Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3246▲ 704 respecto a la semana anterior
Críticas / altas1521▲ 136 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)235▲ 221 respecto a la semana anterior
26.338 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 9.4% | — | Adslr B-qe2w401 Firmware | 1/12/2025 | 3/9/2026 | A vulnerability was found in ADSLR NBR1005GPEV2 250814-r037c. This issue affects the function set_mesh_disconnect of the file /send_order.cgi. The manipulation of the argument mac results in command injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor… | |
| Analizada | Baja (2.1) | 9.4% | — | Adslr B-qe2w401 Firmware | 1/12/2025 | 3/9/2026 | A vulnerability has been found in ADSLR NBR1005GPEV2 250814-r037c. This vulnerability affects the function ap_macfilter_del of the file /send_order.cgi. The manipulation of the argument mac leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may… | |
| Analizada | Baja (2.1) | 7.1% | — | Adslr B-qe2w401 Firmware | 1/12/2025 | 17/6/2026 | A flaw has been found in ADSLR NBR1005GPEV2 250814-r037c. This affects the function ap_macfilter_add of the file /send_order.cgi. Executing manipulation of the argument mac can lead to command injection. The attack may be performed from remote. The exploit has been published and may be used. The vendor was contacted… | |
| Analizada | Baja (2.1) | 7.1% | — | Adslr B-qe2w401 Firmware | 1/12/2025 | 3/9/2026 | A vulnerability was detected in ADSLR B-QE2W401 250814-r037c. Affected by this issue is the function parameterdel_swifimac of the file /send_order.cgi. Performing manipulation of the argument del_swifimac results in command injection. The attack is possible to be carried out remotely. The exploit is now public and may… | |
| Analizada | Alta (8) | 6.7% | — | Trendnet Tew-657brm Firmware | 26/11/2025 | 17/6/2026 | TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges. | |
| Analizada | Crítica (9.8) | 0.42% | — | Fastcom Fac1200r Firmware | 26/11/2025 | 17/6/2026 | FAST FAC1200R F400_FAC1200R_Q is vulnerable to Buffer Overflow in the function sub_80435780 via the parameter string fac_password. | |
| Analizada | Crítica (9.8) | 0.42% | — | Fastcom Fac1200r Firmware | 26/11/2025 | 17/6/2026 | FAST FAC1200R F400_FAC1200R_Q is vulnerable to Buffer Overflow in the function sub_80435780 via the parameter password. | |
| Analizada | Alta (8.9) | 0.39% | — | Dbbroadcast Mozart Next 3000 FirmwareDbbroadcast Mozart Next 3500 FirmwareDbbroadcast Mozart Next 50 FirmwareDbbroadcast Mozart Next 500 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Read via Null Byte Injection in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Null byte injection in download_setting.php allows reading arbitrary files. The… | |
| Analizada | Crítica (9.3) | 1.4% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Arbitrary File Overwrite via Tar Extraction Path Traversal in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Tar extraction with -C / allow arbitrary file overwrite via crafted archive. The… | |
| Analizada | Crítica (9.9) | 2.3% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated OS Command Injection (restore_settings.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform URL-decoded name parameter passed to exec() allows remote code execution. The… | |
| Analizada | Alta (7.2) | 0.31% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | PostgreSQL SQL Injection (status_sql.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform SQL injection via sw1 and sw2 parameters in status_sql.php. The `status_sql.php` endpoint constructs SQL UPDATE… | |
| Analizada | Crítica (9.3) | 0.66% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Authenticated Root Remote Code Execution via improrer user input filtering in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform in main_ok.php user supplied data/hour/time is passed directly into date shell… | |
| Analizada | Alta (7.1) | 0.19% | — | Dbbroadcast Mozart Next 6000 FirmwareDbbroadcast Mozart Next 500 FirmwareDbbroadcast Mozart Next 50 FirmwareDbbroadcast Mozart Next 3500 Firmware+18 | 26/11/2025 | 17/6/2026 | Stored Cross-Site Scripting via XML Injection in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Stored XSS via crafted filenames injected into patchlist.xml. User-controlled filenames are directly… | |
| Analizada | Crítica (9.2) | 0.38% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Deletion (patch_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform The deletepatch parameter allows unauthenticated deletion of arbitrary files. The `deletepatch`… | |
| Modificada | Crítica (9.9) | 0.44% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Upload (patch_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Unrestricted file upload in patch_contents.php allows uploading malicious files. The… | |
| Analizada | Crítica (9.9) | 0.38% | — | Dbbroadcast Mozart Next 3000 FirmwareDbbroadcast Mozart Next 3500 FirmwareDbbroadcast Mozart Next 50 FirmwareDbbroadcast Mozart Next 500 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Upload (upgrade_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Missing signature validation allows uploading malicious firmware packages. The firmware upgrade… | |
| Analizada | Alta (7.8) | 0.38% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Deletion (upgrade_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform The deleteupgrade parameter allows unauthenticated deletion of arbitrary files. The… | |
| Analizada | Crítica (9.9) | 2.3% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated OS Command Injection (start_upgrade.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform User input passed directly to exec() allows remote code execution via start_upgrade.php. The… | |
| Analizada | Alta (8.4) | 0.36% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Infinite Loop Denial of Service via Failed File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Infinite loop when unlink() fails in status_contents.php causing DoS. Due to the fact that the… | |
| Analizada | Alta (7.7) | 0.49% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Path Traversal with Arbitrary File Deletion in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform The deletehidden parameter allows path traversal deletion of arbitrary .tgz files. | |
| Analizada | Crítica (9.2) | 0.44% | — | Dbbroadcast Mozart Next 100 FirmwareDbbroadcast Mozart Next 1000 FirmwareDbbroadcast Mozart Next 2000 FirmwareDbbroadcast Mozart Next 30 Firmware+18 | 26/11/2025 | 17/6/2026 | Unauthenticated Arbitrary File Upload (status_contents.php) in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500, 6000, 7000 allows an attacker to perform Allows unauthenticated arbitrary file upload via /var/tdf/status_contents.php. | |
| Analizada | Crítica (9) | 0.09% | 💥 PoC | Syrotech Sy-gpon-1110-wdont Firmware | 25/11/2025 | 17/6/2026 | An issue was discovered in Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 allowing attackers to exctract the SSL Private Key, CA Certificate, SSL Certificate, and Client Certificates in .pem format in firmware in etc folder. | |
| Analizada | Crítica (9.6) | 0.32% | — | Ilevia EVE X1 Server Firmware | 25/11/2025 | 17/6/2026 | Cross Site Request Forgery (CSRF) vulnerability in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before, Logic Version v6.00 - 2025_07_21 allows a remote attacker to execute arbitrary code via the /bh_web_backend component | |
| Aplazada | Media (6.9) | 0.42% | — | Asus Router FirmwareAI | 25/11/2025 | 17/6/2026 | A stack buffer overflow vulnerability has been identified in certain router models. An authenticated attacker may trigger this vulnerability by sending a crafted request, potentially impacting the availability of the device. Refer to the ' Security Update for ASUS Router Firmware' section on the ASUS Security Advisory… | |
| Aplazada | Alta (8.2) | 0.65% | — | Asus Router FirmwareAIWebdavAI | 25/11/2025 | 17/6/2026 | A path traversal vulnerability has been identified in WebDAV, which may allow unauthenticated remote attackers to impact the integrity of the device. Refer to the ' Security Update for ASUS Router Firmware' section on the ASUS Security Advisory for more information. |