Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 501 respecto a la semana anterior
Críticas / altas1301▼ 201 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 277 respecto a la semana anterior
4192 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.32% | — | Ellanetworks Ella Core | 13/3/2026 | 17/6/2026 | Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a PathSwitchRequest containing UE Security Capabilities with zero-length NR encryption or integrity protection algorithm bitstrings, resulting in a denial of service. An attacker able to send crafted NGAP messages to… | |
| Analizada | Alta (7.5) | 0.54% | — | Ellanetworks Ella Core | 13/3/2026 | 17/6/2026 | Ella Core is a 5G core designed for private networks. Prior to 1.5.1, Ella Core panics when processing a malformed integrity protected NGAP/NAS message with a length under 7 bytes. An attacker able to send crafted NAS messages to Ella Core can crash the process, causing service disruption for all connected… | |
| Aplazada | Crítica (9.8) | 0.94% | — | Hms-networks Ewon FlexyAIHms-networks Cosy PlusAI | 13/3/2026 | 17/6/2026 | HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow that leads to a Denial of Service, which can also be exploited to achieve Unauthenticated Remote Code Execution. | |
| Aplazada | Alta (7.5) | 0.63% | — | Hms-networks Ewon FlexyAIHms-networks Cosy PlusAI | 13/3/2026 | 17/6/2026 | HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 allows unauthenticated attackers to cause a Denial of Service by using a specially crafted HTTP request that leads to a reboot of the device, provided they have access to the… | |
| Aplazada | Crítica (9.1) | 0.20% | — | Hms-networks Ewon FlexyAIHms-networks Cosy PlusAI | 13/3/2026 | 17/6/2026 | HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have weak entropy for authentication cookies, allowing an attacker with a stolen session cookie to find the user password by brute-forcing an encryption parameter. | |
| Aplazada | Alta (8.8) | 0.85% | — | Hms-networks Ewon FlexyAIHms-networks Cosy PlusAI | 13/3/2026 | 17/6/2026 | HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have improper neutralization of special elements used in an OS command allowing remote code execution by attackers with low privilege access on the gateway, provided the attacker… | |
| Pendiente de análisis | Media (5.7) | 0.17% | — | Paloaltonetworks Cortex XDRAI | 11/3/2026 | 17/6/2026 | An information disclosure vulnerability in Palo Alto Networks Cortex XDR® Broker VM allows an authenticated user to obtain and modify sensitive information by triggering live terminal session via Cortex UI and modifying any configuration setting. The attacker must have network access to the Broker VM to exploit this… | |
| Pendiente de análisis | Media (4) | 0.14% | — | Paloaltonetworks Cortex XDRAI | 11/3/2026 | 17/6/2026 | A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on macOS allows a local administrator to disable the agent. This issue could be leveraged by malware to perform malicious activity without detection. | |
| Pendiente de análisis | Media (6.8) | 0.32% | — | Cisco IOS XRAICisco Network Convergence System 5500AICisco Network Convergence System 5700AI | 11/3/2026 | 17/6/2026 | A vulnerability in the handling of an Egress Packet Network Interface (EPNI) Aligner interrupt in Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series with NC57 line cards and Cisco NCS 5700 Routers and Cisco IOS XR Software for Third Party Software could allow an unauthenticated, remote… | |
| Aplazada | Media (6.4) | 0.34% | 💥 PoC | Nextscripts Social Networks Auto PosterAI | 10/3/2026 | 17/6/2026 | The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `[nxs_fbembed]` shortcode in all versions up to, and including, 4.4.6. This is due to insufficient input sanitization and output escaping on the `snapFB` post meta value. This makes it possible for… | |
| Aplazada | Alta (8.8) | 0.58% | — | Nextscripts Social-networks-auto-poster-facebook-twitter-gAI | 5/3/2026 | 17/6/2026 | Deserialization of Untrusted Data vulnerability in NextScripts NextScripts social-networks-auto-poster-facebook-twitter-g allows Object Injection.This issue affects NextScripts: from n/a through <= 4.4.7. | |
| Analizada | Media (4.2) | 0.15% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A vulnerability has been identified where an attacker connecting to an access point as a standard wired or wireless client can impersonate a gateway by leveraging an address-based spoofing technique. Successful exploitation enables the redirection of data streams, allowing for the interception or modification of… | |
| Analizada | Baja (3.1) | 0.16% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A vulnerability in the client isolation mechanism may allow an attacker to bypass Layer 2 (L2) communication restrictions between clients and redirect traffic at Layer 3 (L3). In addition to bypassing policy enforcement, successful exploitation - when combined with a port-stealing attack - may enable a bi-directional… | |
