Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
1379 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Crítica (9.8) | 0.47% | — | Anpviz Ipc-d250AIAnpviz Ipc-d260AIAnpviz Ipc-b850AIAnpviz Ipc-d850AI+13 | 28/5/2024 | 17/6/2026 | Certain Anpviz products allow unauthenticated users to download arbitrary files from the device's filesystem via a HTTP GET request to the /playback/ URI. This affects IPC-D250, IPC-D260, IPC-B850, IPC-D850, IPC-D350, IPC-D3150, IPC-D4250, IPC-D380, IPC-D880, IPC-D280, IPC-D3180, MC800N, YM500L, YM800N_N2, YMF50B,… | |
| Aplazada | Media (4.6) | 0.19% | — | Anpviz Ipc-d250AIAnpviz Ipc-d260AIAnpviz Ipc-b850AIAnpviz Ipc-d850AI+14 | 28/5/2024 | 17/6/2026 | Certain Anpviz products allow unauthenticated users to modify or disable camera related settings such as microphone volume, speaker volume, LED lighting, NTP, motion detection, etc. This affects IPC-D250, IPC-D260, IPC-B850, IPC-D850, IPC-D350, IPC-D3150, IPC-D4250, IPC-D380, IPC-D880, IPC-D280, IPC-D3180, MC800N,… | |
| Aplazada | Alta (7.5) | 0.40% | — | Anpviz Ipc-d250AIAnpviz Ipc-d260AIAnpviz Ipc-b850AIAnpviz Ipc-d850AI+14 | 28/5/2024 | 17/6/2026 | Certain Anpviz products allow unauthenticated users to download the running configuration of the device via a HTTP GET request to /ConfigFile.ini or /config.xml URIs. This configuration file contains usernames and encrypted passwords (encrypted with a hardcoded key common to all devices). This affects IPC-D250,… | |
| Analizada | Alta (8.8) | 0.91% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c. | |
| Analizada | Media (5.7) | 0.23% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c. | |
| Analizada | Media (5.7) | 0.23% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer. | |
| Analizada | Crítica (9.8) | 0.93% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c. | |
| Analizada | Alta (8.8) | 0.91% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c. | |
| Analizada | Alta (7.4) | 0.63% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.c), resulting in the corruption of the instruction pointer. | |
| Analizada | Alta (8.8) | 0.91% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_fill in H5VM.c (called from H5S_select_elements in H5Spoint.c). | |
| Analizada | Crítica (9.1) | 0.99% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a out-of-bounds read operation in H5FL_arr_malloc in H5FL.c (called from H5S_set_extent_simple in H5S.c). | |
| Analizada | Crítica (9.8) | 0.93% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read in H5HG.c (called from H5VL__native_blob_get in H5VLnative_blob.c), resulting in the corruption of the instruction pointer. | |
| Analizada | Alta (7.4) | 0.24% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5F_addr_decode_len in H5Fint.c, resulting in the corruption of the instruction pointer. | |
| Analizada | Alta (7.4) | 0.24% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c, resulting in the corruption of the instruction pointer. | |
| Analizada | Alta (7.4) | 0.24% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of the instruction pointer. | |
| Analizada | Alta (8.8) | 0.81% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of strdup in H5MM_xstrdup in H5MM.c (called from H5G__ent_to_link in H5Glink.c). | |
| Analizada | Alta (7.4) | 0.26% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5O__dtype_encode_helper in H5Odtype.c. | |
| Analizada | Crítica (9.8) | 1.1% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer. | |
| Analizada | Alta (8.8) | 0.94% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c. | |
| Analizada | Alta (7.4) | 0.24% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer over-read in the function H5HL__fl_deserialize in H5HLcache.c, a different vulnerability than CVE-2024-32612. | |
| Analizada | Alta (7.4) | 0.26% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the corruption of the instruction pointer, a different vulnerability than CVE-2024-32613. | |
| Analizada | Crítica (9.8) | 0.95% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 may use an uninitialized value in H5A__attr_release_table in H5Aint.c. | |
| Analizada | Media (5.7) | 0.23% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer. | |
| Analizada | Alta (7.5) | 0.80% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 allows stack consumption in the function H5E_printf_stack in H5Eint.c. | |
| Analizada | Media (5.7) | 0.23% | — | Hdfgroup Hdf5 | 14/5/2024 | 17/6/2026 | HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer. |