Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
202 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.66% | — | Huawei Honor 6X Firmware | 22/11/2017 | 17/6/2026 | Honor 6X smartphones with software versions earlier than BLN-AL10C00B357 and versions earlier than BLN-AL20C00B357 have an information leak vulnerability due to improper file permission configuration. An attacker tricks a user into installing a malicious application on the smart phone, and the application can get the… | |
| Modificada | Alta (7.8) | 1.3% | — | Huawei Honor 5A FirmwareHuawei P8 Lite Firmware | 22/11/2017 | 17/6/2026 | The boot loaders in Honor 5A smart phones with software Versions earlier than CAM-TL00C01B193,Versions earlier than CAM-TL00HC00B193,Versions earlier than CAM-UL00C00B193 have a buffer overflow vulnerability. An attacker with the root privilege of an Android system may trick a user into installing a malicious APP. The… | |
| Modificada | Media (6.4) | 0.25% | — | Huawei Honor 6X Firmware | 22/11/2017 | 17/6/2026 | Some Huawei mobile phones Honor 6X Berlin-L22C636B150 and earlier versions have a Bluetooth unlock bypassing vulnerability. If a user has enabled the smart unlock function, an attacker can impersonate the user's Bluetooth device to unlock the user's mobile phone screen.uawei mobile phones have a Bluetooth unlock… | |
| Modificada | Media (6.5) | 0.36% | — | Huawei Honor 8 PRO Firmware | 22/11/2017 | 17/6/2026 | honor 8 Pro with software Duke-L09C10B120 and earlier versions,Duke-L09C432B120 and earlier versions,Duke-L09C636B120 and earlier versions has an integer overflow vulnerability. The attacker sends a response message to the device, which contains an illegal length field, it could produce an integer overflow and restart… | |
| Modificada | Alta (7.8) | 0.97% | — | Huawei Honor 7 FirmwareHuawei Mate S FirmwareHuawei Lyo-l21 Firmware | 22/11/2017 | 17/6/2026 | The Huawei Themes APP in versions earlier than PLK-UL00C17B385, versions earlier than CRR-L09C432B380, versions earlier than LYO-L21C577B128 has a privilege elevation vulnerability. An attacker could exploit this vulnerability to upload theme packs containing malicious files and trick users into installing the theme… | |
| Modificada | Alta (7.8) | 0.74% | — | Huawei GT3 FirmwareHuawei Honor 5C FirmwareHuawei KNT FirmwareHuawei P9 Lite Firmware+1 | 22/11/2017 | 17/6/2026 | The goldeneye driver in NMO-L31C432B120 and earlier versions,NEM-L21C432B100 and earlier versions,NEM-L51C432B120 and earlier versions,KNT-AL10C746B160 and earlier versions,VNS-L21C185B142 and earlier versions,CAM-L21C10B130 and earlier versions,CAM-L21C185B141 and earlier versions has buffer overflow vulnerability.… | |
| Modificada | Alta (7.8) | 1.1% | — | Huawei P8 Lite FirmwareHuawei Mate 7 FirmwareHuawei Mate S FirmwareHuawei P8 Firmware+4 | 22/11/2017 | 17/6/2026 | ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185B200 and earlier versions,ALE-L21C432B214 and earlier versions,ALE-L21C464B150 and earlier versions,ALE-L21C636B200 and earlier versions,ALE-L23C605B190 and earlier versions,ALE-TL00C01B250 and… | |
| Modificada | Alta (7.8) | 1.0% | — | Huawei P8 Lite FirmwareHuawei Mate 7 FirmwareHuawei Mate S FirmwareHuawei P8 Firmware+4 | 22/11/2017 | 17/6/2026 | The Keyguard application in ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185B200 and earlier versions,ALE-L21C432B214 and earlier versions,ALE-L21C464B150 and earlier versions,ALE-L21C636B200 and earlier versions,ALE-L23C605B190 and earlier… | |
| Modificada | Crítica (9.8) | 85% | 💥 Exploit | Thekelleys DnsmasqRedhat Enterprise Linux DesktopRedhat Enterprise Linux ServerRedhat Enterprise Linux Workstation+17 | 4/10/2017 | 17/6/2026 | Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response. | |
| Modificada | Alta (7.8) | 0.75% | — | Huawei Honor 6 FirmwareHuawei Honor 6 Plus FirmwareHuawei Honor 7 Firmware | 2/4/2017 | 17/6/2026 | Huawei Honor 6, Honor 6 Plus, Honor 7 phones with software versions earlier than 6.9.16 could allow attackers to disable the PXN defense mechanism by invoking related drive code to crash the system or escalate privilege. | |
