Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2740▼ 483 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

307 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)0.99%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.0-2.2.0.4; Prior to 8.7.1.3, 8.6.0.9, 8.5.0.12, 8.3.0.16, 6.5.4.19, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address…
ModificadaMedia (6.5)1.1%—Arubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote path traversal vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.8.0.1, 8.7.1.4, 8.6.0.11, 8.5.0.13. Aruba has released patches for ArubaOS that address this security vulnerability.
ModificadaAlta (8.1)0.40%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.8.0.1, 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that…
ModificadaAlta (7.2)3.1%—Arubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability.
ModificadaAlta (7.2)3.1%—Arubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.16. Aruba has released patches for ArubaOS that address this security vulnerability.
ModificadaAlta (7.2)3.1%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS…
ModificadaAlta (7.2)3.1%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS…
ModificadaAlta (7.2)3.1%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS…
ModificadaAlta (7.2)2.9%—Arubanetworks Sd-wanArubanetworks Arubaos7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.4, 8.6.0.9, 8.5.0.13, 8.3.0.16, 6.5.4.20, 6.4.4.25. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS…
ModificadaAlta (7.2)3.1%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this…
ModificadaAlta (7.2)3.1%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.6; Prior to 8.7.1.4, 8.6.0.7, 8.5.0.12, 8.3.0.16. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this…
ModificadaCrítica (9.8)2.4%—Arubanetworks Sd-wanArubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1.2, 8.6.0.8, 8.5.0.12, 8.3.0.15. Aruba has released patches for Aruba SD-WAN Software and Gateways and ArubaOS that address this security…
ModificadaMedia (6.5)0.39%—Arubanetworks ArubaosSiemens Scalance W1750d Firmware7/9/202117/6/2026
A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba Operating System Software version(s): 6.x.x.x: all versions, 8.x.x.x: all versions prior to 8.8.0.0. Aruba has released patches for ArubaOS that address this security vulnerability.
ModificadaAlta (7.2)1.6%—Arubanetworks ArubaosArubanetworks Sd-wan11/12/202017/6/2026
Two vulnerabilities in ArubaOS GRUB2 implementation allows for an attacker to bypass secureboot. Successful exploitation of this vulnerability this could lead to remote compromise of system integrity by allowing an attacker to load an untrusted or modified kernel in Aruba 9000 Gateway; Aruba 7000 Series Mobility…
ModificadaCrítica (9.8)2.1%—Arubanetworks ArubaosArubanetworks Sd-wan11/12/202017/6/2026
An attacker is able to remotely inject arbitrary commands by sending especially crafted packets destined to the PAPI (Aruba Networks AP Management protocol) UDP port (8211) of access-pointsor controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers; Aruba 7200 Series Mobility Controllers version(s):…
ModificadaCrítica (9.8)5.1%—Arubanetworks ArubaosArubanetworks Sd-wan11/12/202017/6/2026
There are multiple buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sending especially crafted packets destined to the PAPI (Aruba Networks AP management protocol) UDP port (8211) of access-points or controllers in Aruba 9000 Gateway; Aruba 7000 Series Mobility Controllers;…
ModificadaAlta (7.5)2.7%—Arubanetworks AirwaveArubanetworks Aruba InstantArubanetworks Arubaos31/1/202017/6/2026
A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called RabbitMQ, which could let a malicious user obtain sensitive information. This interface listens on TCP port 15672 and 55672
ModificadaCrítica (9.8)5.1%—Arubanetworks AirwaveArubanetworks Aruba InstantArubanetworks ArubaosSiemens Scalance W1750d Firmware31/1/202017/6/2026
Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient checking of parameters, which could allow a malicious user to bypass security restrictions, obtain sensitive information, perform unauthorized actions and execute arbitrary…
ModificadaAlta (7.2)2.2%—Arubanetworks Arubaos13/9/201917/6/2026
A command injection vulnerability is present in the web management interface of ArubaOS that permits an authenticated user to execute arbitrary commands on the underlying operating system. A malicious administrator could use this ability to install backdoors or change system configuration in a way that would not be…
ModificadaMedia (6.1)0.64%—Arubanetworks Arubaos13/9/201917/6/2026
Some web components in the ArubaOS software are vulnerable to HTTP Response splitting (CRLF injection) and Reflected XSS. An attacker would be able to accomplish this by sending certain URL parameters that would trigger this vulnerability.
ModificadaCrítica (9.8)5.9%—Arubanetworks Arubaos13/9/201917/6/2026
A remote code execution vulnerability is present in network-listening components in some versions of ArubaOS. An attacker with the ability to transmit specially-crafted IP traffic to a mobility controller could exploit this vulnerability and cause a process crash or to execute arbitrary code within the underlying…
ModificadaAlta (7.5)0.64%—Arubanetworks ArubaosArubanetworks 203rp FirmwareArubanetworks 203r FirmwareArubanetworks Ap-300 Series Access Points Firmware+17/12/201817/6/2026
A vulnerability exists in the firmware of embedded BLE radios that are part of some Aruba Access points. An attacker who is able to exploit the vulnerability could install new, potentially malicious firmware into the AP's BLE radio and could then gain access to the AP's console port. This vulnerability is applicable…
ModificadaAlta (7.5)3.6%—HPE Arubaos6/8/201817/6/2026
Multiple memory corruption flaws are present in ArubaOS which could allow an unauthenticated user to crash ArubaOS processes. With sufficient time and effort, it is possible these vulnerabilities could lead to the ability to execute arbitrary code - remote code execution has not yet been confirmed.
ModificadaCrítica (9.8)5.7%—HP Arubaos6/8/201817/6/2026
ArubaOS, all versions prior to 6.3.1.25, 6.4 prior to 6.4.4.16, 6.5.x prior to 6.5.1.9, 6.5.2, 6.5.3 prior to 6.5.3.3, 6.5.4 prior to 6.5.4.2, 8.x prior to 8.1.0.4 FIPS and non-FIPS versions of software are both affected equally is vulnerable to unauthenticated arbitrary file access. An unauthenticated user with…
ModificadaCrítica (9.8)85%💥 ExploitThekelleys DnsmasqRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+174/10/201717/6/2026
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
Orbitaley — Vulnerabilidades