Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
94 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.40% | — | Cisco Aironet Access Point Software | 22/8/2016 | 17/6/2026 | Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.110.0, 8.2.12x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow local users to gain privileges via crafted CLI parameters, aka Bug ID CSCuz24725. | |
| Modificada | Media (6.5) | 1.1% | — | Cisco Aironet Access Point Software | 22/8/2016 | 17/6/2026 | The Aggregated MAC Protocol Data Unit (AMPDU) implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x before 8.3.102.0 allows remote attackers to cause a denial of service (device reload) via a crafted AMPDU header, aka Bug ID CSCuz56288. | |
| Modificada | Alta (8.1) | 0.73% | — | Cisco Aironet Access Point Software | 10/6/2016 | 17/6/2026 | Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka Bug ID CSCuy55803. | |
| Modificada | Alta (7.8) | 0.36% | — | Cisco Aironet Access Point Software | 8/6/2016 | 17/6/2026 | Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root access via crafted CLI command parameters, aka Bug ID CSCuy64037. | |
| Modificada | Media (5.3) | 1.3% | — | Cisco Small Business Wireless Access Points Firmware | 17/2/2016 | 17/6/2026 | Cisco Small Business 500 Wireless Access Point devices with firmware 1.0.4.4 allow remote attackers to set the system time via a crafted POST request, aka Bug ID CSCuy01457. | |
| Modificada | Alta (7.3) | 1.4% | — | Cisco Aironet Access Point Software | 15/1/2016 | 17/6/2026 | Cisco Aironet 1800 devices with software 7.2, 7.3, 7.4, 8.1(112.3), 8.1(112.4), and 8.1(15.14) have a default account, which makes it easier for remote attackers to obtain access via unspecified vectors, aka Bug ID CSCuw58062. | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco Aironet Access Point Software | 15/1/2016 | 17/6/2026 | The IP ingress packet handler on Cisco Aironet 1800 devices with software 8.1(112.3) and 8.1(112.4) allows remote attackers to cause a denial of service via a crafted header in an IP packet, aka Bug ID CSCuv63138. | |
| Modificada | Alta (7.8) | 1.9% | — | Cisco Aironet Access Point Software | 14/11/2015 | 17/6/2026 | Cisco Aironet 1800 devices with software 8.1(131.0) allow remote attackers to cause a denial of service (CPU consumption) by improperly establishing many SSHv2 connections, aka Bug ID CSCux13374. | |
| Modificada | Alta (7.2) | 0.38% | — | Cisco Aironet Access Point Software | 13/10/2015 | 17/6/2026 | Cisco Aironet 1850 access points with software 8.1(112.4) allow local users to gain privileges via crafted CLI commands, aka Bug ID CSCuv79694. | |
| Modificada | Alta (8.8) | 1.6% | — | N-tron 702w Industrial Wireless Access Point | 13/6/2015 | 16/6/2026 | N-Tron 702-W Industrial Wireless Access Point devices use the same (1) SSH and (2) HTTPS private keys across different customers' installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of a key. | |
| Modificada | Alta (7.8) | 1.3% | — | Arubanetworks Instant Access Point Firmware | 3/2/2015 | 17/6/2026 | Heap-based buffer overflow in Aruba Instant (IAP) with firmware before 4.0.0.7 and 4.1.x before 4.1.1.2 allows remote attackers to cause a denial of service (crash or reset to factory default) via a malformed frame to the wireless interface. | |
| Modificada | Media (6.1) | 0.57% | — | Cisco Aironet Access Point Software | 5/3/2013 | 16/6/2026 | The HTTP Profiler on the Cisco Aironet Access Point with software 15.2 and earlier does not properly manage buffers, which allows remote attackers to cause a denial of service (device reload) via crafted HTTP requests, aka Bug ID CSCuc62460. | |
| Modificada | Alta (8.3) | 1.9% | — | HP Procurve Access Point SoftwareHP Procurve M110 Access PointHP Procurve Miltope Dual Radio Access PointHP Procurve Msm310-r Access Point+14 | 18/10/2010 | 16/6/2026 | Unspecified vulnerability on HP ProCurve Access Points, Access Controllers, and Mobility Controllers with software 5.1.x through 5.1.9, 5.2.x through 5.2.7, 5.3.x through 5.3.5, and 5.4.x through 5.4.0 allows remote attackers to execute arbitrary code via unknown vectors. | |
| Modificada | Media (5) | 83% | 💥 Exploit | Cisco Agent DesktopCisco E-mail ManagerCisco Emergency ResponderCisco Intelligent Contact Manager+72 | 31/5/2005 | 16/6/2026 | Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old. | |
| Modificada | Media (5) | 10% | 💥 Exploit | Nortel Wlan Access Point 2220Nortel Wlan Access Point 2221Nortel Wlan Access Point 2225 | 31/12/2004 | 16/6/2026 | Nortel Wireless LAN (WLAN) Access Point (AP) 2220, 2221, and 2225 allow remote attackers to cause a denial of service (service crash) via a TCP request with a large string, followed by 8 newline characters, to (1) the Telnet service on TCP port 23 and (2) the HTTP service on TCP port 80, possibly due to a buffer… | |
| Modificada | Media (5) | 1.6% | — | D-link Di-614+Longshine Technologie Longshine Wireless Ethernet Access Point | 31/12/2003 | 16/6/2026 | TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication. | |
| Modificada | Media (5) | 3.4% | 💥 Exploit | Lucent Access Point Service Router 1500Lucent Access Point Service Router 300Lucent Access Point Service Router 600 | 31/12/2002 | 16/6/2026 | Buffer overflow in Lucent Access Point 300, 600, and 1500 Service Routers allows remote attackers to cause a denial of service (reboot) via a long HTTP request to the administrative interface. | |
| Modificada | Media (5) | 1.2% | — | 3com 3crwe747aSymbol 41x1 Access Point | 21/7/2001 | 16/6/2026 | SNMP agents in 3Com AirConnect AP-4111 and Symbol 41X1 Access Point allow remote attackers to obtain the WEP encryption key by reading it from a MIB when the value should be write-only, via (1) dot11WEPDefaultKeyValue in the dot11WEPDefaultKeysTable of the IEEE 802.11b MIB, or (2) ap128bWepKeyValue in the… | |
| Modificada | Alta (7.5) | 1.6% | — | Atmel 802.11b Vnet-b Access PointLinksys Wap11Netgear Me102 | 21/7/2001 | 16/6/2026 | SNMP service in Atmel 802.11b VNET-B Access Point 1.3 and earlier, as used in Netgear ME102 and Linksys WAP11, accepts arbitrary community strings with requested MIB modifications, which allows remote attackers to obtain sensitive information such as WEP keys, cause a denial of service, or gain access to the network. |