Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3005▼ 85 respecto a la semana anterior
Críticas / altas1403▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

40 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)0.38%—Moxa Active OPC Server24/9/201617/6/2026
Unquoted Windows search path vulnerability in Moxa Active OPC Server before 2.4.19 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
ModificadaAlta (7.5)2.6%—Scadaengine Bacnet OPC Server14/3/201517/6/2026
The SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to bypass authentication and read or write to arbitrary database fields via unspecified vectors.
ModificadaAlta (9)3.6%—Scadaengine Bacnet OPC Server14/3/201517/6/2026
Format string vulnerability in BACnOPCServer.exe in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via format string specifiers in a request.
ModificadaAlta (9)4.6%—Scadaengine Bacnet OPC Server14/3/201517/6/2026
Heap-based buffer overflow in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via a crafted packet.
ModificadaMedia (5)1.3%—Matrikonopc Dnp3 OPC Server27/11/201417/6/2026
MatrikonOPC OPC Server for DNP3 1.2.3 and earlier allows remote attackers to cause a denial of service (unhandled exception and DNP3 process crash) via a crafted message.
ModificadaAlta (7.8)2.4%—Ioserver OPC ServerIoserver OPC Drivers11/4/201417/6/2026
The Modbus slave/outstation driver in the OPC Drivers 1.0.20 and earlier in IOServer OPC Server allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted packet.
ModificadaAlta (7.1)1.3%—Matrikonopc Scada Dnp3 OPC Server14/2/201416/6/2026
MatrikonOPC SCADA DNP3 OPC Server 1.2.2.0 and earlier allows remote attackers to cause a denial of service (infinite loop) via a malformed DNP3 packet.
ModificadaAlta (7.1)1.3%—Cooperindustries Dnp3 Master OPC Server17/12/201316/6/2026
Cooper Power Systems Cybectec DNP3 Master OPC Server allows remote attackers to cause a denial of service (unhandled exception and process crash) via unspecified vectors.
ModificadaAlta (7.1)1.3%—Matrikonopc Scada Dnp3 OPC Server9/9/201316/6/2026
MatrikonOPC SCADA DNP3 OPC Server 1.2.0 allows remote attackers to cause a denial of service (master-station daemon crash) via a malformed DNP3 TCP packet from the IP address of an outstation.
ModificadaAlta (7.7)1.6%—ABB Interlink ModuleABB QuickteachABB Robotstudio LiteABB Robotstudio S4+318/4/201216/6/2026
Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.
ModificadaAlta (10)8.2%—ABB Interlink ModuleABB Irc5 OPC ServerABB PC SDKABB Pickmaster 3+69/3/201216/6/2026
Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA…
ModificadaAlta (10)3.8%—Advantech Adam OPC ServerAdvantech Modbus RTU OPC ServerAdvantech Modbus TCP OPC Server21/2/201216/6/2026
Buffer overflow in the Advantech ADAM OLE for Process Control (OPC) Server ActiveX control in ADAM OPC Server before 3.01.012, Modbus RTU OPC Server before 3.01.010, and Modbus TCP OPC Server before 3.01.010 allows remote attackers to execute arbitrary code via unspecified vectors.
ModificadaAlta (7.6)16%—Automatedsolutions Modbus/tcp Master OPC Server28/1/201116/6/2026
Heap-based buffer overflow in Automated Solutions Modbus/TCP Master OPC Server before 3.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a MODBUS response packet with a crafted length field.
ModificadaAlta (10)5.7%—Gesytec Easylon OPC Server17/12/200716/6/2026
Gesytec Easylon OPC Server before 2.3.44 does not properly validate server handles, which allows remote attackers to execute arbitrary code or cause a denial of service via unspecified network traffic to the OLE for Process Control (OPC) interface, probably related to free operations on arbitrary memory addresses…
ModificadaAlta (10)9.1%—Takebishi Corporation Devicexplorer OPC Server19/3/200716/6/2026
Unspecified vulnerability in the IOPCServer::RemoveGroup function in the OPCDA interface in Takebishi Electric DeviceXPlorer OLE for Process Control (OPC) Server before 3.12 Build3 allows remote attackers to execute arbitrary code via unspecified vectors involving access to arbitrary memory. NOTE: this issue affects…