Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
26.291 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.71% | — | Mediatek Mt2735 FirmwareMediatek Mt6833 FirmwareMediatek Mt6853 FirmwareMediatek Mt6855 Firmware+15 | 3/8/2026 | 19/8/2026 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00741071;… | |
| Analizada | Media (5.5) | 0.14% | — | Mediatek Mt2735 FirmwareMediatek Mt2737 FirmwareMediatek Mt6880 FirmwareMediatek Mt6890 Firmware+2 | 3/8/2026 | 20/8/2026 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981454 (Note: For MT6880, MT6890, MT6988, MT6990) / AUTO00851293 (Note: For MT2735,… | |
| Analizada | Media (6) | 0.17% | — | Mediatek Mt8910 FirmwareMediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8188 Firmware+6 | 3/8/2026 | 19/8/2026 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11009963; Issue ID: MSV-7658. | |
| Analizada | Media (5.5) | 0.15% | — | Mediatek Mt6988 FirmwareMediatek Mt6813 FirmwareMediatek Mt6986 Firmware | 3/8/2026 | 19/8/2026 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981532; Issue ID: MSV-7660. | |
| Analizada | Media (6) | 0.17% | — | Mediatek Mt8910 FirmwareMediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 Firmware+13 | 3/8/2026 | 19/8/2026 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11004276; Issue ID: MSV-7748. | |
| Analizada | Media (6) | 0.13% | — | Mediatek Mt6991 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 FirmwareMediatek Mt8171 Firmware+13 | 3/8/2026 | 19/8/2026 | In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019183; Issue ID: MSV-7758. | |
| Analizada | Media (6) | 0.17% | — | Mediatek Mt6991 FirmwareMediatek Mt8910 FirmwareMediatek Mt6993 FirmwareMediatek Mt8126 Firmware+13 | 3/8/2026 | 19/8/2026 | In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019722; Issue ID: MSV-7759. | |
| Analizada | Alta (8.5) | 2.5% | — | Tp-link Archer Axe75 Firmware | 31/7/2026 | 7/8/2026 | An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an adjacent, authenticated attacker to execute arbitrary commands on the device by importing a specially crafted VPN client configuration file. The issue arises from improper filtering of special… | |
| Analizada | Alta (8.4) | 0.15% | — | IBM Power System S1122 (9824-22a) FirmwareIBM Power System S1124 (9824-42a) FirmwareIBM Power System S1122s (9824-22b) FirmwareIBM Power System S1114 (9824-41b) Firmware+26 | 30/7/2026 | 26/8/2026 | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A carefully crafted OS hypervisor call can cause the PowerVM hypervisor to crash or compromise OS memory integrity. | |
| Analizada | Media (4.6) | 0.11% | — | IBM Power System S1122 (9824-22a) FirmwareIBM Power System S1124 (9824-42a) FirmwareIBM Power System S1122s (9824-22b) FirmwareIBM Power System S1114 (9824-41b) Firmware+13 | 28/7/2026 | 26/8/2026 | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 could allow an attacker with physical access to the Transparent Memory Encryption (TME) hardware to decrypt encrypted memory due to insufficient cryptographic entropy. | |
| Analizada | Media (4.9) | 0.36% | — | IBM Power System S1122 (9824-22a) FirmwareIBM Power System S1124 (9824-42a) FirmwareIBM Power System S1122s (9824-22b) FirmwareIBM Power System S1114 (9824-41b) Firmware+11 | 28/7/2026 | 26/8/2026 | IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows a user to supply a password with a resource dump request stores that password into the BMC audit log where an admin user can see it. | |
| Analizada | Alta (8.8) | 0.37% | — | IBM Power System S1122 (9824-22a) FirmwareIBM Power System S1124 (9824-42a) FirmwareIBM Power System S1122s (9824-22b) FirmwareIBM Power System S1114 (9824-41b) Firmware+11 | 28/7/2026 | 26/8/2026 | IBM OPENBMC FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 allows ReadOnly users to escalate privileges and give themselves administrator privileges. | |
