Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

817 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.8)0.69%—Tenda Fh1205 Firmware29/3/202417/6/2026
Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the urls parameter from saveParentControlInfo function.
AnalizadaMedia (6.5)0.53%—Tenda Fh1205 Firmware29/3/202417/6/2026
Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the page parameter from fromDhcpListClient function.
AnalizadaCrítica (9.8)0.81%—Tenda Fh1205 Firmware29/3/202417/6/2026
Tenda FH1205 v2.0.0.7(775) has a stack overflow vulnerability in the mitInterface parameter from fromAddressNat function.
AnalizadaAlta (8.8)1.8%—Tenda Fh1205 Firmware28/3/202417/6/2026
A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been declared as critical. This vulnerability affects the function GetParentControlInfo of the file /goform/GetParentControlInfo. The manipulation of the argument mac leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit…
AnalizadaAlta (8.8)1.8%—Tenda Fh1205 Firmware28/3/202417/6/2026
A vulnerability was found in Tenda FH1205 2.0.0.7(775). It has been classified as critical. This affects the function formQuickIndex of the file /goform/QuickIndex. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been…
AnalizadaAlta (8.8)1.8%—Tenda Fh1205 Firmware28/3/202417/6/2026
A vulnerability was found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this issue is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the…
AnalizadaAlta (8.8)7.9%—Tenda Fh1205 Firmware28/3/202417/6/2026
A vulnerability has been found in Tenda FH1205 2.0.0.7(775) and classified as critical. Affected by this vulnerability is the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to command injection. The attack can be launched remotely. The exploit has been disclosed to…
AnalizadaAlta (8.8)1.7%—Tenda Fh1205 Firmware27/3/202417/6/2026
A vulnerability, which was classified as critical, was found in Tenda FH1205 2.0.0.7(775). Affected is the function formexeCommand of the file /goform/execCommand. The manipulation of the argument cmdinput leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been…
AnalizadaAlta (8.8)1.6%—Tenda Fh1205 Firmware27/3/202417/6/2026
A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7(775). This issue affects the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has…
AnalizadaAlta (8.8)1.7%—Tenda Fh1205 Firmware27/3/202417/6/2026
A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromSetRouteStatic of the file /goform/fromRouteStatic. The manipulation of the argument entrys leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been…
ModificadaAlta (7.5)0.35%—Qualcomm 9206 LTE FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8052 FirmwareQualcomm Apq8056 Firmware+785/9/202317/6/2026
Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE.
ModificadaAlta (7.5)0.35%—Qualcomm 9206 LTE FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8052 FirmwareQualcomm Apq8056 Firmware+785/9/202317/6/2026
Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE.
ModificadaMedia (4.4)0.17%—Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+90211/8/202317/6/2026
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.
ModificadaMedia (4.4)0.18%—Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+6711/8/202317/6/2026
Improper buffer restrictions in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
ModificadaAlta (7.8)0.12%—Qualcomm Aqt1000 FirmwareQualcomm C-v2x 9150 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6800 Firmware+568/8/202317/6/2026
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
ModificadaAlta (7.8)0.12%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+1798/8/202317/6/2026
Memory corruption while allocating memory in COmxApeDec module in Audio.
ModificadaAlta (7.8)0.12%—Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8096au FirmwareQualcomm Aqt1000 Firmware+1688/8/202317/6/2026
Memory Corruption in Audio while playing amrwbplus clips with modified content.
ModificadaAlta (7.8)0.12%—Qualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 FirmwareQualcomm Csra6620 Firmware+1368/8/202317/6/2026
Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE.
ModificadaAlta (7.1)0.11%—Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Aqt1000 Firmware+1818/8/202317/6/2026
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
ModificadaAlta (7.5)0.35%—Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 FirmwareQualcomm Ar8031 Firmware+428/8/202317/6/2026
Information disclosure in Network Services due to buffer over-read while the device receives DNS response.
ModificadaCrítica (9.8)0.43%—Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+2008/8/202317/6/2026
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
ModificadaCrítica (9.8)0.84%—Tenda Fh1203 FirmwareTenda F1203 FirmwareTenda Fh1205 Firmware7/8/202317/6/2026
Tenda F1203 V2.0.1.6, FH1203 V2.0.1.6 and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.
ModificadaCrítica (9.8)0.85%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+57/8/202317/6/2026
Tenda AC10 V1.0 V15.03.06.23, AC1206 V15.03.06.23, AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6, AC9 V3.0 V15.03.06.42_multi and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.
ModificadaCrítica (9.8)0.84%—Tenda Fh1203 FirmwareTenda F1203 FirmwareTenda Fh1205 Firmware7/8/202317/6/2026
Tenda F1203 V2.0.1.6, FH1203 V2.0.1.6 and FH1205 V2.0.0.7(775) was discovered to contain a stack overflow via the deviceId parameter in the formSetDeviceName function.
ModificadaCrítica (9.8)0.84%—Tenda Ac10 FirmwareTenda Ac1206 FirmwareTenda AC6 FirmwareTenda AC7 Firmware+57/8/202317/6/2026
Tenda AC6 V2.0 V15.03.06.23, AC7 V1.0 V15.03.06.44, F1203 V2.0.1.6, AC5 V1.0 V15.03.06.28, FH1203 V2.0.1.6 and AC9 V3.0 V15.03.06.42_multi, and FH1205 V2.0.0.7(775) were discovered to contain a stack overflow via the deviceId parameter in the formSetClientState function.
Orbitaley — Vulnerabilidades