Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · iptime

iptime

· 1 Critical

Total CVEs

13

Critical

1

Products

352

Search All CVEs →

13

Products (352)

nas4dual firmware4 CVEsa8004t firmware4 CVEsnas1dual4 CVEsnas1dual firmware4 CVEsa8004t4 CVEsnas4dual4 CVEsnas2dual4 CVEsnas2dual firmware4 CVEsc2003 CVEsc200 firmware3 CVEsnas4 firmware2 CVEst50082 CVEst5008 firmware2 CVEsax2004m2 CVEsax2004m firmware2 CVEsnas-i firmware2 CVEsnas-i2 CVEsnas-ii2 CVEsnas-ii firmware2 CVEsnas-iie2 CVEsnas-iie firmware2 CVEsnas1012 CVEsnas101 firmware2 CVEsnas32 CVEsnas3 firmware2 CVEsnas42 CVEsa2004ns-r firmware1 CVEsa2004ns firmware1 CVEsa2004nsplus1 CVEsa2004nsplus firmware1 CVEsa2004plus1 CVEsa2004plus firmware1 CVEsa2004r1 CVEsa2004r firmware1 CVEsa2004se1 CVEsa2004se firmware1 CVEsa20081 CVEsa2008 firmware1 CVEsa31 CVEsa3002mesh1 CVEsa3002mesh firmware1 CVEsa3003ns1 CVEsa3003ns firmware1 CVEsa30041 CVEsa3004-dual1 CVEsa3004-dual firmware1 CVEsa3004 firmware1 CVEsa3004m1 CVEsa3004m firmware1 CVEsa3004ns1 CVEsa3004ns-bcm1 CVEsa3004ns-bcm firmware1 CVEsa3004ns-dual1 CVEsa3004ns-dual firmware1 CVEsa3004ns-m1 CVEsa3004ns-m firmware1 CVEsa3004ns firmware1 CVEsa3004t1 CVEsa3004t firmware1 CVEsa3004tw1 CVEsa3004tw firmware1 CVEsa3008-mu1 CVEsa3008-mu firmware1 CVEsa3041 CVEsa304 firmware1 CVEsa3 firmware1 CVEsa5004ns1 CVEsa5004ns-m1 CVEsa5004ns-m firmware1 CVEsa5004ns firmware1 CVEsa6004mx1 CVEsa6004mx firmware1 CVEsa6004ns1 CVEsa6004ns-m1 CVEsa6004ns-m firmware1 CVEsa6004ns firmware1 CVEsa6041 CVEsa604-v31 CVEsa604-v3 firmware1 CVEsa604-v51 CVEsa604-v5 firmware1 CVEsa604 firmware1 CVEsa604g-mu1 CVEsa604g-mu firmware1 CVEsa604g-skylife1 CVEsa604g-skylife firmware1 CVEsa604m1 CVEsa604m firmware1 CVEsa604mu1 CVEsa604mu firmware1 CVEsa604r1 CVEsa604r firmware1 CVEsa604se1 CVEsa604se firmware1 CVEsa604v1 CVEsa604v firmware1 CVEsa6ns-m1 CVEsa6ns-m firmware1 CVEsa7004m1 CVEsa7004m firmware1 CVEsa704ns-bcm1 CVEsa704ns-bcm firmware1 CVEsa7ns1 CVEsa7ns firmware1 CVEsa8004bcm1 CVEsa8004bcm firmware1 CVEsa8004itl1 CVEsa8004itl firmware1 CVEsa8004ns-m1 CVEsa8004ns-m firmware1 CVEsa8004t-xr1 CVEsa8004t-xr firmware1 CVEsa804ns-mu1 CVEsa804ns-mu firmware1 CVEsa8ns-m1 CVEsa8ns-m firmware1 CVEsa9004m1 CVEsa9004m-x21 CVEsa9004m-x2 firmware1 CVEsa9004m firmware1 CVEsax110001 CVEsax11000 firmware1 CVEsax2002mesh1 CVEsax2002mesh firmware1 CVEsax20041 CVEsax2004 firmware1 CVEsax2004bcm1 CVEsax2004bcm firmware1 CVEsax3000q1 CVEsax3000q firmware1 CVEsax3004bcm1 CVEsax3004bcm firmware1 CVEsax3004itl1 CVEsax3004itl firmware1 CVEsax6000m1 CVEsax6000m firmware1 CVEsax8004bcm1 CVEsax8004bcm firmware1 CVEsax8004m1 CVEsax8004m firmware1 CVEsax8008m1 CVEsax8008m firmware1 CVEsew302n1 CVEsew302n firmware1 CVEsn102e1 CVEsn102e firmware1 CVEsn102eplus1 CVEsn102eplus firmware1 CVEsn102i1 CVEsn102i firmware1 CVEsn102iplus1 CVEsn102iplus firmware1 CVEsn104 black1 CVEsn104 black firmware1 CVEsn104e1 CVEsn104e firmware1 CVEsn104eplus1 CVEsn104eplus firmware1 CVEsn104k1 CVEsn104k firmware1 CVEsn104plus1 CVEsn104plus-i1 CVEsn104plus-i firmware1 CVEsn104plus