| Analizada | Baja (3.1) | 0.19% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A vulnerability in the packet processing logic may allow an authenticated attacker to craft and transmit a malicious Wi-Fi frame that causes an Access Point (AP) to classify the frame as group-addressed traffic and re-encrypt it using the Group Temporal Key (GTK) associated with the victim's BSSID. Successful… | |
| Analizada | Alta (7.6) | 0.27% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A technique has been identified that adapts a known port-stealing method to Wi-Fi environments that use multiple BSSIDs. By leveraging the relationship between BSSIDs and their associated virtual ports, an attacker could potentially bypass inter-BSSID isolation controls. Successful exploitation may enable an attacker… | |
| Analizada | Alta (8.1) | 0.28% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled Group Temporal Key (GTK) on a client device. Successful exploitation of this vulnerability could allow a remote malicious actor to perform unauthorized frame injection,… | |
| Analizada | Media (5.4) | 0.09% | — | Arubanetworks Arubaos | 4/3/2026 | 17/6/2026 | A vulnerability has been identified in the wireless encryption handling of Wi-Fi transmissions. A malicious actor can generate shared-key authenticated transmissions containing targeted payloads while impersonating the identity of a primary BSSID.Successful exploitation allows for the delivery of tampered data to… | |
| Analizada | Media (6.3) | 0.11% | — | Nozominetworks ARC | 4/3/2026 | 17/6/2026 | The server certificate was not verified when an Arc agent connected to a Guardian or CMC. A malicious actor could perform a man-in-the-middle attack and intercept the communication between the Arc agent and the Guardian or CMC. This could result in theft of the client token and sensitive information (such as assets… | |
| Analizada | Baja (2) | 0.18% | — | Nozominetworks CMC | 4/3/2026 | 17/6/2026 | A Stored HTML Injection vulnerability was discovered in the CMC's Sensor Map functionality due to improper validation on connected Guardians' properties. A malicious authenticated user with administrator privileges on a Guardian connected to a CMC can edit the Guardian's properties to inject HTML tags. If the Sensor… | |
| Modificada | Baja (2.1) | 0.17% | — | Nozominetworks CMCNozominetworks Guardian | 4/3/2026 | 17/6/2026 | A Stored HTML Injection vulnerability was discovered in the Alerted Nodes Dashboard functionality due to improper validation on an input parameter. A malicious authenticated user with the required privileges could edit a node label to inject HTML tags. If the system is configured to use the Alerted Nodes Dashboard,… | |
| Analizada | Media (6) | 0.29% | — | Extremenetworks Extremecloud IQ Site Engine | 2/3/2026 | 17/6/2026 | In ExtremeCloud IQ – Site Engine (XIQ‑SE) before 26.2.10, a vulnerability in the NAC administration interface allows an authenticated NAC administrator to retrieve masked sensitive parameters from HTTP responses. Although credentials appear redacted in the user interface, the application returns the underlying… | |
| Analizada | Media (5.1) | 0.16% | — | Sodola-network Sl902-swtgw124as Firmware | 27/2/2026 | 17/6/2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a cross-site request forgery vulnerability in its management interface that allows attackers to induce authenticated users into submitting forged requests. Attackers can craft malicious requests that execute unauthorized configuration or administrative… | |
| Analizada | Alta (7.1) | 0.47% | — | Sodola-network Sl902-swtgw124as Firmware | 27/2/2026 | 17/6/2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain an authentication vulnerability that allows authenticated users to change account passwords without verifying the current password. Attackers who gain access to an authenticated session can modify credentials to maintain persistent access to the… | |
| Analizada | Media (5.1) | 0.28% | — | Sodola-network Sl902-swtgw124as Firmware | 27/2/2026 | 17/6/2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a reflected cross-site scripting vulnerability in the management interface where user input is not properly encoded before output. Attackers can craft malicious URLs that execute arbitrary JavaScript in the web interface when visited by authenticated… | |
| Analizada | Crítica (9.3) | 0.73% | — | Sodola-network Sl902-swtgw124as Firmware | 27/2/2026 | 17/6/2026 | SODOLA SL902-SWTGW124AS firmware versions through 200.1.20 contain a weak session identifier generation vulnerability that allows attackers to forge authenticated sessions by computing predictable MD5-based cookies. Attackers who know or guess valid credentials can calculate the session identifier offline and bypass… |