Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
105 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 2.0% | — | Mikrotik Routeros | 8/7/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from an uncontrolled resource consumption vulnerability in the /nova/bin/route process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU. | |
| Modificada | Media (6.5) | 2.0% | — | Mikrotik Routeros | 7/7/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from an assertion failure vulnerability in the /nova/bin/user process. An authenticated remote attacker can cause a Denial of Service due to an assertion failure via a crafted packet. | |
| Modificada | Media (6.5) | 1.6% | — | Mikrotik Routeros | 7/7/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/graphing process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 1.5% | — | Mikrotik Routeros | 7/7/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remote attacker can cause a Denial of Service due to invalid memory access. | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 7/7/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nova/bin/net process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU. | |
| Modificada | Media (6.5) | 2.3% | — | Mikrotik Routeros | 7/7/2021 | 16/9/2026 | Mikrotik RouterOs 6.44.5 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/console process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 2.5% | — | Mikrotik Routeros | 7/7/2021 | 16/9/2026 | Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an assertion failure vulnerability in the /nova/bin/console process. An authenticated remote attacker can cause a Denial of Service due to an assertion failure via a crafted packet. | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 19/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/dot1x process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 19/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) in the /ram/pckg/advanced-tools/nova/bin/netwatch process. An authenticated remote attacker can cause a Denial of Service due to a divide by zero error. | |
| Modificada | Media (6.5) | 2.7% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the mactel process. An authenticated remote attacker can cause a Denial of Service due to improper memory access. | |
| Modificada | Media (6.5) | 2.7% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the log process. An authenticated remote attacker can cause a Denial of Service due to improper memory access. | |
| Modificada | Media (6.5) | 3.1% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remote attacker can cause a Denial of Service due to invalid memory access. | |
| Modificada | Media (6.5) | 2.7% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs prior to stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/bfd process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 2.8% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote attacker can cause a Denial of Service due to improper memory access. | |
| Modificada | Media (6.5) | 3.2% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote attacker can cause a Denial of Service due to improper memory access. | |
| Modificada | Media (6.5) | 3.2% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 3.1% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.6 (long-term tree) suffers from an assertion failure vulnerability in the btest process. An authenticated remote attacker can cause a Denial of Service due to an assertion failure via a crafted packet. | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/lcdstat process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 18/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a divison by zero vulnerability in the /nova/bin/lcdstat process. An authenticated remote attacker can cause a Denial of Service due to a divide by zero error. | |
| Modificada | Media (6.5) | 1.7% | — | Mikrotik Routeros | 11/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/resolver process. An authenticated remote attacker can cause a Denial of Service due to invalid memory access. | |
| Modificada | Media (6.5) | 2.1% | — | Mikrotik Routeros | 11/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /ram/pckg/wireless/nova/bin/wireless process. An authenticated remote attacker can cause a Denial of Service due via a crafted packet. | |
| Modificada | Media (6.5) | 1.1% | — | Mikrotik Routeros | 3/5/2021 | 17/6/2026 | Mikrotik RouterOs before 6.46.5 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process. An authenticated remote attacker can cause a Denial of Service due via the loop counter variable. | |
| Modificada | Media (6.5) | 2.0% | — | Mikrotik Routeros | 3/5/2021 | 17/6/2026 | Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process. An authenticated remote attacker can cause a Denial of Service due via the loop counter variable. | |
| Modificada | Alta (8.1) | 4.5% | — | Mikrotik Routeros | 19/3/2021 | 17/6/2026 | MikroTik RouterOS 6.47.9 allows remote authenticated ftp users to create or overwrite arbitrary .rsc files via the /export command. NOTE: the vendor's position is that this is intended behavior because of how user policies work | |
| Modificada | Media (6.1) | 0.94% | — | Mikrotik Routeros | 4/1/2021 | 17/6/2026 | In MikroTik RouterOS through 2021-01-04, the hotspot login page is vulnerable to reflected XSS via the target parameter. |