Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

0Xless

#14782of 53,622
18.3Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2023-21013
9.0
2023-02-10
D Link · D-Link Dsl-3782 · CVE-2023-27216
**Name of the Vulnerable Software and Affected Versions** D-Link DSL-3782 version 1.03 **Description** An issue in the D-Link DSL-3782 allows remote authenticated users to execute arbitrary code as root via the network settings page. **Recommendations** For D-Link DSL-3782 version 1.03, consider restricting access to the network settings page until a patch is available. As a temporary workaround, limit the privileges of authenticated users to minimize the risk of exploitation.
PT-2022-27330
9.3
2022-12-06
Py7Zr · Py7Zr · CVE-2022-44900
**Name of the Vulnerable Software and Affected Versions** py7zr versions 0.20.0 and earlier **Description** A directory traversal issue in the `SevenZipFile.extractall()` function allows attackers to write arbitrary files by extracting a crafted 7z file. **Recommendations** For py7zr versions 0.20.0 and earlier, consider disabling the `SevenZipFile.extractall()` function until a patch is available to prevent arbitrary file writes.