Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
–

76 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.21%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (5.5)0.14%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause a denial of service during SMM.
ModificadaAlta (8.8)2.2%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter sPort/ePort in the setIpPortFilterRules function.
ModificadaAlta (8.8)2.2%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter week, sTime, and eTime in the setParentalRules function.
ModificadaAlta (8.8)2.4%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter command in the setTracerouteCfg function.
ModificadaAlta (8.8)2.2%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter pppoeUser in the setOpModeCfg function.
ModificadaCrítica (9.8)2.3%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a pre-authentication buffer overflow in the main function via long post data.
ModificadaAlta (8.8)2.2%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter text in the setSmsCfg function.
ModificadaAlta (8.8)2.2%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter ip in the setDiagnosisCfg function.
ModificadaCrítica (9.8)1.8%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK NR1800X V9.1.0u.6279_B20210910 contains a command injection via the FileName parameter in the setUploadSetting function.
ModificadaCrítica (9.8)1.8%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK NR1800X V9.1.0u.6279_B20210910 contains a command injection via the ussd parameter in the setUssd function.
ModificadaCrítica (9.8)1.8%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK NR1800X V9.1.0u.6279_B20210910 contains a command injection via the hostName parameter in the setOpModeCfg function.
ModificadaCrítica (9.8)1.8%—Totolink Lr350 Firmware23/11/202217/6/2026
TOTOLINK NR1800X V9.1.0u.6279_B20210910 contains a command injection via the FileName parameter in the UploadFirmwareFile function.
ModificadaAlta (7.5)1.4%—Netgear Rbk352 FirmwareNetgear Rbr350 FirmwareNetgear Rbs350 Firmware26/12/202117/6/2026
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.
ModificadaAlta (7.5)1.0%—Netgear Rbk352 FirmwareNetgear Rbr350 FirmwareNetgear Rbs350 Firmware26/12/202117/6/2026
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.
ModificadaAlta (7.5)0.78%—Netgear Ex6100v2 FirmwareNetgear Ex6150v2 FirmwareNetgear Ex6250 FirmwareNetgear Ex6400 Firmware+1426/12/202117/6/2026
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EX6100v2 before 1.0.1.106, EX6150v2 before 1.0.1.106, EX6250 before 1.0.0.146, EX6400 before 1.0.2.164, EX6400v2 before 1.0.0.146, EX6410 before 1.0.0.146, EX6420 before 1.0.0.146, EX7300 before 1.0.2.164, EX7300v2 before…
ModificadaCrítica (9.8)2.5%—Netgear Ex6250 FirmwareNetgear Ex7700 FirmwareNetgear Ex8000 FirmwareNetgear Lbr1020 Firmware+3826/12/202117/6/2026
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects EX6200v2 before 1.0.1.86, EX6250 before 1.0.0.134, EX7700 before 1.0.0.216, EX8000 before 1.0.1.232, LBR1020 before 2.6.3.58, LBR20 before 2.6.3.50, R7800 before 1.0.2.80, R8900 before 1.0.5.26, R9000 before…
ModificadaMedia (6.5)0.36%—Netgear Rbk352 FirmwareNetgear Rbr350 FirmwareNetgear Rbs350 Firmware26/12/202117/6/2026
Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.
ModificadaAlta (8.8)0.41%—Netgear Rbk352 FirmwareNetgear Rbr350 FirmwareNetgear Rbs350 Firmware26/12/202117/6/2026
Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.