Successful
exploitation could allow unauthorized interaction with privileged
functionality and may lead to complete device compromise.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- Ebyte
- Ebyte NE2-D11 Firmware
27 Aug 2026
Published
28 Aug 2026
Updated
CVSS v3.1
CRITICAL (9.8)
EPSS
0.53%
KEV
Description
Ebyte device web management interface does not consistently enforce
authentication before granting access to administrative functionality.
An unauthenticated remote attacker could access sensitive configuration
information, modify device settings, or disrupt availability.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
Description
In the Linux kernel, the following vulnerability has been resolved:
crypto: algif_aead - Revert to operating out-of-place
This mostly reverts commit 72548b093ee3 except for the copying of
the associated data.
There is no benefit in operating in-place in algif_aead since the
source and destination come from different mappings. Get rid of
all the complexity added for in-place operation and just copy the
AD directly.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- Microsoft
- Microsoft SharePoint Enterprise Server 2016
11 Aug 2026
Published
29 Aug 2026
Updated
CVSS v3.1
HIGH (8.1)
EPSS
2.89%
KEV
Description
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
Statistics
- 1 Post
Last activity: 10 hours ago
Overview
- OpenClaw
- OpenClaw
01 Feb 2026
Published
03 Feb 2026
Updated
CVSS v3.1
HIGH (8.8)
EPSS
23.61%
KEV
Description
OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.
Statistics
- 1 Post
Last activity: 10 hours ago