Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3077▲ 447 respecto a la semana anterior
Críticas / altas1457▲ 26 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
9665 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew1800gx FirmwareRuijie Rg-ew300n FirmwareRuijie Rg-ew1800gx PRO Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-x60 PRO FirmwareRuijie Rg-ew1200 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew3200gx FirmwareRuijie Rg-x60 PRO Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X60 PRO X60_10212014RG-X60 PRO V1.00/V2.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 3.1% | — | Ruijie X30 PRO FirmwareRuijie Rg-est310 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew1300g FirmwareRuijie M18-ew Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie M18 EW_3.0(1)B11P226_M18_10223116 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua. | |
| Analizada | Alta (8.8) | 1.7% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 3.1% | — | Ruijie Rg-bcr860 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the network_set_wan_conf in file /usr/lib/lua/luci/controller/admin/netport.lua. | |
| Analizada | Alta (8.8) | 3.1% | — | Ruijie Rg-bcr860 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_deal_update in file /usr/lib/lua/luci/controller/api/rcmsAPI.lua. | |
| Analizada | Alta (8.8) | 3.1% | — | Ruijie Rg-bcr860 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_wireless in file /usr/lib/lua/luci/control/admin/wireless.lua. | |
| Analizada | Alta (8.8) | 2.7% | — | Ruijie X30 PRO FirmwareRuijie Rg-eap602 FirmwareRuijie Rg-est350 FirmwareRuijie Rg-ew300 PRO Firmware+1 | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 2.3% | — | Ruijie Rg-bcr600w Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR600W allowing attackers to execute arbitrary commands via a crafted POST request to the submit_wifi in file /usr/lib/lua/luci/controller/admin/common_quick_config.lua. | |
| Analizada | Alta (8.8) | 2.8% | — | Ruijie Rg-ew1800gx FirmwareRuijie Rg-est350 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX B11P226_EW1800GX_10223121 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew1800gx FirmwareRuijie Rg-ew300r Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX B11P226_EW1800GX_10223121 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua. | |
| Analizada | Alta (8.8) | 2.8% | — | Ruijie M18-ew FirmwareRuijie Rg-ew1200r Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie M18 EW_3.0(1)B11P226_M18_10223116 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua. | |
| Analizada | Alta (8.8) | 1.7% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie X30 PRO FirmwareRuijie Rg-ew300 PRO Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua. | |
| Analizada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew1800gx PRO FirmwareRuijie Rg-ew300n Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua. | |
| Analizada | Alta (8.8) | 2.0% | — | Ruijie Rg-bcr600w Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR600W allowing attackers to execute arbitrary commands via a crafted POST request to the restart_modules in file /usr/lib/lua/luci/controller/admin/common.lua. | |
| Analizada | Alta (8.8) | 3.3% | — | Ruijie X30 PRO FirmwareRuijie Rg-ew300 PRO Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/host_access_delay.lua. | |
| Analizada | Alta (8.8) | 3.2% | — | Ruijie X30 PRO FirmwareRuijie Rg-ew300 PRO FirmwareRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the setWisp in file /usr/lib/lua/luci/modules/wireless.lua. | |
| Analizada | Alta (8.8) | 2.9% | — | Ruijie Rg-ew1800gx FirmwareRuijie Rg-ew300r Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX B11P226_EW1800GX_10223121 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_config/config_retain.lua. | |
| Analizada | Alta (8.8) | 2.8% | — | Ruijie M18-ew FirmwareRuijie Rg-ew300g PRO Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie M18 EW_3.0(1)B11P226_M18_10223116 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 3.5% | — | Ruijie Rg-bcr860 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request to the action_service in file /usr/lib/lua/luci/controller/admin/service.lua. | |
| Analizada | Alta (8.8) | 2.4% | — | Ruijie Rg-bcr600w Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-BCR RG-BCR600W allowing attackers to execute arbitrary commands via a crafted POST request to the run_tcpdump in file /usr/lib/lua/luci/controller/admin/common_tcpdump.lua. | |
| Analizada | Alta (8.8) | 2.9% | — | Ruijie Rg-ew1200 FirmwareRuijie Rg-x60 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1200 EW_3.0(1)B11P227_EW1200_11130208RG-EW1200 V1.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_get in file /usr/local/lua/dev_sta/networkConnect.lua. |