Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
1191 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 3.1% | — | Tp-link Archer Be800AITp-link Archer Be3600AITp-link Archer Ax75AI | 24/8/2026 | 28/8/2026 | An unauthenticated OS command injection vulnerability exists in the parental control functionality of Archer BE800 V1, BE3600 V1, and AX75 V1 due to improper filtering and neutralization of special characters in certain parameters. A LAN-based attacker can inject arbitrary commands and execute them with root… | |
| Pendiente de análisis | Alta (8.5) | 2.0% | — | Tp-link Archer Be800AI | 24/8/2026 | 28/8/2026 | An authenticated command injection vulnerability in TP-Link Archer BE800 V1 allows an attacker with administrative access to execute arbitrary system commands with root privileges by injecting shell metacharacters via a VPN connection. Successful exploitation may enable persistent backdoors, credential theft, LAN… | |
| Pendiente de análisis | Alta (7.7) | 0.38% | — | Tp-link Deco Xe75AITp-link Xe5300AITp-link We10800AI | 24/8/2026 | 28/8/2026 | The use of hard-coded cryptographic key vulnerability has been identified in the mesh functionality of Deco XE75 v3, XE5300 v3.6 and WE10800 v3.6. A shared RSA-512 mesh group private key is present in the affected firmware and is used by the mesh protocol for node authentication. An attacker who obtains the firmware… | |
| Pendiente de análisis | Alta (7.1) | 0.27% | — | Tp-link Tl-mr6400AI | 21/8/2026 | 28/8/2026 | A stack-based out-of-bounds write vulnerability exists in the login request handling functionality of the administrative web interface of TP-Link TL-MR6400 v7 routers. An unauthenticated adjacent attacker can trigger the vulnerability by sending a specially crafted malformed HTTP request. Successful exploitation may… | |
| Pendiente de análisis | Alta (7.1) | 0.47% | — | Tp-link TL Mr6400AI | 21/8/2026 | 28/8/2026 | A NULL pointer dereference vulnerability exists in the HTTP request parsing functionality of TL-MR6400 v7. An unauthenticated remote attacker can trigger the vulnerability by sending a specially crafted HTTP request containing a malformed session cookie header. Successful exploitation may cause the HTTP service… | |
| Pendiente de análisis | Alta (8.5) | 0.29% | — | Tp-link Tl-mr6400AI | 21/8/2026 | 28/8/2026 | A stack-based buffer overflow vulnerability exists in the firmware update functionality of TL-MR6400 v7 due to unsafe processing of attacker-controlled metadata within a firmware image. Successful exploitation may allow an authenticated attacker to trigger memory corruption and execute arbitrary code on the affected… | |
| Analizada | Media (6) | 0.28% | — | Tp-link Er7212pc FirmwareTp-link Er605 FirmwareTp-link Er7206 FirmwareTp-link Er7406 Firmware+14 | 20/8/2026 | 8/9/2026 | An unauthenticated attacker with network access to the captive portal service of an affected device can terminate active captive portal sessions, including forcing logout of specific users or clearing all active sessions. Affected users must re-authenticate to regain access. Successful exploitation may allow… | |
| Analizada | Media (6.3) | 0.25% | — | Tp-link Er7212pc FirmwareTp-link Er605 FirmwareTp-link Er7206 FirmwareTp-link Er7406 Firmware+14 | 20/8/2026 | 8/9/2026 | A vulnerability exists in the Dynamic DNS (DDNS) functionality of TP-Link Omada Gateways. During communication with a third-party DDNS service, authentication credentials are transmitted over an unencrypted channel. An attacker who can observe or manipulate traffic between an affected device and the DDNS service may… | |
| Analizada | Crítica (9.3) | 5.7% | — | Tp-link Er7212pc FirmwareTp-link Er605 FirmwareTp-link Er605w FirmwareTp-link Er7206 Firmware+14 | 20/8/2026 | 3/9/2026 | A pre-authentication OS command injection vulnerability has been identified in Omada gateways configured to operate as an OpenVPN Server due to insufficient validation of client-supplied data during OpenVPN connection establishment. An unauthenticated remote attacker may provide specially crafted input influencing… | |
| Analizada | Alta (7.1) | 0.87% | — | Tp-link Tl-mr100 FirmwareTp-link Archer Mr600 FirmwareTp-link Tl-mr150 FirmwareTp-link Tl-mr6400 Firmware | 20/8/2026 | 3/9/2026 | An unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions that may lead to a NULL pointer dereference. A remote attacker on an adjacent network can send a specially crated… | |
| Analizada | Alta (8.5) | 2.8% | — | Tp-link Archer C20 Firmware | 19/8/2026 | 8/9/2026 | An OS command injection vulnerability exists in the web management interface of Archer C20 v6 firmware when processing certain WAN-related configuration operations. An authenticated administrator may exploit insufficient input validation to execute arbitrary system commands, potentially resulting in full device… | |
| Analizada | Media (6.9) | 0.41% | — | Tp-link Tapo C100 FirmwareTp-link Tapo C101 Firmware | 19/8/2026 | 4/9/2026 | Tapo C100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP service. An authenticated attacker on the local network can send specially crafted RTSP frame data containing oversized length values, resulting in out-of-bounds heap writes. Successful exploitation can crash the RTSP service and trigger… | |
