Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
237 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.00% | — | Huawei Usg9500 FirmwareHuawei Ngfw Module FirmwareHuawei Secospace Usg6300 FirmwareHuawei Secospace Usg6600 Firmware+1 | 23/5/2016 | 17/6/2026 | Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and USG9500 firewalls with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters." | |
| Modificada | Crítica (9.8) | 2.4% | — | Huawei Nip6300 FirmwareHuawei Secospace Usg6500 FirmwareHuawei Secospace Antiddos8000 FirmwareHuawei Usg9500 Firmware+5 | 23/5/2016 | 17/6/2026 | Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 devices with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute… | |
| Modificada | Alta (7.8) | 2.5% | — | H3C SecbladefwH3C Secpath1000feH3C F1000-e VPN FirewallH3C S5820 Secblade VPN Firewall Module+13 | 28/7/2014 | 16/6/2026 | Unspecified vulnerability in HP and H3C VPN Firewall Module products SECPATH1000FE before 5.20.R3177 and SECBLADEFW before 5.20.R3177 allows remote attackers to cause a denial of service via unknown vectors. | |
| Modificada | Media (6.5) | 3.5% | 💥 Exploit | Huawei ACUHuawei AR 19/29/49Huawei AR G3Huawei ATN+62 | 20/6/2013 | 16/6/2026 | The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605, S9300, S7700, S2300, S3300, S5300, S3300HI, S5300HI, S5306, S6300, S2700, S3700, S5700, S6700, AR G3, H3C AR(OEM IN), AR 19, AR 29, AR 49, Eudemon100E, Eudemon200, Eudemon300, Eudemon500,… | |
| Modificada | Media (5) | 3.9% | — | HP Color Laserjet 3000HP Color Laserjet 3800HP Color Laserjet 4700HP Color Laserjet 4730 MFP+33 | 29/4/2013 | 16/6/2026 | Directory traversal vulnerability in the PostScript Interpreter, as used on the HP LaserJet 4xxx, 5200, 90xx, M30xx, M4345, M50xx, M90xx, P3005, and P4xxx; LaserJet Enterprise P3015; Color LaserJet 3xxx, 47xx, 5550, 9500, CM60xx, CP35xx, CP4005, and CP6015; Color LaserJet Enterprise CP4xxx; and 9250c Digital Sender… | |
| Modificada | Media (6.8) | 0.98% | — | NEC Atermwm3450rnNEC Atermwm3600rNEC Atermwr8160nNEC Atermwr8370n+2 | 19/3/2013 | 16/6/2026 | Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or… | |
| Modificada | Alta (10) | 14% | — | HP Color Laserjet 3000HP Color Laserjet 3800HP Color Laserjet 4700HP Color Laserjet 4730+37 | 1/12/2011 | 16/6/2026 | The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware… | |
| Modificada | Alta (7.6) | 3.0% | — | HP 8100c Digital SenderHP 9100c Digital SenderHP 9200c Digital SenderHP 9250c Digital Sender+150 | 18/3/2009 | 16/6/2026 | The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access. | |
| Modificada | Media (5.1) | 1.1% | — | HP 8100c Digital SenderHP 9100c Digital SenderHP 9200c Digital SenderHP 9250c Digital Sender+150 | 18/3/2009 | 16/6/2026 | Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network… | |
| Modificada | Alta (7.8) | 7.4% | — | HP 9200c Digital SenderHP Color Laserjet 4370mfpHP Color Laserjet 9500mfpHP Laserjet 2410+9 | 5/2/2009 | 16/6/2026 | Directory traversal vulnerability in the HP JetDirect web administration interface in the HP-ChaiSOE 1.0 embedded web server on the LaserJet 9040mfp, LaserJet 9050mfp, and Color LaserJet 9500mfp before firmware 08.110.9; LaserJet 4345mfp and 9200C Digital Sender before firmware 09.120.9; Color LaserJet 4730mfp before… | |
| Modificada | Baja (2.6) | 1.8% | 💥 Exploit | Nokia 9500 | 26/5/2005 | 16/6/2026 | The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it. | |
| Modificada | Media (5) | 2.2% | — | HP Color LaserjetHP Color Laserjet 4600HP Laserjet 2500HP Laserjet 3000+13 | 31/12/2004 | 16/6/2026 | The remote upgrade capability in HP LaserJet 4200 and 4300 printers does not require a password, which allows remote attackers to upgrade firmware. |