Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
309 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.1) | 0.36% | — | Draytek Vigor2860 FirmwareDraytek Vigor2860n FirmwareDraytek Vigor2860n-plus FirmwareDraytek Vigor2860vn-plus Firmware+87 | 3/3/2023 | 17/6/2026 | Certain Draytek products are vulnerable to Cross Site Scripting (XSS) via the wlogin.cgi script and user_login.cgi script of the router's web application management portal. This affects Vigor3910, Vigor1000B, Vigor2962 v4.3.2.1; Vigor2865 and Vigor2866 v4.4.1.0; Vigor2927 v4.4.2.2; and Vigor2915, Vigor2765, Vigor2766,… | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey1 parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey4_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey2_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wrlEn parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.62% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepauth parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.62% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the ssid_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the security_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wrlEn_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the ssid parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the security parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.78% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepauth_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey3 parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey3_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey1_5g parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey4 parameter at /goform/WifiBasicSet. | |
| Modificada | Media (6.5) | 0.77% | — | Heimgardtechnologies Eagle 1200ac Firmware | 1/3/2023 | 9/7/2026 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the wepkey2 parameter at /goform/WifiBasicSet. | |
| Modificada | Alta (8.8) | 2.3% | 💥 PoC | Aztech Wmb250ac Firmware | 22/2/2023 | 17/6/2026 | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentication in opportunistic circumstances and execute arbitrary commands with administrator privileges by leveraging an existing web portal login. | |
| Modificada | Crítica (9.8) | 0.98% | 💥 PoC | Aztech Wmb250ac Firmware | 22/2/2023 | 17/6/2026 | Aztech WMB250AC Mesh Routers Firmware Version 016 2020 is vulnerable to PHP Type Juggling in file /var/www/login.php, allows attackers to gain escalated privileges only when specific conditions regarding a given accounts hashed password. | |
| Modificada | Media (5.3) | 0.44% | — | Dahuasecurity Ipc-hf71242f-z-x FirmwareDahuasecurity Ipc-hf7442f-z-x FirmwareDahuasecurity Ipc-hf7842f-z-x FirmwareDahuasecurity Ipc-hf5241f-ze Firmware+93 | 9/2/2023 | 17/6/2026 | Some Dahua embedded products have a vulnerability of unauthorized modification of the device timestamp. By sending a specially crafted packet to the vulnerable interface, an attacker can modify the device system time. | |
| Modificada | Crítica (9.8) | 0.79% | — | Schneider-electric 5500ac2 FirmwareSchneider-electric 5500nac FirmwareSchneider-electric 5500nac2 FirmwareSchneider-electric 5500shac Firmware+2 | 30/1/2023 | 17/6/2026 | A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to gain control of the device when logging into a web page. Affected Products: C-Bus Network Automation Controller - LSS5500NAC (Versions prior to V1.10.0), Wiser for C-Bus Automation Controller - LSS5500SHAC (Versions prior to… | |
| Modificada | Crítica (9.8) | 0.69% | — | Schneider-electric 5500ac2 FirmwareSchneider-electric 5500nac FirmwareSchneider-electric 5500nac2 FirmwareSchneider-electric 5500shac Firmware+2 | 30/1/2023 | 17/6/2026 | A CWE-521: Weak Password Requirements vulnerability exists that could allow an attacker to gain control of the device when the attacker brute forces the password. Affected Products: C-Bus Network Automation Controller - LSS5500NAC (Versions prior to V1.10.0), Wiser for C-Bus Automation Controller - LSS5500SHAC… | |
| Modificada | Alta (8.8) | 33% | 💥 Exploit | Tp-link Tl-wr902ac Firmware | 30/12/2022 | 17/6/2026 | TP-Link TL-WR902AC devices through V3 0.9.1 allow remote authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) by uploading a crafted firmware update because the signature check is inadequate. |