| Analizada | Alta (7.1) | 0.38% | — | Tp-link Tapo C100 FirmwareTp-link Tapo C101 Firmware | 19/8/2026 | 4/9/2026 | Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that cause the service to dereference an invalid pointer, resulting in a service crash and device reboot. Successful exploitation can disrupt live video… | |
| Analizada | Alta (7.1) | 0.24% | — | Tp-link Tapo C200 Firmware | 18/8/2026 | 4/9/2026 | An improper input validation vulnerability in the configuration service for processing encrypted credential data has been identified in Tapo C200 v5. An attacker can send oversized crypted ciphertext values that may trigger exception handling failures, due to insufficient validation, causing the affected device to… | |
| Analizada | Alta (8.7) | 0.30% | — | Tp-link Tapo C120 FirmwareTp-link Tapo C200 Firmware | 18/8/2026 | 4/9/2026 | Tapo C120 v1 and C200 v5 contain an improper authentication vulnerability within the login authentication verification module. An attacker on the local network can exploit weaknesses in challenge parameter validation to bypass normal authentication controls and obtain administrative session tokens. Successful… | |
| Analizada | Media (5.3) | 0.12% | — | Tp-link Tl-wr820n Firmware | 12/8/2026 | 9/9/2026 | The web interface of the affected device relies on the HTTP referrer header as part of request validation. Requests containing empty Referer value, or omitting the Referer header entirely, may be accepted and processed due to insufficient validation logic. Successful exploitation may allow an adjacent attacker with… | |
| Pendiente de análisis | Alta (8.6) | 0.41% | — | Tp-link AginetAI | 10/8/2026 | 29/9/2026 | Certain web interface components in affected TP-Link Aginet devices do not validate and sanitize user-supplied input properly before passing it to system-level command execution functions. An authenticated adjacent attacker may inject specially crafted input to execute arbitrary operation system commands with elevated… | |
| Pendiente de análisis | Media (5.1) | 0.23% | — | Tp-link AginetAI | 10/8/2026 | 29/9/2026 | The affected TP-Link Aginet devices do not properly validate symbolic links created on external USB storage devices. By placing a crafted symbolic link on supported storage media, an attacker may cause the system to resolve the link. Successful exploitation may allow unauthorized read access to sensitive files within… | |
| Pendiente de análisis | Alta (8.5) | 0.20% | — | Tp-link AginetAI | 10/8/2026 | 29/9/2026 | In affected TP-Link Aginet devices, use of hardcoded cryptographic keys embedded in the firmware to protect sensitive configuration data may allow an attacker who has access to device storage to recover the keys and decrypt stored data. Successful exploitation may allow access to decrypted sensitive configuration… | |
| Pendiente de análisis | Alta (8.6) | 0.20% | — | Tp-link AginetAI | 10/8/2026 | 29/9/2026 | In affected TP-Link Aginet devices, insufficient authorization validation allows authenticated low-privileged users to execute higher-privileged operations. An attacker may perform administrative actions such as creating privileged accounts or modifying critical configuration settings. | |
| Pendiente de análisis | Alta (8.7) | 0.33% | — | Tp-link AginetAI | 10/8/2026 | 29/9/2026 | The affected TP-Link Aginet devices contain a flaw in the web management interface where authentication checks are not consistently enforced on certain endpoints. An attacker can send specially crafted requests to bypass authentication and directly invoke privileged functionality without valid credentials. This issue… | |
| Pendiente de análisis | Media (6.8) | 0.20% | — | Tp-link Archer A6AI | 7/8/2026 | 18/8/2026 | A denial-of-service vulnerability exists in httpd service on Archer A6 v4 where the asynchronous systool instruction handlng path in httpd does not properly synchronize or safely manage concurrent systool operations. By sending crafted systool instructions through the asynchronous request path, successful exploitation… | |
| Analizada | Alta (7.1) | 0.76% | — | Tp-link Tapo P110 Firmware | 4/8/2026 | 7/8/2026 | Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HTTP request bodies due to insufficient input validation before memory copy operations. This may lead to buffer overflow condition, causing the web service process to crash. Successful exploitation may… | |
| Analizada | Media (5.7) | 0.30% | — | Tp-link Omada Fusion 2.5g FirmwareTp-link Omada Er707-m2 FirmwareTp-link Omada Er7206 FirmwareTp-link Omada Er706w Firmware+105 | 3/8/2026 | 29/9/2026 | A cryptographic weakness exists in affected Omada devices where site credentials are protected using a legacy hashing algorithm that does not provide sufficient protection. An attacker who obtains access to stored credential data may be able to recover valid credentials to gain unauthorized access to affected devices… | |
| Analizada | Media (5.8) | 0.31% | — | Tp-link Omada Oc200 V3 FirmwareTp-link Omada Oc300 FirmwareTp-link Omada Oc400 FirmwareTp-link Omada Fusion 2.5g Firmware+108 | 3/8/2026 | 29/9/2026 | A race condition exists in the cloud-based Omada device adoption process when an attacker may be able to interact with the adoption workflow before a legitimate device completes registration, resulting in provisioning information being delivered to an attacker. Successful exploitation may allow disclosure of… |