Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
112 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 0.58% | — | Sony Wf-1000x FirmwareSony Wf-sp700n FirmwareSony Wh-1000xm2 FirmwareSony Wh-1000xm3 Firmware+7 | 9/6/2020 | 17/6/2026 | SONY Wireless Headphones WF-1000X, WF-SP700N, WH-1000XM2, WH-1000XM3, WH-CH700N, WH-H900N, WH-XB700, WH-XB900N, WI-1000X, WI-C600N and WI-SP600N with firmware versions prior to 4.5.2 have vulnerability that someone within the Bluetooth range can make the Bluetooth pairing and operate such as changing volume of the… | |
| Modificada | Media (5.1) | 0.28% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Insufficient access control in firmware Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow a privileged user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.29% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Insufficient input validation in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.29% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.29% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Insufficient input validation in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.29% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Alta (7.8) | 0.33% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+4 | 14/11/2019 | 17/6/2026 | Buffer overflow in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable an escalation of privilege via local access. | |
| Modificada | Media (6.5) | 0.27% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Unhandled exception in firmware for Intel(R) Ethernet 700 Series Controllers before version 7.0 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.27% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Unhandled exception in Kernel-mode drivers for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Alta (8.2) | 0.33% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Insufficient access control in ilp60x64.sys driver for Intel(R) Ethernet 700 Series Controllers before version 1.33.0.0 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (8.8) | 0.56% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Buffer overflow in firmware for Intel(R) Ethernet 700 Series Controllers before version 7.0 may allow an unauthenticated user to potentially enable an escalation of privilege via an adjacent access. | |
| Modificada | Media (6.7) | 0.32% | — | Intel Ethernet Controller X710-tm4 FirmwareIntel Ethernet Controller X710-at2 FirmwareIntel Ethernet Controller Xxv710-am2 FirmwareIntel Ethernet Controller Xxv710-am1 Firmware+3 | 14/11/2019 | 17/6/2026 | Insufficient access control in firmware for Intel(R) Ethernet 700 Series Controllers before version 7.0 may allow a privileged user to potentially enable an escalation of privilege, denial of service, or information disclosure via local access. | |
| Modificada | Media (6.1) | 1.1% | — | Lenovo Bladecenter Hs22 FirmwareLenovo Bladecenter Hs22v FirmwareLenovo Bladecenter HX5 FirmwareLenovo System X Idataplex Dx360 M2 Firmware+11 | 19/8/2019 | 17/6/2026 | A stored cross-site scripting (XSS) vulnerability exists in various firmware versions of the legacy IBM System x IMM (IMM v1) embedded Baseboard Management Controller (BMC). This vulnerability could allow an unauthenticated user to cause JavaScript code to be stored in the IMM log which may then be executed in the… | |
| Modificada | Media (6.8) | 0.83% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and… | |
| Modificada | Alta (8.8) | 2.4% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and… | |
| Modificada | Alta (8.8) | 2.5% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and… | |
| Modificada | Alta (8.8) | 2.6% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and… | |
| Modificada | Media (6.5) | 1.2% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Missing authorization vulnerability exists in EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and earlier,… | |
| Modificada | Alta (8.8) | 2.5% | — | Canon Eos-1d X FirmwareCanon Eos-1d X Mkii FirmwareCanon Eos-1d C FirmwareCanon EOS 5D Mark III Firmware+62 | 6/8/2019 | 17/6/2026 | Buffer overflow in PTP (Picture Transfer Protocol) of EOS series digital cameras (EOS-1D X firmware version 2.1.0 and earlier, EOS-1D X MKII firmware version 1.1.6 and earlier, EOS-1D C firmware version 1.4.1 and earlier, EOS 5D MARK III firmware version 1.3.5 and earlier, EOS 5D MARK IV firmware version 1.2.0 and… | |
| Modificada | Crítica (9.8) | 1.7% | — | Motorola CX2 FirmwareMotorola M2 Firmware | 23/5/2019 | 17/6/2026 | An issue was discovered in scopd on Motorola routers CX2 1.01 and M2 1.01. There is a Use of an Externally Controlled Format String, reachable via TCP port 8010 or UDP port 8080. | |
| Modificada | Crítica (9.8) | 3.9% | — | Motorola CX2 FirmwareMotorola M2 Firmware | 18/4/2019 | 17/6/2026 | An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function startRmtAssist in hnap, which leads to remote code execution via shell metacharacters in a JSON value. | |
| Modificada | Media (5.3) | 1.3% | — | Motorola CX2 FirmwareMotorola M2 Firmware | 18/4/2019 | 17/6/2026 | An issue was discovered in Motorola CX2 1.01 and M2 1.01. The router opens TCP port 8010. Users can send hnap requests to this port without authentication to obtain information such as the MAC addresses of connected client devices. | |
| Modificada | Crítica (9.8) | 1.7% | — | Motorola CX2 FirmwareMotorola M2 Firmware | 18/4/2019 | 17/6/2026 | In Motorola CX2 1.01 and M2 1.01, users can access the router's /priv_mgt.html web page to launch telnetd, as demonstrated by the 192.168.51.1 address. | |
| Modificada | Crítica (9.8) | 3.9% | — | Motorola CX2 FirmwareMotorola M2 Firmware | 18/4/2019 | 17/6/2026 | An issue was discovered in Motorola CX2 1.01 and M2 1.01. There is a command injection in the function downloadFirmware in hnap, which leads to remote code execution via shell metacharacters in a JSON value. | |
| Modificada | Crítica (9.8) | 4.1% | — | Motorola M2 FirmwareMotorola C1 Firmware | 7/3/2019 | 17/6/2026 | An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote attacker to execute arbitrary code, and get a root shell. A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted /HNAP1 POST… |