Public Security Advisories

Proof of Possession.

Coordinated vulnerability disclosures from Argus. Findings, impact, and remediation, published in good faith.

7
Advisories
1
Critical
4
High
2026
Latest

Disclosed

7
  • CRITICAL Disclosed

    Stack Buffer Overflow in ASP Handler

    An unchecked copy length derived from parsed network input causes a stack out-of-bounds write in the wlscan ASP handler.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • MEDIUM Disclosed

    Race Condition in Temporary File Handling

    A non-atomic stat/unlink/fopen sequence on a fixed path in /var/tmp is exploitable via symlink substitution.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • HIGH Disclosed

    Signedness Error in Network Read Path

    Error sentinel values from web_read are propagated as unsigned size arguments to f_write, enabling oversized memory operations.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • HIGH Disclosed

    Path Traversal in File Handler

    Attacker-controlled filename input reaches fopen and unlink calls without canonicalization or directory confinement.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • HIGH Disclosed

    OS Command Injection via Web Interface

    User-controlled CGI parameters and request-derived buffers are embedded into shell command strings and executed without sanitization.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • HIGH Disclosed

    Hardcoded Default Credentials

    A hardcoded default admin password literal is embedded in the binary and used in authentication comparisons.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary
  • MEDIUM Disclosed

    Sensitive Data Exposure in Logs

    Captive portal credentials are written to syslog in plaintext on authentication failure.

    CVE-2026-6822, CVE-2026-6259Inhand Networks / 5G Modem#binary

Under Embargo

0
  • // No embargoed advisories.