Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 554 respecto a la semana anterior
Críticas / altas1325▼ 178 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 242 respecto a la semana anterior
–

168 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)1.0%—Nokia 3210Nokia 761028/9/200516/6/2026
Nokia 7610 and 3210 phones allows attackers to cause a denial of service via certain characters in the filename of a Bluetooth OBEX transfer.
ModificadaAlta (7.5)2.6%—Nokia Affix29/8/200516/6/2026
The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in a Bluetooth device name.
ModificadaAlta (10)13%💥 ExploitNokia Affix15/7/200516/6/2026
Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename argument of a PUT command.
ModificadaAlta (7.5)10%💥 ExploitNokia Affix13/7/200516/6/2026
Buffer overflow in Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary code via a long filename in an OBEX file share.
ModificadaBaja (2.6)1.8%💥 ExploitNokia 950026/5/200516/6/2026
The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it.
ModificadaAlta (7.2)0.75%💥 ExploitNokia Affix24/4/200516/6/2026
The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a socket call with a negative protocol value, which is used as an array index.
ModificadaMedia (5)3.1%💥 ExploitNokia Series6/3/200516/6/2026
Nokia Symbian 60 allows remote attackers to cause a denial of service (phone restart) via a Bluetooth nickname.
ModificadaMedia (5)2.8%—Nokia 6310i3/3/200416/6/2026
Multiple vulnerabilities in Nokia 6310(i) Mobile phones allow remote attackers to cause a denial of service (reset) via malformed Bluetooth OBject EXchange (OBEX) messages, probably triggering buffer overflows.
ModificadaMedia (5)2.0%—Nokia Ggsn3/2/200416/6/2026
Nokia Gateway GPRS support node (GGSN) allows remote attackers to cause a denial of service (kernel panic) via a malformed IP packet with a 0xFF TCP option.
ModificadaMedia (5)1.6%—Nokia Ipso29/10/200316/6/2026
Unknown vulnerability in Nokia IPSO 3.7, configured as IP Clusters, allows remote attackers to cause a denial of service via unknown attack vectors.
ModificadaMedia (4.3)12%💥 ExploitNokia Electronic Documentation6/10/200316/6/2026
Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute arbitrary web script and steal cookies via a URL to the docs/ directory that contains the script.
ModificadaAlta (7.5)5.6%💥 ExploitNokia Electronic Documentation6/10/200316/6/2026
Nokia Electronic Documentation (NED) 5.0 allows remote attackers to use NED as an open HTTP proxy via a URL in the location parameter, which NED accesses and returns to the user.
ModificadaMedia (5)6.6%💥 ExploitNokia Electronic Documentation6/10/200316/6/2026
Nokia Electronic Documentation (NED) 5.0 allows remote attackers to obtain a directory listing of the WebLogic web root, and the physical path of the NED server, via a "retrieve" action with a location parameter of . (dot).
ModificadaMedia (5)1.4%—Nokia Sgsn Dx20018/3/200316/6/2026
SNMP daemon in the DX200 based network element for Nokia Serving GPRS support node (SGSN) allows remote attackers to read SNMP options via arbitrary community strings.
ModificadaMedia (5)1.7%—Nokia 6210 Handset7/3/200316/6/2026
Format string vulnerability in Nokia 6210 handset allows remote attackers to cause a denial of service (crash, lockup, or restart) via a Multi-Part vCard with fields containing a large number of format string specifiers.
ModificadaAlta (10)2.6%—ISS Realsecure Nokia12/8/200216/6/2026
ISS RealSecure for Nokia devices before IPSO build 6.0.2001.141d is configured to allow a user "skank" on a machine "starscream" to become a key manager when the "first time connection" feature is enabled and before any legitimate administrators have connected, which could allow remote attackers to gain access to the…
ModificadaMedia (5)1.3%—Checkpoint Firewall-1Checkpoint Vpn-1Nokia Firewall Appliance8/10/200116/6/2026
Nokia Firewall Appliances running IPSO 3.3 and VPN-1/FireWall-1 4.1 Service Pack 3, IPSO 3.4 and VPN-1/FireWall-1 4.1 Service Pack 4, and IPSO 3.4 or IPSO 3.4.1 and VPN-1/FireWall-1 4.1 Service Pack 5, when SYN Defender is configured in Active Gateway mode, does not properly rewrite the third packet of a TCP three-way…
ModificadaAlta (7.5)1.9%—Nokia Ip440 Firewall VPN Appliance2/6/200116/6/2026
Buffer overflow in Voyager web administration server for Nokia IP440 allows local users to cause a denial of service, and possibly execute arbitrary commands, via a long URL.
Orbitaley — Vulnerabilidades