cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2018-17127,https://securityvulnerability.io/vulnerability/CVE-2018-17127,,blocking_request.cgi on ASUS GT-AC5300 devices through 3.0.0.4.384_32738 allows remote attackers to cause a denial of service (NULL pointer dereference and device crash) via a request that lacks a timestap parameter.,Asus,Gt-ac5300 Firmware,7.5,HIGH,0.001560000004246831,false,false,false,false,,false,false,2018-09-17T04:00:00.000Z,0 CVE-2018-17020,https://securityvulnerability.io/vulnerability/CVE-2018-17020,,"ASUS GT-AC5300 devices with firmware through 3.0.0.4.384_32738 allow remote attackers to cause a denial of service via a single ""GET / HTTP/1.1\r\n"" line.",Asus,Gt-ac5300 Firmware,7.5,HIGH,0.0015999999595806003,false,false,false,false,,false,false,2018-09-13T19:29:00.000Z,0 CVE-2018-17021,https://securityvulnerability.io/vulnerability/CVE-2018-17021,,Cross-site scripting (XSS) vulnerability on ASUS GT-AC5300 devices with firmware through 3.0.0.4.384_32738 allows remote attackers to inject arbitrary web script or HTML via the appGet.cgi hook parameter.,Asus,Gt-ac5300 Firmware,6.1,MEDIUM,0.0019099999917671084,false,false,false,false,,false,false,2018-09-13T19:29:00.000Z,0 CVE-2018-17022,https://securityvulnerability.io/vulnerability/CVE-2018-17022,,"Stack-based buffer overflow on the ASUS GT-AC5300 router through 3.0.0.4.384_32738 allows remote attackers to cause a denial of service (device crash) or possibly have unspecified other impact by setting a long sh_path0 value and then sending an appGet.cgi?hook=select_list(""Storage_x_SharedPath"") request, because ej_select_list in router/httpd/web.c uses strcpy.",Asus,Gt-ac5300 Firmware,7.2,HIGH,0.006630000192672014,false,false,false,false,,false,false,2018-09-13T19:29:00.000Z,0 CVE-2018-17023,https://securityvulnerability.io/vulnerability/CVE-2018-17023,,Cross-site request forgery (CSRF) vulnerability on ASUS GT-AC5300 routers with firmware through 3.0.0.4.384_32738 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request to start_apply.htm.,Asus,Gt-ac5300 Firmware,8.8,HIGH,0.00887999963015318,false,false,false,false,,false,false,2018-09-13T19:29:00.000Z,0