Tenda AC9 15.03.06.60_EN httpd SetStaticRouteCfg stack-based overflow

A vulnerability was found in Tenda AC9 15.03.06.60_EN. It has been rated as critical. This issue affects an unknown code of the file /goform/SetStaticRouteCfg of the component httpd. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

Pydio Cells 2.2.9 Parameter format pathname traversal

A vulnerability classified as critical was found in Pydio Cells 2.2.9. Affected by this vulnerability is some unknown processing of the component Parameter Handler. Upgrading to version 2.2.12 eliminates this vulnerability. The upgrade is hosted for download at github.com.