Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
34 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.3) | 0.85% | — | Belkin N900 Wireless Router | 31/12/2012 | 16/6/2026 | The WPA2 implementation on the Belkin N900 F9K1104v1 router establishes a WPS PIN based on 6 digits of the LAN/WLAN MAC address, which makes it easier for remote attackers to obtain access to a Wi-Fi network by reading broadcast packets, a different vulnerability than CVE-2012-4366. | |
| Modificada | Baja (3.3) | 4.6% | 💥 Exploit | Belkin N150 Wireless RouterBelkin N300 Wireless RouterBelkin N450 Wireless RouterBelkin N900 Wireless Router | 20/11/2012 | 16/6/2026 | Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on eight digits of the WAN MAC address, which allows remote attackers to access the network by sniffing the beacon frames. | |
| Modificada | Media (5) | 1.2% | — | Hawking Technology Wr254-ca Wireless Router | 15/11/2006 | 16/6/2026 | Hawking Technology wireless router WR254-CA uses a hardcoded IP address among the set of DNS server IP addresses, which could allow remote attackers to cause a denial of service or hijack the router by attacking or spoofing the server at the hardcoded address. NOTE: it could be argued that this issue reflects an… | |
| Modificada | Media (5) | 2.3% | — | Siemens Speedstream Wireless Router | 27/7/2006 | 16/6/2026 | Siemens SpeedStream 2624 allows remote attackers to cause a denial of service (device hang) by sending a crafted packet to the web administrative interface. | |
| Modificada | Alta (7.5) | 1.6% | — | Siemens Speedstream Wireless Router | 3/7/2006 | 16/6/2026 | Siemens Speedstream Wireless Router 2624 allows local users to bypass authentication and access protected files by using the Universal Plug and Play UPnP/1.0 component. | |
| Modificada | Alta (7.5) | 1.5% | — | Belkin 54G Wireless Router | 26/7/2005 | 16/6/2026 | Belkin 54g wireless routers do not properly set an administrative password, which allows remote attackers to gain access via the (1) Telnet or (2) web administration interfaces. | |
| Modificada | Media (5) | 1.2% | — | Belkin 54G Wireless Router | 2/5/2005 | 16/6/2026 | The SNMP service in the Belkin 54G (F5D7130) wireless router allows remote attackers to cause a denial of service via unknown vectors. | |
| Modificada | Alta (7.5) | 1.4% | — | Belkin 54G Wireless Router | 2/5/2005 | 16/6/2026 | Belkin 54G (F5D7130) wireless router allows remote attackers to access restricted resources by sniffing URIs from UPNP datagrams, then accessing those URIs, which do not require authentication. | |
| Modificada | Media (6.4) | 1.7% | — | Zonet Zsr1104we Wireless Router Runtime Code | 31/12/2004 | 16/6/2026 | The NAT implementation in Zonet ZSR1104WE Wireless Router Runtime Code Version 2.41 converts IP addresses of inbound connections to the IP address of the router, which allows remote attackers to bypass intended security restrictions. |