Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

1220 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.1)0.31%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145 build 20250526 and later QuTS hero h5.2.5.3138…
AnalizadaAlta (7.1)0.38%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to modify or corrupt memory. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145 build 20250526 and…
AnalizadaMedia (5.1)0.31%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145 build 20250526 and later QuTS hero h5.2.5.3138…
AnalizadaMedia (5.3)0.49%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following versions: QTS…
AnalizadaMedia (5.3)0.49%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following versions: QTS…
AnalizadaMedia (5.3)0.37%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145…
AnalizadaMedia (5.3)0.37%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145…
AnalizadaBaja (2.3)0.38%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to modify memory or crash processes. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145 build 20250526…
AnalizadaAlta (7.7)0.91%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to execute arbitrary commands. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145 build 20250526 and…
AnalizadaMedia (5.3)0.46%—Qnap QTSQnap Quts Hero29/8/202525/9/2026
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker gains a user account, they can then exploit the vulnerability to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.5.3145…
AplazadaAlta (7.1)0.23%—Redqteam Alike - Wordpress Custom Post ComparisonAI14/8/202517/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in redqteam Alike - WordPress Custom Post Comparison alike allows Reflected XSS.This issue affects Alike - WordPress Custom Post Comparison: from n/a through <= 3.0.1.
AnalizadaAlta (7)0.07%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+416/8/202517/6/2026
Memory corruption while processing simultaneous requests via escape path.
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+326/8/202517/6/2026
Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host.
AnalizadaAlta (7.5)0.28%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+3686/8/202517/6/2026
Transient DOS while processing an ANQP message.
AnalizadaMedia (6.5)0.09%—Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+3456/8/202517/6/2026
Information disclosure while processing the hash segment in an MBN file.
AnalizadaMedia (6.5)0.09%—Qualcomm Qcm4490 FirmwareQualcomm Qcm5430 FirmwareQualcomm Qcm6125 FirmwareQualcomm Qcm6490 Firmware+3386/8/202517/6/2026
Information disclosure while reading data from an image using specified offset and size parameters.
AplazadaBaja (2.3)0.29%—QTAI11/7/202529/7/2026
When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile. This issue affects Qt from 6.6.0 through 6.8.3, from 6.9.0 through 6.9.1. This is fixed in…
AnalizadaAlta (7.8)0.09%—Qualcomm 315 5G IOT FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+3408/7/202517/6/2026
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+368/7/202517/6/2026
Memory corruption during the image encoding process.
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+368/7/202517/6/2026
Memory corruption while processing event close when client process terminates abruptly.
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+358/7/202517/6/2026
Memory corruption while processing multiple simultaneous escape calls.
AnalizadaAlta (7.8)0.09%—Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+3408/7/202517/6/2026
Memory corruption while processing video packets received from video firmware.
AnalizadaAlta (7.8)0.09%—Qualcomm Aqt1000 FirmwareQualcomm Fastconnect 6200 FirmwareQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 Firmware+368/7/202517/6/2026
Memory corruption while processing a private escape command in an event trigger.
AnalizadaAlta (7.5)0.22%—Qualcomm Sa8620p FirmwareQualcomm Sa8650p FirmwareQualcomm Sa8770p FirmwareQualcomm Sa8775p Firmware+1888/7/202517/6/2026
Transient DOS while processing received beacon frame.
AnalizadaAlta (7.5)0.22%—Qualcomm Sm8635p FirmwareQualcomm Sm8650q FirmwareQualcomm Sm8735 FirmwareQualcomm Sm8750 Firmware+1818/7/202517/6/2026
Transient DOS may occur while processing malformed length field in SSID IEs.