Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
–

244 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)0.56%—H3C Magic B1st Firmware16/8/202417/6/2026
H3C Magic B1ST v100R012 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
AnalizadaCrítica (9.8)0.56%—H3C R3010 Firmware16/8/202417/6/2026
H3C R3010 v100R002L02 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
AplazadaAlta (8.8)0.33%—H3C Technologies Magic Rc3000AI16/7/202417/6/2026
An issue in H3C Technologies Co., Limited H3C Magic RC3000 RC3000V100R009 allows a remote attacker to execute arbitrary code via the Routing functionality.
AnalizadaMedia (4.1)0.41%—H3C Magic R230 Firmware24/6/202417/6/2026
H3C Magic R230 V100R002's udpserver opens port 9034, allowing attackers to execute arbitrary commands.
AnalizadaCrítica (9.8)0.53%—H3C Magic R230 Firmware24/6/202417/6/2026
H3C Magic R230 V100R002 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
AplazadaMedia (6.3)0.53%—H3C Seasql DWSAI20/6/202417/6/2026
SQL Injection vulnerability in H3C technology company SeaSQL DWS V2.0 allows a remote attacker to execute arbitrary code via a crafted file.
AplazadaAlta (7.5)0.42%—H3C Magic R365AIH3C Magic R100AI28/5/202417/6/2026
An issue discovered in H3C Magic R365 and H3C Magic R100 routers allows attackers to hijack TCP sessions which could lead to a denial of service.
AplazadaCrítica (9.8)53%💥 ExploitH3C Er8300g2-xAI22/4/202417/6/2026
H3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's management system can be accessed via the management system page login interface.
ModificadaMedia (5.3)2.7%💥 PoCH3C Gr-1100-p FirmwareH3C Gr-1108-p FirmwareH3C Gr-1200w FirmwareH3C Gr-1800ax Firmware+1124/9/202317/6/2026
A vulnerability classified as problematic was found in H3C GR-1100-P, GR-1108-P, GR-1200W, GR-1800AX, GR-2200, GR-3200, GR-5200, GR-8300, ER2100n, ER2200G2, ER3200G2, ER3260G2, ER5100G2, ER5200G2 and ER6300G2 up to 20230908. This vulnerability affects unknown code of the file /userLogin.asp of the component Config…
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateSnat function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateMacClone function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the AddWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the Edit_BasicSSID_5G function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateWanParams function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)1.3%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the Edit_BasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.91%💥 PoCH3C Magic B1stw Firmware26/6/202317/6/2026
H3C Magic B1STW B1STV100R012 was discovered to contain a stack overflow via the function SetAPInfoById. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.2)0.93%—H3C Magic R300-2100m Firmware31/5/202317/6/2026
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the AddWlanMacList interface at /goform/aspForm.
ModificadaAlta (7.2)0.93%—H3C Magic R300-2100m Firmware31/5/202317/6/2026
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the Edit_BasicSSID interface at /goform/aspForm.
ModificadaAlta (7.2)0.93%—H3C Magic R300-2100m Firmware31/5/202317/6/2026
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the AddMacList interface at /goform/aspForm.
ModificadaAlta (7.2)0.93%—H3C Magic R300-2100m Firmware31/5/202317/6/2026
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the SetAPWifiorLedInfoById interface at /goform/aspForm.
ModificadaAlta (7.2)0.93%—H3C Magic R300-2100m Firmware31/5/202317/6/2026
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the SetMobileAPInfoById interface at /goform/aspForm.
Orbitaley — Vulnerabilidades