| Pendiente de análisis | Media (6.8) | 0.13% | — | Caliptra Core Runtime FirmwareAI | 22/7/2026 | 22/7/2026 | Missing authorization in Caliptra Core Runtime Firmware (INVOKE_DPE_MLDSA87, CM_AES_GCM_DECRYPT_DMA, EXTERNAL_MAILBOX_CMD commands) in subsystem mode allows a privileged local attacker to cause a denial of service via mailbox commands containing unverified AXI addresses. The security impact beyond availability is… | |
| Aplazada | Alta (7.5) | 0.42% | — | Hikvision Camera FirmwareAI | 22/7/2026 | 22/7/2026 | Insufficient validation of input parameters in the firmware of some Hikvision cameras allows unauthenticated attackers to retrieve partial sensitive data. | |
| Analizada | Alta (8.6) | 0.24% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through exposed hardware recovery pins. An attacker with physical access can boot attacker-controlled code in memory and modify or extract firmware and other sensitive data. | |
| Analizada | Alta (8.6) | 0.24% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of the boot process and access to the U-Boot bootloader. An attacker with physical access can modify the boot configuration or file system to obtain operating system access. | |
| Analizada | Crítica (9.4) | 0.64% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command handled by the /localcfg endpoint. An authenticated attacker can supply oversized input, resulting in denial of service and potentially arbitrary code execution. | |
| Analizada | Crítica (9.5) | 3.3% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious or compromised OCPP server can supply a crafted diagnostics URL that results in arbitrary command execution on the charging station. | |
| Analizada | Crítica (10) | 7.1% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthenticated attacker can supply crafted input in the url parameter to execute arbitrary operating system commands. | |
| Analizada | Crítica (10) | 0.91% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 13/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listening on TCP port 9002. A crafted request to the /test endpoint can cause the device to download, extract, and execute attacker-controlled files with root privileges. | |
| Analizada | Crítica (10) | 0.69% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 12/8/2026 | Autel Maxi Charger Single firmware through V1.03.51 contains a hard-coded authentication token that bypasses authorization checks for multiple management endpoints. An attacker can supply the special token value to invoke privileged functionality without valid authentication. | |
| Analizada | Crítica (10) | 0.48% | — | Autel Maxicharger Single Charger Firmware | 21/7/2026 | 12/8/2026 | Two undocumented privileged accounts exist in Autel Maxi Charger Single firmware through V1.03.51. The accounts use vendor-defined password derivation mechanisms based on device-specific values, allowing an attacker with knowledge of the algorithm and required inputs to authenticate to the web management interface… | |
| Analizada | Alta (7.5) | 0.49% | — | Meshtastic Firmware | 20/7/2026 | 18/8/2026 | Meshtastic is an open source mesh networking solution. Prior to version 2.7.23.b246bcd, a single node advertising a User.long_name that contains a malformed character encoding can render other radios unusable over BLE when managed through the iOS app. The malformed name does not need to be maliciously crafted — it can… | |
| Aplazada | Crítica (9.5) | 0.14% | — | Asus Router FirmwareAI | 15/7/2026 | 29/7/2026 | An Improper Validation of Integrity Check Value and Improper Certificate Validation in certain ASUS router models allows a remote man-in-the-middle(MITM) user to make the router download and execute arbitrary command via a spoofed server. Refer to the ' Security Update for ASUS Router Firmware ' section on the ASUS… | |
| Analizada | Alta (8.6) | 0.31% | — | Tp-link Kasa Ec71 FirmwareTp-link Kasa Ec70 Firmware | 15/7/2026 | 6/8/2026 | Kasa EC71 v4 and EC70 v4 firmware contains a static cryptographic private key stored in a read-only filesystem that is shared across devices. An attacker with access to the firmware image can extract the embedded key. Successful exploitation may allow an unauthenticated attacker on the same network to use this key in… |