Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
481 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.0% | — | Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+10 | 11/2/2022 | 17/6/2026 | A CWE-787: Out-of-bounds Write vulnerability exists that could cause denial of service when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules: BMXNOE0100 (H),… | |
| Modificada | Alta (7.5) | 1.0% | — | Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+10 | 11/2/2022 | 17/6/2026 | A CWE-20: Improper Input Validation vulnerability exists that could cause denial of service of the device when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules:… | |
| Modificada | Alta (7.5) | 0.96% | — | Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+10 | 11/2/2022 | 17/6/2026 | A CWE-200: Information Exposure vulnerability exists that could cause sensitive information of files located in the web root directory to leak when an attacker sends a HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet… | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+676 | 9/2/2022 | 17/6/2026 | Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access. | |
| Modificada | Media (6.6) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.6) | 0.32% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.2) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.7) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Media (4.6) | 0.30% | — | Konicaminolta Bizhub C750i FirmwareKonicaminolta Bizhub C650i FirmwareKonicaminolta Bizhub C550i FirmwareKonicaminolta Bizhub C450i Firmware+83 | 4/1/2022 | 17/6/2026 | Improper handling of exceptional conditions vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650i/C550i/C450i G00-B6 and earlier, bizhub C360i/C300i/C250i G00-B6 and earlier, bizhub 750i/650i/550i/450i G00-37 and earlier, bizhub 360i/300i G00-33 and earlier, bizhub… | |
| Modificada | Media (4.8) | 1.7% | 💥 Exploit | HP Officejet 7110 Firmware | 29/10/2021 | 17/6/2026 | A potential security vulnerability has been identified for the HP OfficeJet 7110 Wide Format ePrinter that enables Cross-Site Scripting (XSS). | |
| Modificada | Alta (7.2) | 57% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 49% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 49% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 49% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 57% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 66% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the action parameter, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 57% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 2.8% | — | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the profile parameter which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 2.8% | — | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the name parameter, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 2.8% | — | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the counter parameter which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.2) | 95% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Crítica (9.8) | 81% | 💥 Exploit | Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+12 | 13/9/2021 | 17/6/2026 | Multiple camera devices by UDP Technology, Geutebrück and other vendors allow unauthenticated remote access to sensitive files due to default user authentication settings. This can lead to manipulation of the device and denial of service. | |
| Modificada | Alta (7.5) | 1.3% | — | Altus Nexto Nx3003 FirmwareAltus Nexto Nx3004 FirmwareAltus Nexto Nx3005 FirmwareAltus Nexto Nx3010 Firmware+11 | 23/8/2021 | 17/6/2026 | Hardcoded .htaccess Credentials for getlogs.cgi exist on Altus Nexto, Nexto Xpress, and Hadron Xtorm devices. This affects Nexto NX3003 1.8.11.0, Nexto NX3004 1.8.11.0, Nexto NX3005 1.8.11.0, Nexto NX3010 1.8.3.0, Nexto NX3020 1.8.3.0, Nexto NX3030 1.8.3.0, Nexto NX5100 1.8.11.0, Nexto NX5101 1.8.11.0, Nexto NX5110… |