Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
53 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.3) | 0.61% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | FATEK Automation WinProladder versions 3.30 and prior is vulnerable to an out-of-bounds read, which may allow an attacker to read unauthorized information. | |
| Modificada | Alta (7.8) | 1.0% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | A use after free vulnerability in FATEK Automation WinProladder versions 3.30 and prior may be exploited when a valid user opens a malformed project file, which may allow arbitrary code execution. | |
| Modificada | Alta (7.8) | 0.97% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a memory-corruption condition. An attacker could leverage this vulnerability to execute arbitrary code in the context of the current process. | |
| Modificada | Alta (7.8) | 0.97% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an unexpected sign extension. An attacker could leverage this vulnerability to execute arbitrary code. | |
| Modificada | Alta (7.8) | 1.0% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | FATEK Automation WinProladder versions 3.30 and prior proper validation of user-supplied data when parsing project files, which could result in a stack-based buffer overflow. An attacker could leverage this vulnerability to execute arbitrary code. | |
| Modificada | Alta (7.8) | 0.97% | — | Fatek Winproladder | 18/10/2021 | 17/6/2026 | FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an out-of-bounds write. An attacker could leverage this vulnerability to execute arbitrary code. | |
| Modificada | Crítica (9.8) | 1.9% | — | Fatek Communication Server Firmware | 15/10/2021 | 17/6/2026 | FATEK Automation Communication Server Versions 1.13 and prior lacks proper validation of user-supplied data, which could result in a stack-based buffer overflow condition and allow an attacker to remotely execute code. | |
| Modificada | Alta (7.8) | 1.8% | — | Fatek Fvdesigner | 11/8/2021 | 17/6/2026 | FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 1.6% | — | Fatek Fvdesigner | 11/8/2021 | 17/6/2026 | FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 2.0% | — | Fatek Fvdesigner | 11/8/2021 | 17/6/2026 | An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Crítica (9.8) | 1.8% | — | Fatek Winproladder | 29/6/2021 | 17/6/2026 | FATEK Automation WinProladder Versions 3.30 and prior do not properly restrict operations within the bounds of a memory buffer, which may allow an attacker to execute arbitrary code. | |
| Modificada | Crítica (9.8) | 1.8% | — | Fatek Winproladder | 29/6/2021 | 17/6/2026 | FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code. | |
| Modificada | Crítica (9.8) | 1.8% | — | Fatek Winproladder | 29/6/2021 | 17/6/2026 | FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 0.98% | — | Fatek Winproladder | 12/4/2021 | 17/6/2026 | FATEK Automation WinProladder Versions 3.30 and prior is vulnerable to an integer underflow, which may cause an out-of-bounds write and allow an attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 1.1% | — | Fatek Fvdesigner | 3/3/2021 | 17/6/2026 | Fatek FvDesigner Version 1.5.76 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.1% | — | Fatek Fvdesigner | 3/3/2021 | 17/6/2026 | An uninitialized pointer may be exploited in Fatek FvDesigner Version 1.5.76 and prior while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.2% | — | Fatek Fvdesigner | 3/3/2021 | 17/6/2026 | Fatek FvDesigner Version 1.5.76 and prior is vulnerable to a stack-based buffer overflow while project files are being processed, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.1% | — | Fatek Fvdesigner | 3/3/2021 | 17/6/2026 | A use after free issue has been identified in Fatek FvDesigner Version 1.5.76 and prior in the way the application processes project files, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.1% | — | Fatek Fvdesigner | 3/3/2021 | 17/6/2026 | Fatek FvDesigner Version 1.5.76 and prior is vulnerable to an out-of-bounds read while processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.3% | — | Fatek Winproladder | 30/9/2020 | 17/6/2026 | In PLC WinProladder Version 3.28 and prior, a stack-based buffer overflow vulnerability can be exploited when a valid user opens a specially crafted file, which may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.5) | 2.0% | — | Fatek Automation FV DesignerFatek Automation PM Designer V3 | 21/3/2019 | 17/6/2026 | A malicious attacker can trigger a remote buffer overflow in the Communication Server in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. | |
| Modificada | Crítica (9.8) | 4.4% | — | Fatek Ethernet Module Configuration Tool CBE FirmwareFatek Ethernet Module Configuration Tool Cbeh FirmwareFatek Ethernet Module Configuration Tool Cm25e FirmwareFatek Ethernet Module Configuration Tool Cm55e Firmware | 16/3/2017 | 17/6/2026 | An issue was discovered in Fatek Automation PLC Ethernet Module. The affected Ether_cfg software configuration tool runs on the following Fatek PLCs: CBEH versions prior to V3.6 Build 170215, CBE versions prior to V3.6 Build 170215, CM55E versions prior to V3.6 Build 170215, and CM25E versions prior to V3.6 Build… | |
| Modificada | Alta (8) | 8.9% | — | Fatek PLC Winproladder Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in Fatek Automation PLC WinProladder Version 3.11 Build 14701. A stack-based buffer overflow vulnerability exists when the software application connects to a malicious server, resulting in a stack buffer overflow. This causes an exploitable Structured Exception Handler (SEH) overwrite condition… | |
| Modificada | Alta (7.5) | 2.0% | — | Fatek Automation FV DesignerFatek Automation PM Designer | 13/2/2017 | 17/6/2026 | An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. By sending additional valid packets, an attacker could trigger a stack-based buffer overflow and cause a crash. Also, a malicious attacker can trigger a remote buffer overflow on the Fatek… | |
| Modificada | Alta (8.8) | 2.3% | — | Fatek Automation FV DesignerFatek Automation PM Designer | 13/2/2017 | 17/6/2026 | An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. Sending additional valid packets could allow the attacker to cause a crash or to execute arbitrary code, because of Improper Restriction of Operations within the Bounds of a Memory Buffer. |