Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2746▼ 296 respecto a la semana anterior
Críticas / altas1284▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)213▼ 109 respecto a la semana anterior
–

337 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.6)0.69%💥 ExploitInfo Touch Surfnet31/12/200416/6/2026
Info Touch Surfnet kiosk allows local users to crash Surfnet and access the underlying operating system via the CMD_CREDITCARD_CHARGE command.
ModificadaMedia (4.6)0.40%—Info Touch Surfnet31/12/200416/6/2026
Info Touch Surfnet kiosk allows local users to deposit extra time into Internet kiosk accounts via repeated authentication attempts.
ModificadaBaja (2.1)0.32%—Info Touch Surfnet KioskAI31/12/200416/6/2026
Info Touch Surfnet kiosk allows local users to access the underlying filesystem via a 'file://' URI.
ModificadaAlta (7.2)0.43%—Mandrakesoft Mandrake Multi Network FirewallSpeedtouch USB DriverGentoo LinuxMandrakesoft Mandrake Linux+123/12/200416/6/2026
Vulnerabilidad de cadena de formato en Speedtouch USB driver anteriores a 1.3.1 permite a usuarios locales ejecutar código de su elección mediante modem_run pppoa2, o pppoa3
ModificadaAlta (7.5)2.6%💥 ExploitThomson Speedtouch5/8/200416/6/2026
Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
ModificadaMedia (4.6)0.37%—Logitech Cordless Freedom Itouch KeyboardLogitech Cordless Itouch KeyboardLogitech Itouch Keyboard31/12/200216/6/2026
Logitech iTouch keyboards allows attackers with physical access to the system to bypass the screen locking function and execute user-defined commands that have been assigned to a button.
ModificadaMedia (5)1.9%—Alcatel Speed Touch Home25/3/200216/6/2026
el modem de Alcatel Speed Touch Home ADSL permite e atacantes remotos causar una negación de servicio (reboot) via a scaneo de la red con paquetes anormales, como nmap con detección de OS
ModificadaAlta (7.5)2.4%—Alcatel Adsl Modem 1000Alcatel Speed Touch Adsl Modem31/12/200116/6/2026
Alcatel ADSL modems allow remote attackers to access the Trivial File Transfer Protocol (TFTP) to modify firmware and configuration via a bounce attack from a system on the local area network (LAN) side, which is allowed to access TFTP without authentication.
ModificadaAlta (7.5)1.7%—Logitech Cordless FreedomLogitech Cordless Freedom NavigatorLogitech Cordless Freedom PROLogitech Cordless Itouch Keyboard18/10/200116/6/2026
A long 'synch' delay in Logitech wireless mice and keyboard receivers allows a remote attacker to hijack connections via a man-in-the-middle attack.
ModificadaAlta (7.5)3.7%—Alcatel Speed Touch Home10/4/200116/6/2026
The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.
ModificadaAlta (7.5)3.5%—Alcatel Speed Touch Home10/4/200116/6/2026
Alcatel Speed Touch ADSL modem running firmware KHDSAA.108, KHDSAA.132, KHDSBA.133, and KHDSAA.134 has a blank default password, which allows remote attackers to gain unauthorized access.
ModificadaAlta (7.5)2.0%—Alcatel Speed Touch Home10/4/200116/6/2026
Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 has a TFTP server running without a password, which allows remote attackers to change firmware versions or the device's configurations.
Orbitaley — Vulnerabilidades