Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2740▼ 483 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1720 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the AddMacList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the SetAPWifiorLedInfoById interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the SetMobileAPInfoById interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the Edit_BasicSSID_5G interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelDNSHnList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateMacClone interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the EdittriggerList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateWanParams interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the ipqos_lanip_dellist interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelSTList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the EditvsList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 4.4% | 💥 Exploit | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DeltriggerList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelvsList interface at /goform/aspForm. | |
| Modificada | Alta (7.2) | 0.93% | — | H3C Magic R300-2100m Firmware | 31/5/2023 | 17/6/2026 | H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateSnat interface at /goform/aspForm. | |
| Analizada | Alta (7.8) | 3.1% | — | ImagemagickFedoraproject Extra Packages FOR Enterprise LinuxFedoraproject FedoraRedhat Enterprise Linux | 30/5/2023 | 17/6/2026 | A vulnerability was found in ImageMagick. This security flaw causes a shell command injection vulnerability via video:vsync or video:pixel-format options in VIDEO encoding/decoding. | |
| Modificada | Crítica (9.8) | 8.0% | 💥 PoC | ImagemagickFedoraproject Extra Packages FOR Enterprise LinuxFedoraproject FedoraRedhat Enterprise Linux | 30/5/2023 | 17/6/2026 | A vulnerability was found in ImageMagick. This security flaw cause a remote code execution vulnerability in OpenBlob with --enable-pipes configured. | |
| Analizada | Media (5.5) | 0.95% | — | ImagemagickFedoraproject Extra Packages FOR Enterprise LinuxFedoraproject FedoraRedhat Enterprise Linux+1 | 30/5/2023 | 17/6/2026 | A vulnerability was found in ImageMagick. This security flaw ouccers as an undefined behaviors of casting double to size_t in svg, mvg and other coders (recurring bugs of CVE-2022-32546). | |
| Modificada | Alta (7.2) | 0.72% | — | Metagauss Registrationmagic | 16/5/2023 | 17/6/2026 | The RegistrationMagic plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 5.2.0.5. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for authenticated… | |
| Modificada | Crítica (9.8) | 1.3% | — | Metagauss Registrationmagic | 16/5/2023 | 17/6/2026 | The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2.1.0. This is due to insufficient verification on the user being supplied during a Google social login through the plugin. This makes it possible for unauthenticated attackers to log in as any… | |
| Modificada | Crítica (9.8) | 0.98% | — | H3C Magic R160 Firmware | 12/5/2023 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in H3C R160 V1004004. Affected by this issue is some unknown functionality of the file /goForm/aspForm. The manipulation of the argument go leads to stack-based buffer overflow. The exploit has been disclosed to the public and may be used. VDB-228890 is… | |
| Modificada | Media (6.6) | 0.47% | — | Magicjack A921 Firmware | 28/4/2023 | 17/6/2026 | The MagicJack device, a VoIP solution for internet phone calls, contains a hidden NAND flash memory partition allowing unauthorized read/write access. Attackers can exploit this by replacing the original software with a malicious version, leading to ransomware deployment on the host computer. Affected devices have… | |
| Modificada | Media (4.9) | 0.79% | — | H3C Magic R200 Firmware | 21/4/2023 | 17/6/2026 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via go parameter at /goform/aspForm. | |
| Modificada | Media (4.9) | 0.79% | — | H3C Magic R200 Firmware | 21/4/2023 | 17/6/2026 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the UpdateWanParams interface at /goform/aspForm. | |
| Modificada | Media (4.9) | 0.79% | — | H3C Magic R200 Firmware | 21/4/2023 | 17/6/2026 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via CMD parameter at /goform/aspForm. |