d1g

2 exploits Active since Feb 2023
CVE-2023-26602 EXPLOITDB CRITICAL text WORKING POC
ASUS ASMB8-iKVM Firmware <= 1.14.51 - Remote Code Execution via SNMP Extension Creation
ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as demonstrated by snmpset for NET-SNMP-EXTEND-MIB with /bin/sh for command execution.
CVSS 9.8
CVE-2023-26609 EXPLOITDB HIGH text WORKING POC
ABUS TVIP 20000-21150 Firmware - Remote Code Execution via Wireless MFT AP Field
ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field.
CVSS 7.2