Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2661▼ 437 respecto a la semana anterior
Críticas / altas1284▼ 85 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)247▼ 271 respecto a la semana anterior
121 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.3) | 0.18% | — | Intel Fpga Software Development KITIntel Quartus Prime | 16/2/2023 | 17/6/2026 | Uncontrolled search path in some Intel(R) Quartus(R) Prime Pro and Standard Edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.17% | — | Intel Fpga Software Development KITIntel Quartus Prime | 16/2/2023 | 17/6/2026 | Improper access control in the Intel(R) FPGA SDK for OpenCL(TM) with Intel(R) Quartus(R) Prime Pro Edition software before version 22.1 may allow authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.20% | — | Intel Quartus Prime | 16/2/2023 | 17/6/2026 | Insufficient control flow management in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.22% | — | Intel Quartus Prime | 16/2/2023 | 17/6/2026 | Path traversal in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.16% | — | Intel Quartus Prime | 16/2/2023 | 17/6/2026 | Improper authentication in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (4.1) | 0.34% | — | Intel Quartus Prime | 16/2/2023 | 17/6/2026 | Cross-site scripting in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.19% | — | Intel Quartus Prime | 16/2/2023 | 17/6/2026 | Improper neutralization in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Crítica (9.8) | 6.0% | — | FreshtomatoSiretta Quartz-gold Firmware | 30/1/2023 | 17/6/2026 | An OS command injection vulnerability exists in the httpd logs/view.cgi functionality of FreshTomato 2022.5. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 2.1% | — | FreshtomatoSiretta Quartz-gold Firmware | 30/1/2023 | 17/6/2026 | A directory traversal vulnerability exists in the httpd update.cgi functionality of FreshTomato 2022.5. A specially crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 3.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 1.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the m2m DELETE_FILE cmd functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to a heap buffer overflow. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Media (6.5) | 1.9% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | A directory traversal vulnerability exists in the m2m DELETE_FILE cmd functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary file deletion. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 2.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.4% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… |