| Modificada | Alta (7.8) | 0.81% | — | Huawei P9 FirmwareHuawei P9 Plus FirmwareHuawei Honor 6 Firmware | 2/4/2017 | 17/6/2026 | Video driver in Huawei P9 phones with software versions before EVA-AL10C00B192 and Huawei Honor 6 phones with software versions before H60-L02_6.10.1 has a stack overflow vulnerability, which allows attackers to crash the system or escalate user privilege. | |
| Modificada | Alta (7.8) | 0.81% | — | Huawei P9 FirmwareHuawei P9 Plus FirmwareHuawei Honor 6 Firmware | 2/4/2017 | 17/6/2026 | Touchscreen driver in Huawei P9 phones with software versions before EVA-AL10C00B192 and Huawei Honor 6 phones with software versions before H60-L02_6.10.1 has a heap overflow vulnerability, which allows attackers to crash the system or escalate user privilege. | |
| Modificada | Alta (7.8) | 0.81% | — | Huawei P9 FirmwareHuawei P9 Plus FirmwareHuawei Honor 6 Firmware | 2/4/2017 | 17/6/2026 | Video driver in Huawei P9 phones with software versions before EVA-AL10C00B192 and Huawei Honor 6 phones with software versions before H60-L02_6.10.1 has a stack overflow vulnerability, which allows attackers to crash the system or escalate user privilege. | |
| Modificada | Media (5.5) | 0.60% | — | Huawei P8 FirmwareHuawei Mate S FirmwareHuawei Honor6 Firmware | 26/9/2016 | 17/6/2026 | The video driver in Huawei Mate S smartphones with software CRR-TL00 before CRR-TL00C01B362, CRR-UL20 before CRR-UL20C00B362, CRR-CL00 before CRR-CL00C92B362, and CRR-CL20 before CRR-CL20C92B362; P8 smartphones with software GRA-TL00 before GRA-TL00C01B366, GRA-UL00 before GRA-UL00C00B366, GRA-UL10 before… | |
| Modificada | Alta (7) | 0.25% | — | Huawei Honor 6 Firmware | 7/9/2016 | 17/6/2026 | The WiFi driver in Huawei Honor 6 smartphones with software H60-L01 before H60-L01C00B850, H60-L11 before H60-L11C00B850, H60-L21 before H60-L21C00B850, H60-L02 before H60-L02C00B850, H60-L12 before H60-L12C00B850, and H60-L03 before H60-L03C01B850 allows attackers to cause a denial of service (system crash) or gain… | |
| Modificada | Alta (7) | 0.23% | — | Huawei Honor 4C Firmware | 7/9/2016 | 17/6/2026 | The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than… | |
| Modificada | Alta (7) | 0.23% | — | Huawei Honor 4C Firmware | 7/9/2016 | 17/6/2026 | The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than… | |
| Modificada | Alta (7) | 0.59% | — | Huawei Honor 4C Firmware | 7/9/2016 | 17/6/2026 | The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than… | |
| Modificada | Alta (7) | 0.23% | — | Huawei Honor 4C Firmware | 7/9/2016 | 17/6/2026 | The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than… | |
| Modificada | Alta (7) | 0.23% | — | Huawei Honor 4C Firmware | 7/9/2016 | 17/6/2026 | The Camera driver in Huawei Honor 4C smartphones with software CHM-UL00C00 before CHM-UL00C00B564, CHM-TL00C01 before CHM-TL00C01B564, and CHM-TL00C00 before CHM-TL00HC00B564 allows attackers to cause a denial of service (system crash) or gain privileges via a crafted application, a different vulnerability than… | |
| Modificada | Alta (7.5) | 0.99% | — | Huawei Honor Ws851 Firmware | 14/6/2016 | 17/6/2026 | Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to obtain sensitive information via unspecified vectors, aka HWPSIRT-2016-05053. | |
| Modificada | Alta (7.5) | 0.72% | — | Huawei Honor Ws851 Firmware | 14/6/2016 | 17/6/2026 | Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to modify configuration data via vectors related to a "file injection vulnerability," aka HWPSIRT-2016-05052. | |
| Modificada | Crítica (9.8) | 2.1% | — | Huawei Honor Ws851 Firmware | 14/6/2016 | 17/6/2026 | Stack-based buffer overflow in Huawei Honor WS851 routers with software 1.1.21.1 and earlier allows remote attackers to execute arbitrary commands with root privileges via unspecified vectors, aka HWPSIRT-2016-05051. | |
| Modificada | Alta (10) | 2.5% | — | Huawei Honor Cube Wireless Router Ws860s FirewallHuawei Honor Cube Wireless Router Ws860s | 3/12/2014 | 17/6/2026 | Unrestricted file upload vulnerability in Huawei Honor Cube Wireless Router WS860s before V100R001C02B222 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors. | |
| Modificada | Media (5.4) | 0.27% | — | Adidas Honolulu | 9/9/2014 | 17/6/2026 | The Honolulu (aka adidas.jp.android.running.honolulu) application 2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |