Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
931 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.9% | — | Grandcom Dynweb | 19/5/2022 | 17/6/2026 | GRANDCOM DynWEB before 4.2 contains a SQL Injection vulnerability in the admin login interface. A remote unauthenticated attacker can exploit this vulnerability to obtain administrative access to the webpage, access the user database, modify web content and upload custom files. The backend login script does not verify… | |
| Modificada | Baja (3.3) | 0.16% | — | Broadcom Sannav | 9/5/2022 | 17/6/2026 | Brocade SANnav before version SANnav 2.2.0 logs the REST API Authentication token in plain text. | |
| Modificada | Alta (8.8) | 1.2% | — | Broadcom Sannav | 6/5/2022 | 17/6/2026 | A vulnerability in the role-based access control (RBAC) functionality of the Brocade SANNav before 2.2.0 could allow an authenticated, remote attacker to access resources that they should not be able to access and perform actions that they should not be able to perform. The vulnerability exists because restrictions… | |
| Modificada | Media (6.5) | 0.29% | — | Broadcom Sannav | 6/5/2022 | 17/6/2026 | Brocade SANnav before SANnav 2.2.0 application uses the Blowfish symmetric encryption algorithm for the storage of passwords. This could allow an authenticated attacker to decrypt stored account passwords. | |
| Modificada | Crítica (9.8) | 0.94% | — | Broadcom Sannav | 6/5/2022 | 17/6/2026 | In Brocade SANnav before Brocade SANnav 2.2.0, multiple endpoints associated with Zone management are susceptible to SQL injection, allowing an attacker to run arbitrary SQL commands. | |
| Modificada | Alta (7.5) | 2.0% | — | Broadcom TcpreplayFedoraproject Fedora | 4/5/2022 | 17/6/2026 | Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vulnerability is to data confidentiality. | |
| Modificada | Alta (7.8) | 0.85% | — | Broadcom Tcpreplay | 12/4/2022 | 17/6/2026 | Tcpreplay v4.4.1 has a heap-based buffer overflow in do_checksum_math at /tcpedit/checksum.c. | |
| Modificada | Alta (7.8) | 0.84% | — | Broadcom Tcpreplay | 12/4/2022 | 17/6/2026 | Tcpreplay v4.4.1 was discovered to contain a double-free via __interceptor_free. | |
| Modificada | Media (6.1) | 0.72% | — | Broadcom Symantec Siteminder | 28/3/2022 | 16/6/2026 | A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical. Affected by this issue is the file /siteminderagent/pwcgi/smpwservicescgi.exe of the component Login. The manipulation of the argument target leads to an open redirect. The exploit has been disclosed to the public and may be… | |
| Modificada | Alta (7.8) | 1.1% | — | Broadcom TcpreplayFedoraproject Fedora | 26/3/2022 | 17/6/2026 | tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c. | |
| Modificada | Alta (7.8) | 1.1% | — | Broadcom TcpreplayFedoraproject Fedora | 26/3/2022 | 17/6/2026 | tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c. | |
| Modificada | Alta (7.8) | 1.1% | — | Broadcom TcpreplayFedoraproject Fedora | 26/3/2022 | 17/6/2026 | tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_ipv6_next in common/get.c. | |
| Modificada | Media (5.5) | 1.0% | — | Broadcom TcpreplayFedoraproject Fedora | 26/3/2022 | 17/6/2026 | tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_v6 in common/get.c. | |
| Modificada | Alta (7.8) | 0.54% | — | Linux KernelOracle Communications Cloud Native Core Binding Support FunctionDebian LinuxBroadcom Brocade Fabric Operating System Firmware+5 | 23/3/2022 | 17/6/2026 | An unprivileged write to the file handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process that are controlled by cgroups and have higher privileged parent process. It is actually both for cgroup2 and cgroup1 versions of control… | |
| Modificada | Media (5.5) | 0.61% | — | Broadcom Tcpreplay | 22/3/2022 | 17/6/2026 | tcpprep v4.4.1 has a reachable assertion (assert(l2len > 0)) in packet2tree() at tree.c in tcpprep v4.4.1. | |
| Modificada | Media (6.5) | 0.82% | — | Broadcom Fabric Operating System | 18/3/2022 | 17/6/2026 | The Web application of Brocade Fabric OS before versions Brocade Fabric OS v9.0.1a and v8.2.3a contains debug statements that expose sensitive information to the program's standard output device. An attacker who has compromised the FOS system may utilize this weakness to capture sensitive information, such as user… | |
| Modificada | Media (6.5) | 0.70% | — | Broadcom Fabric Operating System | 18/3/2022 | 17/6/2026 | A vulnerability in the Brocade Fabric OS before Brocade Fabric OS v9.0.1a, v8.2.3, v8.2.0_CBN4, and v7.4.2h could allow an authenticated CLI user to abuse the history command to write arbitrary content to files. | |
| Modificada | Alta (7.5) | 0.98% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM M969NC, RUGGEDCOM RMC30, RUGGEDCOM RMC30NC,… | |
| Modificada | Crítica (9.8) | 0.92% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM M969F,… | |
| Modificada | Crítica (9.8) | 1.0% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM M969F,… | |
| Modificada | Media (5.9) | 0.47% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M969, RUGGEDCOM M969F, RUGGEDCOM RMC30, RUGGEDCOM RMC8388 V4.X, RUGGEDCOM RMC8388 V5.X, RUGGEDCOM RP110, RUGGEDCOM RS1600, RUGGEDCOM… | |
| Modificada | Alta (7.5) | 0.63% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M969, RUGGEDCOM M969F, RUGGEDCOM RMC30, RUGGEDCOM RMC8388 V4.X, RUGGEDCOM RMC8388 V5.X, RUGGEDCOM RP110, RUGGEDCOM RS1600, RUGGEDCOM… | |
| Modificada | Media (6.5) | 0.38% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800 (All versions < V4.3.8), RUGGEDCOM i801 (All versions < V4.3.8), RUGGEDCOM i802 (All versions < V4.3.8), RUGGEDCOM i803 (All versions < V4.3.8), RUGGEDCOM M2100 (All versions < V4.3.8), RUGGEDCOM M2200 (All versions < V4.3.8), RUGGEDCOM M969 (All versions <… | |
| Modificada | Media (5.4) | 0.53% | — | Siemens Ruggedcom ROS | 8/3/2022 | 17/6/2026 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM M969F,… | |
| Modificada | Crítica (9.8) | 1.3% | — | Broadcom Fabric Operating System | 21/2/2022 | 17/6/2026 | Brocade Fabric OS before Brocade Fabric OS v8.2.1c, v8.1.2h, and all versions of Brocade Fabric OS v8.0.x and v7.x contain documented hard-coded credentials, which could allow attackers to gain access to the system. |