Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
817 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.69% | — | Tenda Fh1205 Firmware | 29/3/2024 | 17/6/2026 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the urls parameter from saveParentControlInfo function. | |
| Analizada | Media (6.5) | 0.53% | — | Tenda Fh1205 Firmware | 29/3/2024 | 17/6/2026 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromDhcpListClient function. | |
| Analizada | Crítica (9.8) | 0.81% | — | Tenda Fh1205 Firmware | 29/3/2024 | 17/6/2026 | Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the mitInterface parameter from fromAddressNat function. | |
| Analizada | Alta (8.8) | 1.8% | — | Tenda Fh1205 Firmware | 28/3/2024 | 17/6/2026 | A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been declared as critical. This vulnerability affects the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument mac leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit… | |
| Analizada | Alta (8.8) | 1.8% | — | Tenda Fh1205 Firmware | 28/3/2024 | 17/6/2026 | A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been classified as critical. This affects the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 1.8% | — | Tenda Fh1205 Firmware | 28/3/2024 | 17/6/2026 | A vulnerability was found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this issue is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Alta (8.8) | 7.9% | — | Tenda Fh1205 Firmware | 28/3/2024 | 17/6/2026 | A vulnerability has been found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to command injection. The attack can be launched remotely. The exploit has been disclosed to… | |
| Analizada | Alta (8.8) | 1.7% | — | Tenda Fh1205 Firmware | 27/3/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Tenda FH1205 2.0.0.7(775). Affected is the function formexeCommand of the file /goform/execCommand. The manipulation of the argument cmdinput leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 1.6% | — | Tenda Fh1205 Firmware | 27/3/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7(775). This issue affects the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has… | |
| Analizada | Alta (8.8) | 1.7% | — | Tenda Fh1205 Firmware | 27/3/2024 | 17/6/2026 | A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromSetRouteStatic of the file /goform/fromRouteStatic. The manipulation of the argument entrys leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been… | |
| Modificada | Alta (7.5) | 0.35% | — | Qualcomm 9206 LTE FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8052 FirmwareQualcomm Apq8056 Firmware+78 | 5/9/2023 | 17/6/2026 | Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE. | |
| Modificada | Alta (7.5) | 0.35% | — | Qualcomm 9206 LTE FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8052 FirmwareQualcomm Apq8056 Firmware+78 | 5/9/2023 | 17/6/2026 | Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. | |
| Modificada | Media (4.4) | 0.17% | — | Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+902 | 11/8/2023 | 17/6/2026 | Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access. | |
| Modificada | Media (4.4) | 0.18% | — | Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+67 | 11/8/2023 | 17/6/2026 | Improper buffer restrictions in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm Aqt1000 FirmwareQualcomm C-v2x 9150 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6800 Firmware+56 | 8/8/2023 | 17/6/2026 | The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+179 | 8/8/2023 | 17/6/2026 | Memory corruption while allocating memory in COmxApeDec module in Audio. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8096au FirmwareQualcomm Aqt1000 Firmware+168 | 8/8/2023 | 17/6/2026 | Memory Corruption in Audio while playing amrwbplus clips with modified content. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 FirmwareQualcomm Csra6620 Firmware+136 | 8/8/2023 | 17/6/2026 | Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE. | |
| Modificada | Alta (7.1) | 0.11% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Aqt1000 Firmware+181 | 8/8/2023 | 17/6/2026 | Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key. | |
| Modificada | Alta (7.5) | 0.35% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Ar8031 Firmware+42 | 8/8/2023 | 17/6/2026 | Information disclosure in Network Services due to buffer over-read while the device receives DNS response. | |
| Modificada | Crítica (9.8) | 0.43% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+200 | 8/8/2023 | 17/6/2026 | Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder. | |
| Modificada | Crítica (9.8) | 0.84% | — | Tenda Fh1203 FirmwareTenda F1203 FirmwareTenda Fh1205 Firmware | 7/8/2023 | 17/6/2026 | Tenda F1203 V2.0.1.6, FH1203 V2.0.1.6 and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function. | |
| Modificada | Crítica (9.8) | 0.85% | — | Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+5 | 7/8/2023 | 17/6/2026 | Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function. | |
| Modificada | Crítica (9.8) | 0.84% | — | Tenda Fh1203 FirmwareTenda F1203 FirmwareTenda Fh1205 Firmware | 7/8/2023 | 17/6/2026 | Tenda F1203 V2.0.1.6, FH1203 V2.0.1.6 and FH1205 V2.0.0.7(775) was discovered to contain a stack overflow via the deviceId parameter in the formSetDeviceName function. | |
| Modificada | Crítica (9.8) | 0.84% | — | Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+5 | 7/8/2023 | 17/6/2026 | Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6 and AC9 V3.0 V15.03.06.42_multi, and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the formSetClientState function. |