firmware1 CVEsn104q1 CVEsn104q-i1 CVEsn104q-i firmware1 CVEsn104q firmware1 CVEsn104r1 CVEsn104r firmware1 CVEsn104s-r11 CVEsn104s-r1 firmware1 CVEsn104v1 CVEsn104v firmware1 CVEsn1e1 CVEsn1e firmware1 CVEsn1plus1 CVEsn1plus-i1 CVEsn1plus-i firmware1 CVEsn1plus firmware1 CVEsn1v1 CVEsn1v firmware1 CVEsn2e1 CVEsn2e firmware1 CVEsn2eplus1 CVEsn2eplus firmware1 CVEsn2plus1 CVEsn2plus-i1 CVEsn2plus-i firmware1 CVEsn2plus firmware1 CVEsn2v1 CVEsn2v firmware1 CVEsn2vs1 CVEsn2vs firmware1 CVEsn31 CVEsn3-i1 CVEsn3-i firmware1 CVEsn3 firmware1 CVEsn51 CVEsn5-i1 CVEsn5-i firmware1 CVEsn5 firmware1 CVEsn61 CVEsn6001 CVEsn6004r1 CVEsn6004r firmware1 CVEsn600 firmware1 CVEsn602e1 CVEsn602e firmware1 CVEsn602eplus1 CVEsn602eplus firmware1 CVEsn602se1 CVEsn602se firmware1 CVEsn604 black1 CVEsn604 black firmware1 CVEsn604a1 CVEsn604a firmware1 CVEsn604e1 CVEsn604e firmware1 CVEsn604eplus1 CVEsn604eplus firmware1 CVEsn604plus1 CVEsn604plus-i1 CVEsn604plus-i firmware1 CVEsn604plus firmware1 CVEsn604r1 CVEsn604r firmware1 CVEsn604rplus1 CVEsn604rplus-i1 CVEsn604rplus-i firmware1 CVEsn604rplus firmware1 CVEsn604s1 CVEsn604s firmware1 CVEsn604se1 CVEsn604se firmware1 CVEsn604t1 CVEsn604t firmware1 CVEsn604tplus1 CVEsn604tplus firmware1 CVEsn604v1 CVEsn604v firmware1 CVEsn604vplus1 CVEsn604vplus firmware1 CVEsn6 firmware1 CVEsn7004ns1 CVEsn7004ns firmware1 CVEsn702bcm1 CVEsn702bcm firmware1 CVEsn702e1 CVEsn702e firmware1 CVEsn702eplus1 CVEsn702eplus firmware1 CVEsn702r1 CVEsn702r firmware1 CVEsn704-a31 CVEsn704-a3 firmware1 CVEsn704bcm1 CVEsn704bcm firmware1 CVEsn704e1 CVEsn704e firmware1 CVEsn704eplus1 CVEsn704eplus firmware1 CVEsn704ns1 CVEsn704ns firmware1 CVEsn704qca1 CVEsn704qca firmware1 CVEsn704v31 CVEsn704v3 firmware1 CVEsn8004r1 CVEsn8004r firmware1 CVEsn8004v1 CVEsn8004v firmware1 CVEsn8041 CVEsn804 firmware1 CVEsn804a1 CVEsn804a31 CVEsn804a3 firmware1 CVEsn804a firmware1 CVEsn804r1 CVEsn804r firmware1 CVEsn804t1 CVEsn804t31 CVEsn804t3 firmware1 CVEsn804t firmware1 CVEsn804v1 CVEsn804v firmware1 CVEsn9041 CVEsn904 firmware1 CVEsn904ns1 CVEsn904ns firmware1 CVEsn904plus1 CVEsn904plus firmware1 CVEsn904v1 CVEsn904v firmware1 CVEsnas1 CVEsnas firmware1 CVEsq11 CVEsq1 firmware1 CVEsq3041 CVEsq304 firmware1 CVEsq5041 CVEsq504 firmware1 CVEsq6041 CVEsq604 firmware1 CVEssmart1 CVEssmart firmware1 CVEst160001 CVEst16000 firmware1 CVEst16000m1 CVEst16000m firmware1 CVEst240001 CVEst24000 firmware1 CVEst24000m1 CVEst24000m firmware1 CVEst30041 CVEst3004 firmware1 CVEst30081 CVEst3008 firmware1 CVEst50041 CVEst5004 firmware1 CVEsv3041 CVEsv304 firmware1 CVEsv5041 CVEsv504 firmware1 CVEsv5081 CVEsa11 CVEsv508 firmware1 CVEsa10041 CVEsa1004 firmware1 CVEsa1004ns1 CVEsa1004ns firmware1 CVEsa1004v1 CVEsa1004v firmware1 CVEsa1041 CVEsa104 firmware1 CVEsa104ns1 CVEsa104ns firmware1 CVEsa104r1 CVEsa104r firmware1 CVEsa1 firmware1 CVEsa2003mu1 CVEsa2003mu firmware1 CVEsa2003ns-mu1 CVEsa2003ns-mu firmware1 CVEsa20041 CVEsa2004 firmware1 CVEsa2004mu1 CVEsa2004mu firmware1 CVEsa2004ns1 CVEsa2004ns-mu1 CVEsa2004ns-mu firmware1 CVEsa2004ns-r1 CVEs

