Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

481 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.0%—Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+1011/2/202217/6/2026
A CWE-787: Out-of-bounds Write vulnerability exists that could cause denial of service when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules: BMXNOE0100 (H),…
ModificadaAlta (7.5)1.0%—Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+1011/2/202217/6/2026
A CWE-20: Improper Input Validation vulnerability exists that could cause denial of service of the device when an attacker sends a specially crafted HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet Communication Modules:…
ModificadaAlta (7.5)0.96%—Schneider-electric Modicon M340 Bmxp342020 FirmwareSchneider-electric Bmxnoe0100 FirmwareSchneider-electric Bmxnoe0110 FirmwareSchneider-electric Bmxnoc0401 Firmware+1011/2/202217/6/2026
A CWE-200: Information Exposure vulnerability exists that could cause sensitive information of files located in the web root directory to leak when an attacker sends a HTTP request to the web server of the device. Affected Product: Modicon M340 CPUs: BMXP34 (Versions prior to V3.40), Modicon M340 X80 Ethernet…
ModificadaAlta (7.8)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6769/2/202217/6/2026
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.
ModificadaMedia (6.6)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
ModificadaMedia (6.6)0.32%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
ModificadaMedia (6.2)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
ModificadaMedia (6.7)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaAlta (7.8)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaAlta (7.8)0.30%—Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+6779/2/202217/6/2026
Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaMedia (4.6)0.30%—Konicaminolta Bizhub C750i FirmwareKonicaminolta Bizhub C650i FirmwareKonicaminolta Bizhub C550i FirmwareKonicaminolta Bizhub C450i Firmware+834/1/202217/6/2026
Improper handling of exceptional conditions vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650i/C550i/C450i G00-B6 and earlier, bizhub C360i/C300i/C250i G00-B6 and earlier, bizhub 750i/650i/550i/450i G00-37 and earlier, bizhub 360i/300i G00-33 and earlier, bizhub…
ModificadaMedia (4.8)1.7%💥 ExploitHP Officejet 7110 Firmware29/10/202117/6/2026
A potential security vulnerability has been identified for the HP OfficeJet 7110 Wide Format ePrinter that enables Cross-Site Scripting (XSS).
ModificadaAlta (7.2)57%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)49%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)49%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)49%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)57%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)66%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the action parameter, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)57%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)2.8%—Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the profile parameter which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)2.8%—Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the name parameter, which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)2.8%—Geutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the counter parameter which may allow an attacker to remotely execute arbitrary code.
ModificadaAlta (7.2)95%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.
ModificadaCrítica (9.8)81%💥 ExploitGeutebrueck G-cam Ebc-2110 FirmwareGeutebrueck G-cam Ebc-2111 FirmwareGeutebrueck G-cam Efd-2241 FirmwareGeutebrueck G-cam Efd-2250 Firmware+1213/9/202117/6/2026
Multiple camera devices by UDP Technology, Geutebrück and other vendors allow unauthenticated remote access to sensitive files due to default user authentication settings. This can lead to manipulation of the device and denial of service.
ModificadaAlta (7.5)1.3%—Altus Nexto Nx3003 FirmwareAltus Nexto Nx3004 FirmwareAltus Nexto Nx3005 FirmwareAltus Nexto Nx3010 Firmware+1123/8/202117/6/2026
Hardcoded .htaccess Credentials for getlogs.cgi exist on Altus Nexto, Nexto Xpress, and Hadron Xtorm devices. This affects Nexto NX3003 1.8.11.0, Nexto NX3004 1.8.11.0, Nexto NX3005 1.8.11.0, Nexto NX3010 1.8.3.0, Nexto NX3020 1.8.3.0, Nexto NX3030 1.8.3.0, Nexto NX5100 1.8.11.0, Nexto NX5101 1.8.11.0, Nexto NX5110…