Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1220 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.43% | — | Davidepianca98 Kmqtt | 4/12/2024 | 17/6/2026 | An issue in kmqtt v0.2.7 allows attackers to cause a Denial of Service (DoS) via a crafted request. | |
| Aplazada | Alta (7.5) | 0.60% | — | MochimqttAI | 3/12/2024 | 17/6/2026 | mochiMQTT v2.6.3 is vulnerable to Denial of Service (DoS) due to improper resource management. An attacker can exhaust system memory and crash the broker by establishing and maintaining a large number of malicious, long-term publish/subscribe sessions. | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+50 | 2/12/2024 | 17/6/2026 | Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver. | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm 9207 LTE Modem Firmware+325 | 2/12/2024 | 17/6/2026 | Memory corruption when allocating and accessing an entry in an SMEM partition continuously. | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Csrb31024 Firmware+207 | 2/12/2024 | 17/6/2026 | Memory corruption while Configuring the SMR/S2CR register in Bypass mode. | |
| Analizada | Alta (7.8) | 0.11% | — | Qualcomm 9206 LTE Modem FirmwareQualcomm Apq8016 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8039 Firmware+10 | 26/11/2024 | 17/6/2026 | Crafted Binder Request Causes Heap UAF in MediaServer | |
| Analizada | Baja (2.1) | 0.59% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory. We have already fixed the vulnerability in the… | |
| Analizada | Baja (2.1) | 0.59% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory. We have already fixed the vulnerability in the… | |
| Analizada | Baja (2.1) | 0.59% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory. We have already fixed the vulnerability in the… | |
| Analizada | Baja (2.1) | 0.59% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to obtain secret data or modify memory. We have already fixed the vulnerability in the… | |
| Analizada | Alta (7.7) | 0.65% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to obtain secret data or modify memory. We have already fixed the vulnerability in the following… | |
| Analizada | Alta (7.7) | 0.63% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to obtain secret data or modify memory. We have already fixed the vulnerability in the following versions: QTS 5.2.1.2930 build… | |
| Analizada | Media (5.1) | 0.84% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code. We have already fixed the vulnerability in the following versions: QTS… | |
| Analizada | Media (5.1) | 0.84% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code. We have already fixed the vulnerability in the following versions: QTS… | |
| Analizada | Media (5.1) | 0.63% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions:… | |
| Analizada | Media (5.1) | 0.84% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code. We have already fixed the vulnerability in the following versions: QTS… | |
| Analizada | Baja (2.1) | 0.69% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read the contents of unexpected files and expose sensitive data. We have already fixed the vulnerability in the… | |
| Analizada | Media (5.1) | 0.60% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions:… | |
| Analizada | Media (5.1) | 0.85% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code. We have already fixed the vulnerability in the following versions: QTS… | |
| Analizada | Media (5.1) | 0.69% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to read the contents of unexpected files and expose sensitive data. We have already fixed the vulnerability in the… | |
| Analizada | Media (5.1) | 0.60% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions:… | |
| Analizada | Media (5.1) | 0.85% | — | Qnap QTSQnap Quts Hero | 22/11/2024 | 17/6/2026 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to execute code. We have already fixed the vulnerability in the following versions: QTS… | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm Wsa8835 FirmwareQualcomm Wsa8830 FirmwareQualcomm Wsa8815 FirmwareQualcomm Wsa8810 Firmware+202 | 4/11/2024 | 17/6/2026 | Memory corruption while processing GPU page table switch. | |
| Analizada | Alta (7.8) | 0.10% | — | Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+264 | 4/11/2024 | 17/6/2026 | Memory corruption while processing voice packet with arbitrary data received from ADSP. | |
| Analizada | Crítica (9.1) | 0.14% | — | Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+231 | 4/11/2024 | 17/6/2026 | Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |