Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

107 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.96%💥 PoCModbustools Modbus Slave1/4/202217/6/2026
Modbus Tools Modbus Slave (versions 7.4.2 and prior) is vulnerable to a stack-based buffer overflow in the registration field. This may cause the program to crash when a long character string is used.
ModificadaAlta (7.8)0.33%—Freedesktop Dbus15/2/202117/6/2026
A use-after-free flaw was found in D-Bus Development branch <= 1.13.16, dbus-1.12.x stable branch <= 1.12.18, and dbus-1.10.x and older branches <= 1.10.30 when a system has multiple usernames sharing the same UID. When a set of policy rules references these usernames, D-Bus may free some memory in the heap, which is…
ModificadaAlta (7.8)0.19%—Schneider-electric Modbus Driver SuiteSchneider-electric Modbus Serial Driver31/8/202017/6/2026
Improper Privilege Management vulnerability exists in Schneider Electric Modbus Serial Driver (see security notification for versions) which could cause local privilege escalation when the Modbus Serial Driver service is invoked. The driver does not properly assign, modify, track, or check privileges for an actor,…
ModificadaMedia (5.5)0.57%—Freedesktop DbusCanonical Ubuntu Linux8/6/202017/6/2026
An issue was discovered in dbus >= 1.3.0 before 1.12.18. The DBusServer in libdbus, as used in dbus-daemon, leaks file descriptors when a message exceeds the per-message file descriptor limit. A local attacker with access to the D-Bus system bus or another system service's private AF_UNIX socket could use this to make…
ModificadaMedia (4.9)1.0%—Kunbus Pr100088 Modbus Gateway Firmware7/1/202017/6/2026
An attacker could specially craft an FTP request that could crash the PR100088 Modbus gateway versions prior to release R02 (or Software Version 1.1.13166).
ModificadaMedia (5.3)1.6%—Siemens En100 Ethernet Module With Firmware Variant Dnp3 TCPSiemens En100 Ethernet Module With Firmware Variant IEC 61850Siemens En100 Ethernet Module With Firmware Variant Iec104Siemens En100 Ethernet Module With Firmware Variant Modbus TCP+112/12/201917/6/2026
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All versions), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All…
ModificadaMedia (6.1)0.89%—Siemens En100 Ethernet Module With Firmware Variant Dnp3 TCPSiemens En100 Ethernet Module With Firmware Variant IEC 61850Siemens En100 Ethernet Module With Firmware Variant Iec104Siemens En100 Ethernet Module With Firmware Variant Modbus TCP+112/12/201917/6/2026
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All versions), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All…
ModificadaAlta (7.5)1.9%—Siemens En100 Ethernet Module With Firmware Variant Dnp3 TCPSiemens En100 Ethernet Module With Firmware Variant IEC 61850Siemens En100 Ethernet Module With Firmware Variant Iec104Siemens En100 Ethernet Module With Firmware Variant Modbus TCP+112/12/201917/6/2026
A vulnerability has been identified in EN100 Ethernet module DNP3 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.37), EN100 Ethernet module IEC104 variant (All versions), EN100 Ethernet module Modbus TCP variant (All versions), EN100 Ethernet module PROFINET IO variant (All…
ModificadaCrítica (9.1)1.9%—LibmodbusFedoraproject FedoraDebian Linux31/7/201917/6/2026
An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_REGISTERS case, aka VD-1301.
ModificadaCrítica (9.1)2.0%💥 PoCLibmodbusFedoraproject FedoraDebian Linux31/7/201917/6/2026
An issue was discovered in libmodbus before 3.0.7 and 3.1.x before 3.1.5. There is an out-of-bounds read for the MODBUS_FC_WRITE_MULTIPLE_COILS case, aka VD-1302.
ModificadaAlta (7.1)0.55%—Freedesktop DbusCanonical Ubuntu Linux11/6/201917/6/2026
dbus before 1.10.28, 1.12.x before 1.12.16, and 1.13.x before 1.13.12, as used in DBusServer in Canonical Upstart in Ubuntu 14.04 (and in some, less common, uses of dbus-daemon), allows cookie spoofing because of symlink mishandling in the reference implementation of DBUS_COOKIE_SHA1 in the libdbus library. (This only…
ModificadaMedia (4.9)0.88%—Schneider-electric Modbus Serial DriverSchneider-electric Driver Suite22/5/201917/6/2026
An Externally Controlled Reference to a Resource (CWE-610) vulnerability exists in Schneider Electric Modbus Serial Driver (For 64-bit Windows OS:V3.17 IE 37 and prior , For 32-bit Windows OS:V2.17 IE 27 and prior, and as part of the Driver Suite version:V14.12 and prior) which could allow write access to system files…
ModificadaAlta (8.8)1.8%—Python-dbusmock Project Python-dbusmock22/4/201917/6/2026
python-dbusmock before version 0.15.1 AddTemplate() D-Bus method call or DBusTestCase.spawn_server_template() method could be tricked into executing malicious code if an attacker supplies a .pyc file.
ModificadaAlta (8.1)1.0%—Kunbus Pr100088 Modbus Gateway Firmware2/4/201917/6/2026
An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM position.
ModificadaMedia (5.9)1.2%—Siemens Siprotec 5 With CPU Variant Cp100Siemens Siprotec 5 With CPU Variant Cp200Siemens Siprotec 5 With CPU Variant Cp300Siemens En100 Ethernet Module Firmware+521/3/201917/6/2026
A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.35), Firmware variant MODBUS TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All versions), Firmware variant IEC104 for EN100 Ethernet module (All versions),…
ModificadaAlta (7.2)0.59%—Kunbus Pr100088 Modbus Gateway Firmware12/2/201917/6/2026
An attacker could retrieve plain-text credentials stored in a XML file on PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) through FTP.
ModificadaCrítica (9.1)1.2%—Kunbus Pr100088 Modbus Gateway Firmware12/2/201917/6/2026
Registers used to store Modbus values can be read and written from the web interface without authentication in the PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166).
ModificadaCrítica (9.8)1.2%—Kunbus Pr100088 Modbus Gateway Firmware12/2/201917/6/2026
PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.
ModificadaAlta (7.5)8.8%💥 ExploitModbustools Modbus Slave16/11/201817/6/2026
Modbus Slave 7.0.0 in modbus tools has a Buffer Overflow.
ModificadaAlta (7.5)2.4%—Siemens Dnp3 TCP FirmwareSiemens IEC 61850 FirmwareSiemens Iec104 FirmwareSiemens Modbus TCP Firmware+423/7/201817/6/2026
A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firmware variant PROFINET IO for EN100 Ethernet module (All versions), Firmware variant Modbus TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All…
ModificadaAlta (7.5)2.4%—Siemens Dnp3 TCP FirmwareSiemens IEC 61850 FirmwareSiemens Iec104 FirmwareSiemens Modbus TCP Firmware+423/7/201817/6/2026
A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firmware variant PROFINET IO for EN100 Ethernet module (All versions), Firmware variant Modbus TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All…
ModificadaMedia (5.5)5.8%💥 ExploitModbuspal Project Modbuspal11/5/201817/6/2026
ModbusPal 1.6b is vulnerable to an XML External Entity (XXE) attack. Projects are saved as .xmpp files and automations can be exported as .xmpa files, both XML-based, which are vulnerable to XXE injection. Sending a crafted .xmpp or .xmpa file to a user, when opened/imported in ModbusPal, will return the contents of…
ModificadaMedia (6.1)0.67%—Redbus Clone Script Project Redbus Clone Script5/4/201817/6/2026
PHP Scripts Mall Redbus Clone Script 3.0.6 has XSS via the ter_from or tag parameter to results.php.
ModificadaAlta (7.5)1.8%—Siemens Siprotec Compact 7sj80 FirmwareSiemens Siprotec Compact 7sk80 FirmwareSiemens Siprotec 4 7sj66 FirmwareSiemens Digsi 4+58/3/201817/6/2026
A vulnerability has been identified in DIGSI 4 (All versions < V4.92), EN100 Ethernet module DNP3 variant (All versions < V1.05.00), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.30), EN100 Ethernet module Modbus TCP variant (All versions), EN100…
ModificadaMedia (5.3)0.58%—Siemens Siprotec Compact 7sj80 FirmwareSiemens Siprotec Compact 7sk80 FirmwareSiemens Siprotec 4 7sj66 FirmwareSiemens Digsi 4+58/3/201817/6/2026
A vulnerability has been identified in DIGSI 4 (All versions < V4.92), EN100 Ethernet module DNP3 variant (All versions < V1.05.00), EN100 Ethernet module IEC 104 variant (All versions), EN100 Ethernet module IEC 61850 variant (All versions < V4.30), EN100 Ethernet module Modbus TCP variant (All versions), EN100…
Orbitaley — Vulnerabilidades