Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
159 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.0% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formWifiWpsStart. | |
| Modificada | Crítica (9.8) | 1.0% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/addWifiMacFilter. | |
| Modificada | Crítica (9.8) | 1.0% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromSetIpMacBind. | |
| Modificada | Crítica (9.8) | 0.99% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetFirewallCfg. | |
| Modificada | Crítica (9.8) | 1.0% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetSpeedWan. | |
| Modificada | Crítica (9.8) | 1.0% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetDeviceName. | |
| Modificada | Crítica (9.8) | 0.99% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetClientState. | |
| Modificada | Crítica (9.8) | 0.99% | — | Tenda Ac10 Firmware | 17/10/2022 | 17/6/2026 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromNatStaticSetting. | |
| Modificada | Crítica (9.8) | 35% | — | Tenda Ac10 Firmware | 7/7/2022 | 17/6/2026 | Tenda AC10 US_AC10V1.0RTL_V15.03.06.26_multi_TD01 was discovered to contain a remote code execution (RCE) vulnerability via the lanIp parameter. | |
| Modificada | Alta (7.5) | 1.2% | — | Tendacn Ac10 Firmware | 23/3/2022 | 17/6/2026 | Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow in the setSmartPowerManagement function. | |
| Modificada | Alta (7.5) | 1.2% | — | Tendacn Ac10 Firmware | 23/3/2022 | 17/6/2026 | Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function. | |
| Modificada | Crítica (9.8) | 1.4% | — | Tendacn Ac10 Firmware | 23/3/2022 | 17/6/2026 | Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the urls parameter in the saveParentControlInfo function. | |
| Modificada | Alta (7.5) | 2.2% | — | Netgear Mbr1517 FirmwareNetgear Wnce3001 FirmwareNetgear Wac104 Firmware | 17/3/2022 | 17/6/2026 | A vulnerability is in the 'MNU_top.htm' page of the Netgear W104, version WAC104-V1.0.4.13, which can allow a remote attacker to access this page without any authentication. When processed, it exposes some key information for the device. | |
| Modificada | Media (5.3) | 20% | — | Netgear Wac104 FirmwareNetgear R7450 FirmwareNetgear R6900 FirmwareNetgear R7800 Firmware+1 | 17/3/2022 | 17/6/2026 | A vulnerability is in the 'BRS_top.html' page of the Netgear W104, version WAC104-V1.0.4.13, which can allow a remote attacker to access this page without any authentication. When processed, it exposes firmware version information for the device. | |
| Modificada | Crítica (9.8) | 2.5% | — | Tendacn Ac10u Firmware | 18/2/2022 | 17/6/2026 | A Command injection vulnerability exists in Tenda AC10U AC1200 Smart Dual-band Wireless Router AC10U V1.0 Firmware V15.03.06.49_multi via the setUsbUnload functionality. The vulnerability is caused because the client controlled "deviceName" value is passed directly to the "doSystemCmd" function. | |
| Modificada | Crítica (9.8) | 4.2% | — | Tendacn Ac10u FirmwareTendacn AC9 Firmware | 29/10/2021 | 17/6/2026 | Stack-based buffer overflow in Tenda AC-10U AC1200 Router US_AC10UV1.0RTL_V15.03.06.48_multi_TDE01 allows remote attackers to execute arbitrary code via the timeZone parameter to goform/SetSysTimeCfg. | |
| Modificada | Alta (7.2) | 0.93% | — | Netgear Wac104 Firmware | 11/8/2021 | 17/6/2026 | NETGEAR WAC104 devices before 1.0.4.15 are affected by incorrect configuration of security settings. | |
| Modificada | Crítica (9.8) | 3.1% | — | Netgear Wac104 Firmware | 30/6/2021 | 17/6/2026 | NETGEAR WAC104 devices before 1.0.4.15 are affected by an authentication bypass vulnerability in /usr/sbin/mini_httpd, allowing an unauthenticated attacker to invoke any action by adding the ¤tsetting.htm substring to the HTTP query, a related issue to CVE-2020-27866. This directly allows the attacker to change… | |
| Modificada | Media (6.8) | 0.42% | — | Netgear Wac104 Firmware | 30/12/2020 | 17/6/2026 | NETGEAR WAC104 devices before 1.0.4.13 are affected by a buffer overflow by an authenticated user. | |
| Modificada | Alta (7.5) | 1.4% | — | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware | 25/4/2019 | 17/6/2026 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A buffer overflow vulnerability exists in the router's web server (httpd). When processing the list… | |
| Modificada | Alta (7.5) | 1.4% | — | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware | 25/4/2019 | 17/6/2026 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A buffer overflow vulnerability exists in the router's web server (httpd). When processing the page… | |
| Analizada | Crítica (9.8) | 8.5% | ⚠ Explotación activa | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 Firmware | 30/10/2018 | 17/6/2026 | An issue was discovered on Tenda AC7 devices with firmware through V15.03.06.44_CN(AC7), AC9 devices with firmware through V15.03.05.19(6318)_CN(AC9), and AC10 devices with firmware through V15.03.06.23_CN(AC10). A command Injection vulnerability allows attackers to execute arbitrary OS commands via a crafted… | |
| Modificada | Alta (7.5) | 1.1% | — | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+1 | 29/10/2018 | 17/6/2026 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'ntpServer' parameter for a post request, the value is… | |
| Modificada | Alta (7.5) | 1.1% | — | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+1 | 29/10/2018 | 17/6/2026 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'deviceMac' parameter for a post request, the value is… | |
| Modificada | Alta (7.5) | 1.1% | — | Tenda AC7 FirmwareTenda AC9 FirmwareTenda Ac10 FirmwareTenda Ac15 Firmware+1 | 29/10/2018 | 17/6/2026 | An issue was discovered on Tenda AC7 V15.03.06.44_CN, AC9 V15.03.05.19(6318)_CN, AC10 V15.03.06.23_CN, AC15 V15.03.05.19_CN, and AC18 V15.03.05.19(6318)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the 'startIp' and 'endIp' parameters for a post request,… |