Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
152 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Csr8811 FirmwareQualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+165 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+177 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 Firmware+145 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the received TID-to-link mapping action frame. | |
| Analizada | Alta (7.5) | 0.33% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6900 Firmware+147 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 Firmware+191 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report. | |
| Analizada | Alta (7.5) | 0.32% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+321 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing ESP IE from beacon/probe response frame. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+166 | 5/8/2024 | 17/6/2026 | Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+245 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Wsa8845h FirmwareQualcomm Wsa8845 FirmwareQualcomm Wsa8840 FirmwareQualcomm Wsa8835 Firmware+245 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. | |
| Analizada | Alta (7.5) | 0.28% | — | Qualcomm Ar8035 FirmwareQualcomm Ar9380 FirmwareQualcomm Csr8811 FirmwareQualcomm Csra6620 Firmware+244 | 5/8/2024 | 17/6/2026 | Transient DOS while parsing fragments of MBSSID IE from beacon frame. | |
| Analizada | Alta (7.5) | 0.26% | — | Qualcomm Wsa8835 FirmwareQualcomm Wsa8830 FirmwareQualcomm Wsa8815 FirmwareQualcomm Wsa8810 Firmware+125 | 5/8/2024 | 17/6/2026 | Information disclosure while handling beacon probe frame during scan entry generation in client side. | |
| Analizada | Alta (7.5) | 0.26% | — | Qualcomm Snapdragon W5+ GEN 1 Wearable Platform FirmwareQualcomm Snapdragon 870 5G Mobile Platform (sm8250-ac) FirmwareQualcomm Snapdragon 865+ 5G Mobile Platform (sm8250-ab) FirmwareQualcomm Wsa8835 Firmware+171 | 5/8/2024 | 17/6/2026 | Information disclosure while handling beacon or probe response frame in STA. | |
| Modificada | Alta (7.8) | 0.10% | — | Qualcomm Apq8064au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Ar9380 Firmware+339 | 1/7/2024 | 17/6/2026 | Memory corruption when allocating and accessing an entry in an SMEM partition. | |
| Modificada | Alta (7.8) | 0.11% | — | Qualcomm Csr8811 FirmwareQualcomm Immersive Home 214 Platform FirmwareQualcomm Immersive Home 216 Platform FirmwareQualcomm Immersive Home 316 Platform Firmware+65 | 1/7/2024 | 17/6/2026 | Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image. | |
| Modificada | Alta (7.5) | 0.21% | — | Qualcomm Fastconnect 7800 FirmwareQualcomm Immersive Home 3210 Platform FirmwareQualcomm Immersive Home 326 Platform FirmwareQualcomm Ipq5300 Firmware+60 | 1/7/2024 | 17/6/2026 | Information disclosure while parsing sub-IE length during new IE generation. | |
| Modificada | Media (5.5) | 0.09% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+307 | 1/7/2024 | 17/6/2026 | Transient DOS while loading the TA ELF file. | |
| Modificada | Alta (7.5) | 0.21% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Immersive Home 214 Platform Firmware+107 | 1/7/2024 | 17/6/2026 | Information disclosure while handling SA query action frame. | |
| Modificada | Alta (7.5) | 0.21% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 7800 FirmwareQualcomm Immersive Home 214 Platform Firmware+107 | 1/7/2024 | 17/6/2026 | INformation disclosure while handling Multi-link IE in beacon frame. | |
| Analizada | Alta (7.5) | 0.26% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+121 | 3/6/2024 | 17/6/2026 | Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame. | |
| Analizada | Alta (7.5) | 0.21% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+108 | 3/6/2024 | 17/6/2026 | Information disclosure while handling T2LM Action Frame in WLAN Host. | |
| Analizada | Media (5.1) | 7.9% | — | Ruijie Rg-uac 6000-e20c FirmwareRuijie Rg-uac 6000-e20m FirmwareRuijie Rg-uac 6000-e50 FirmwareRuijie Rg-uac 6000-e50c Firmware+23 | 25/5/2024 | 17/6/2026 | A vulnerability was found in Ruijie RG-UAC up to 20240516. It has been rated as critical. Affected by this issue is some unknown functionality of the file /view/vpn/autovpn/sub_commit.php. The manipulation of the argument key leads to os command injection. The attack may be launched remotely. The exploit has been… | |
| Analizada | Media (5.1) | 7.9% | — | Ruijie Rg-uac 6000-cc FirmwareRuijie Rg-uac 6000-e10 FirmwareRuijie Rg-uac 6000-e10c FirmwareRuijie Rg-uac 6000-e20 Firmware+23 | 25/5/2024 | 17/6/2026 | A vulnerability was found in Ruijie RG-UAC up to 20240516. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /view/vpn/autovpn/online_check.php. The manipulation of the argument peernode leads to os command injection. The attack can be launched remotely. The… | |
| Analizada | Media (5.1) | 7.9% | — | Ruijie Rg-uac 6000-cc FirmwareRuijie Rg-uac 6000-e10 FirmwareRuijie Rg-uac 6000-e10c FirmwareRuijie Rg-uac 6000-e20 Firmware+23 | 25/5/2024 | 17/6/2026 | A vulnerability was found in Ruijie RG-UAC up to 20240516. It has been classified as critical. Affected is an unknown function of the file /view/vpn/autovpn/online.php. The manipulation of the argument peernode leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed… | |
| Analizada | Media (5.1) | 9.0% | — | Ruijie Rg-uac 6000-cc FirmwareRuijie Rg-uac 6000-e10 FirmwareRuijie Rg-uac 6000-e10c FirmwareRuijie Rg-uac 6000-e20 Firmware+23 | 25/5/2024 | 17/6/2026 | A vulnerability was found in Ruijie RG-UAC up to 20240516 and classified as critical. This issue affects some unknown processing of the file /view/systemConfig/sys_user/user_commit.php. The manipulation of the argument email2/user_name leads to os command injection. The attack may be initiated remotely. The exploit… | |
| Analizada | Media (5.1) | 9.0% | — | Ruijie Rg-uac 6000-cc FirmwareRuijie Rg-uac 6000-e10 FirmwareRuijie Rg-uac 6000-e10c FirmwareRuijie Rg-uac 6000-e20 Firmware+23 | 25/5/2024 | 17/6/2026 | A vulnerability has been found in Ruijie RG-UAC up to 20240516 and classified as critical. This vulnerability affects the function addVlan of the file /view/networkConfig/vlan/vlan_add_commit.php. The manipulation of the argument phyport leads to os command injection. The attack can be initiated remotely. The exploit… |