Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

78 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420068; Issue ID: GN20220420068.
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420051; Issue ID: GN20220420051.
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420044; Issue ID: GN20220420044.
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420037; Issue ID: GN20220420037.
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420020; Issue ID: GN20220420020.
ModificadaMedia (6.7)0.26%—Mediatek Mt7603 FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+91/8/202217/6/2026
In wifi driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: GN20220420013; Issue ID: GN20220420013.
ModificadaMedia (5.1)0.14%—Dell Alienware Area 51M R1 FirmwareDell Alienware Area 51M R2 FirmwareDell Alienware M15 R3 FirmwareDell Alienware M15 R4 Firmware+2109/2/202217/6/2026
Select Dell Client Commercial and Consumer platforms are vulnerable to an insufficient verification of data authenticity vulnerability. An authenticated malicious user may exploit this vulnerability in order to install modified BIOS firmware.
ModificadaAlta (7.2)0.26%—Dell Alienware Area 51M R1 FirmwareDell Alienware Area 51M R2 FirmwareDell Alienware M15 R3 FirmwareDell Alienware M15 R4 Firmware+2109/2/202217/6/2026
Select Dell Client Commercial and Consumer platforms contain a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.
AnalizadaMedia (6.4)0.24%—Dell Precision 5820 Tower FirmwareDell Precision 7510 FirmwareDell Precision 7520 FirmwareDell Precision 7530 Firmware+40724/1/20227/10/2026
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
AnalizadaMedia (6.4)0.25%—Dell Precision 7510 FirmwareDell Precision 7520 FirmwareDell Precision 7530 FirmwareDell Precision 7540 Firmware+40724/1/20227/10/2026
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
ModificadaAlta (8.8)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7610 FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
ModificadaAlta (8.8)1.3%—Mediatek Mt7603e FirmwareMediatek Mt7610 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+526/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle IEEE 1905 protocols. (Affected Chipsets MT7603E, MT7610, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 2.0.2; Out-of-bounds write).
ModificadaAlta (8.8)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
ModificadaAlta (7.5)1.1%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds read).
ModificadaAlta (8.8)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
ModificadaAlta (8.8)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
ModificadaAlta (8.8)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
ModificadaAlta (7.5)0.98%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915 Affected Software Versions 7.4.0.0; Out-of-bounds read).
ModificadaAlta (7.5)1.2%—Mediatek Mt7603e FirmwareMediatek Mt7612 FirmwareMediatek Mt7613 FirmwareMediatek Mt7615 Firmware+626/12/202117/6/2026
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds read).
ModificadaAlta (7.5)0.29%—Dell Alienware M15 R6 FirmwareDell Chengming 3990 FirmwareDell Chengming 3991 FirmwareDell G15 5510 Firmware+12424/6/202117/6/2026
Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.
ModificadaAlta (7.5)0.28%—Dell Alienware M15 R6 FirmwareDell Chengming 3990 FirmwareDell Chengming 3991 FirmwareDell G15 5510 Firmware+12424/6/202117/6/2026
Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.
ModificadaAlta (7.5)0.26%—Dell Alienware M15 R6 FirmwareDell Chengming 3990 FirmwareDell Chengming 3991 FirmwareDell G15 5510 Firmware+12424/6/202117/6/2026
Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.
ModificadaMedia (6.5)0.54%—Dell Alienware M15 R6 FirmwareDell Chengming 3990 FirmwareDell Chengming 3991 FirmwareDell G15 5510 Firmware+12424/6/202117/6/2026
Dell UEFI BIOS https stack leveraged by the Dell BIOSConnect feature and Dell HTTPS Boot feature contains an improper certificate validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability using a person-in-the-middle attack which may lead to a denial of service and payload tampering.
ModificadaCrítica (9.8)1.3%—Tonnet Tat-77104g1 FirmwareTonnet Tat-70432n FirmwareTonnet Tat-71416g1 FirmwareTonnet Tat-71832g1 Firmware+427/2/202017/6/2026
DVR firmware in TAT-76 and TAT-77 series of products, provided by TONNET do not properly verify patch files. Attackers can inject a specific command into a patch file and gain access to the system.
ModificadaCrítica (9.8)1.7%—Tonnet Tat-77104g1 FirmwareTonnet Tat-70432n FirmwareTonnet Tat-71416g1 FirmwareTonnet Tat-71832g1 Firmware+427/2/202017/6/2026
DVR firmware in TAT-76 and TAT-77 series of products, provided by TONNET, contain misconfigured authentication mechanism. Attackers can crack the default password and gain access to the system.
Orbitaley — Vulnerabilidades