Recent Vulnerabilities

View all 13
CVE-2026-24498HIGH 7.5

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in EFM-Networks, Inc. IpTIME T5008, EFM-Networks, Inc. IpTIME AX2004M, EFM-Networks, Inc. IpTIME AX3000Q, EFM-Networks, Inc. IpTIME AX6000M allows Authentication Bypass.This issue affects ipTIME T5008: through 15.26.8; ipTIME AX2004M: through 15.26.8; ipTIME AX3000Q: through 15.26.8; ipTIME AX6000M: through 15.26.8.

CVE-2026-1742MEDIUM 4.7

A vulnerability was identified in EFM ipTIME A8004T 14.18.2. Affected by this vulnerability is the function commit_vpncli_file_upload of the file /cgi/timepro.cgi of the component VPN Service. Such manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2026-1741MEDIUM 6.6

A vulnerability was determined in EFM ipTIME A8004T 14.18.2. Affected is the function httpcon_check_session_url of the file /sess-bin/d.cgi of the component Debug Interface. This manipulation of the argument cmd causes backdoor. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2026-1740HIGH 7.3

A vulnerability was found in EFM ipTIME A8004T 14.18.2. This impacts the function httpcon_check_session_url of the file /cgi/timepro.cgi of the component Hidden Hiddenloginsetup Interface. The manipulation results in improper authentication. The attack may be performed from remote. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2025-55423CRITICAL 9.8

A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to pass port-forwarding information to an upper router is passed to system() without proper validation or sanitization, allowing OS command injection.

CVE-2025-50464MEDIUM 6.5

A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without bounds checking. Since this operation occurs before authentication logic is executed, the vulnerability is exploitable pre-authentication.

CVE-2022-23771HIGH 8.0

This vulnerability occurs in user accounts creation and deleteion related pages of IPTIME NAS products. The vulnerability could be exploited by a lack of validation when a POST request is made to this page. An attacker can use this vulnerability to or delete user accounts, or to escalate arbitrary user privileges.

CVE-2022-23765HIGH 8.0

This vulnerability occured by sending a malicious POST request to a specific page while logged in random user from some family of IPTIME NAS. Remote attackers can steal root privileges by changing the password of the root through a POST request.

CVE-2021-26620HIGH 7.5

An improper authentication vulnerability leading to information leakage was discovered in iptime NAS2dual. Remote attackers are able to steal important information in the server by exploiting vulnerabilities such as insufficient authentication when accessing the shared folder and changing user’s passwords.

CVE-2020-7879HIGH 8.8

This issue was discovered when the ipTIME C200 IP Camera was synchronized with the ipTIME NAS. It is necessary to extract value for ipTIME IP camera because the ipTIME NAS send ans setCookie('[COOKIE]') . The value is transferred to the --header option in wget binary, and there is no validation check. This vulnerability allows remote attackers to execute remote command.

CVE-2021-26614HIGH 7.5

ius_get.cgi in IpTime C200 camera allows remote code execution. A remote attacker may send a crafted parameters to the exposed vulnerable web service interface which invokes the arbitrary shell command.

CVE-2020-7847HIGH 7.4

The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution. This issue affects: pTIME NAS 1.4.36.

CVE-2020-7848HIGH 8.0

The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. To exploit this vulnerability, an attacker can send a GET request that executes arbitrary OS commands via cookie value.