cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-37860,https://securityvulnerability.io/vulnerability/CVE-2022-37860,Pre-authentication Command Injection Vulnerability in TP-Link M7350 V3,"The web configuration interface of the TP-Link M7350 V3 is susceptible to a command injection vulnerability, allowing attackers to execute arbitrary commands without prior authentication. This flaw is particularly concerning as it could be exploited to manipulate device settings or access sensitive information, posing a significant risk to network integrity and user data.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.0037700000684708357,false,,false,false,false,,,false,false,,2022-09-12T17:06:10.000Z,0 CVE-2019-13653,https://securityvulnerability.io/vulnerability/CVE-2019-13653,OS Command Injection Vulnerability in TP-Link M7350 Devices,"The TP-Link M7350 devices running specific firmware versions are susceptible to an OS command injection vulnerability that can be exploited by sending specially crafted requests. This could allow attackers to execute arbitrary commands on the device, potentially leading to unauthorized access or manipulation of sensitive data. Users are advised to update to the latest firmware to mitigate this risk.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.0012799999676644802,false,,false,false,false,,,false,false,,2019-10-24T14:58:55.000Z,0 CVE-2019-13652,https://securityvulnerability.io/vulnerability/CVE-2019-13652,OS Command Injection Vulnerability in TP-Link M7350 Devices,"The TP-Link M7350 devices running firmware version 1.0.16 Build 181220 Rel.1116n are susceptible to an OS command injection vulnerability. This security flaw allows an attacker to execute arbitrary OS commands via the 'serviceName' parameter, potentially compromising the device's integrity and enabling unauthorized access to sensitive information.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.1413400024175644,false,,false,false,false,,,false,false,,2019-10-24T14:58:05.000Z,0 CVE-2019-13651,https://securityvulnerability.io/vulnerability/CVE-2019-13651,OS Command Injection Vulnerability in TP-Link M7350 Devices,"The TP-Link M7350 devices have a vulnerability that allows for OS Command Injection through the portMappingProtocol. This issue can potentially allow unauthorized users to execute arbitrary commands on the affected device, posing a significant risk to network security and data integrity.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.25084999203681946,false,,false,false,false,,,false,false,,2019-10-24T14:56:49.000Z,0 CVE-2019-13650,https://securityvulnerability.io/vulnerability/CVE-2019-13650,OS Command Injection Vulnerability in TP-Link M7350 Devices,"The TP-Link M7350 devices are susceptible to an OS Command Injection vulnerability that allows attackers to execute arbitrary commands through manipulated internalPort parameters. This flaw can lead to unauthorized access and potential compromise of the device's functionality, impacting network integrity and security.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.1413400024175644,false,,false,false,false,,,false,false,,2019-10-24T14:55:55.000Z,0 CVE-2019-13649,https://securityvulnerability.io/vulnerability/CVE-2019-13649,OS Command Injection in TP-Link M7350 Devices,"The vulnerability allows attackers to perform OS command injection on TP-Link M7350 devices running version 1.0.16 Build 181220 Rel.1116n. This could enable unauthorized users to execute arbitrary commands on the underlying operating system, posing significant security risks. Users of affected devices should apply available patches to mitigate potential exploits.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.1413400024175644,false,,false,false,false,,,false,false,,2019-10-24T14:54:24.000Z,0 CVE-2019-12104,https://securityvulnerability.io/vulnerability/CVE-2019-12104,Post-Authentication Command Injection Vulnerability in TP-Link M7350 V3,"The TP-Link M7350 V3 web-based configuration interface is susceptible to multiple command injection vulnerabilities that can be exploited once a user has been authenticated. Attackers can leverage this flaw to execute arbitrary commands on the device, compromising its integrity and potentially gaining unauthorized access to sensitive information or network resources. Users are advised to update their firmware to version 190531 or later to mitigate these vulnerabilities.",Tp-link,M7350 Firmware,8.8,HIGH,0.0021899999119341373,false,,false,false,false,,,false,false,,2019-08-14T20:32:43.000Z,0 CVE-2019-12103,https://securityvulnerability.io/vulnerability/CVE-2019-12103,Pre-authentication Command Injection in TP-Link M7350 V3,"The web-based configuration interface of the TP-Link M7350 V3 is susceptible to a pre-authentication command injection vulnerability, allowing attackers to execute arbitrary commands without authentication. This could lead to potentially compromising the device and exploiting sensitive data. Users are advised to update their firmware to versions 190531 and later to mitigate this risk.",Tp-link,M7350 Firmware,9.8,CRITICAL,0.0014299999456852674,false,,false,false,false,,,false,false,,2019-08-14T20:29:31.000Z,0