Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1363 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 2.1% | — | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System SettingConfigController Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit… | |
| Analizada | Alta (8.8) | 1.4% | — | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System clearAlertByIds SQL Injection Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privileges on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this vulnerability, the… | |
| Analizada | Alta (8.8) | 57% | — | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System getNodesByTopologyMapSearch SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this… | |
| Analizada | Alta (8.8) | 13% | 💥 Exploit | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System UpLoadServlet Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this… | |
| Analizada | Alta (8.8) | 2.1% | — | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System BkreProcessThread Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this… | |
| Analizada | Crítica (9.8) | 82% | 💥 Exploit | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of NETGEAR ProSAFE Network Management System. Authentication is not required to exploit this vulnerability. The specific flaw… | |
| Analizada | Alta (8.8) | 66% | — | Netgear Prosafe Network Management System | 3/5/2024 | 17/6/2026 | NETGEAR ProSAFE Network Management System MFileUploadController Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this… | |
| Analizada | Alta (8.8) | 1.3% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 UPnP Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of UPnP… | |
| Analizada | Alta (8.8) | 1.00% | — | Netgear Rax50 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR Multiple Routers curl_post Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of multiple NETGEAR routers. Authentication is not required to exploit this… | |
| Analizada | Alta (8.8) | 0.90% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 cmsCli_authenticate Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists… | |
| Analizada | Media (6.3) | 0.45% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 Use of Hard-coded Credentials Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the system… | |
| Analizada | Media (4.6) | 0.65% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 USB Share Link Following Information Disclosure Vulnerability. This vulnerability allows physically present attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the… | |
| Analizada | Media (5.7) | 0.34% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 Device Configuration Cleartext Storage Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing… | |
| Analizada | Alta (8.8) | 0.78% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 soap_serverd Stack-based Buffer Overflow Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30. Authentication is not required to exploit this vulnerability. The specific flaw exists within the… | |
| Analizada | Alta (8.8) | 0.78% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 soap_serverd Stack-based Buffer Overflow Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within… | |
| Analizada | Alta (8) | 1.4% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 libcms_cli Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can… | |
| Analizada | Alta (8) | 0.86% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 rex_cgi JSON Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is required to exploit this vulnerability. The specific flaw exists… | |
| Analizada | Alta (8.8) | 0.45% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 lighttpd Misconfiguration Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30. Authentication is not required to exploit this vulnerability. The specific flaw exists within the configuration of the… | |
| Analizada | Alta (8.8) | 0.88% | — | Netgear Rax30 FirmwareNetgear Raxe300 FirmwareNetgear Rax40 FirmwareNetgear Rax35 Firmware+1 | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 SOAP Request SQL Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of… | |
| Analizada | Media (6.5) | 0.57% | — | Netgear Rax30 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 GetInfo Missing Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the… | |
| Analizada | Alta (8) | 1.2% | — | Netgear Rax30 FirmwareNetgear Raxe300 Firmware | 3/5/2024 | 17/6/2026 | NETGEAR RAX30 logCtrl Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be… | |
| Analizada | Media (4.9) | 0.56% | — | Netgear Dg834gv5 Firmware | 26/4/2024 | 17/6/2026 | A vulnerability classified as problematic was found in Netgear DG834Gv5 1.6.01.34. This vulnerability affects unknown code of the component Web Management Interface. The manipulation leads to cleartext storage of sensitive information. The attack can be initiated remotely. The exploit has been disclosed to the public… | |
| Analizada | Alta (8) | 1.5% | — | Netgear R6850 Firmware | 3/4/2024 | 17/6/2026 | Netgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the ntp_server parameter. | |
| Analizada | Alta (7.5) | 14% | — | Netgear R6850 Firmware | 3/4/2024 | 17/6/2026 | An information leak in the BRS_top.html component of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required. | |
| Analizada | Media (5.3) | 1.2% | 💥 Exploit | Netgear R6850 Firmware | 3/4/2024 | 17/6/2026 | An information leak in debuginfo.htm of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required. |