Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Shorabh Karir

Researcher fromKPMG
#13677of 53,633
19.6Total CVSS
Vulnerabilities · 2
Critical
2
PT-2026-7620
9.8
2026-02-11
Device · Device · CVE-2026-24789
**Name of the Vulnerable Software and Affected Versions** Affected versions not specified **Description** An unprotected API endpoint allows an attacker to remotely change the device password without providing authentication. The vulnerable API endpoint is exposed without requiring any form of authentication, enabling unauthorized password modifications. The `password` can be changed remotely via the API. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2026-7621
9.8
2026-02-11
Zlan5143D · Zlan5143D · CVE-2026-25084
**Name of the Vulnerable Software and Affected Versions** ZLAN5143D (affected versions not specified) **Description** Authentication for the device can be bypassed by directly accessing internal URLs. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.