Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3028▼ 62 respecto a la semana anterior
Críticas / altas1422▲ 60 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.2) | 42% | ⚠ Explotación activa | Mitel 6970 FirmwareMitel 6940w SIP FirmwareMitel 6930w SIP FirmwareMitel 6920w SIP Firmware+11 | 12/8/2024 | 17/6/2026 | A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.136) could allow an authenticated attacker with administrative privilege to conduct an argument injection attack, due to insufficient parameter sanitization during the boot… | |
| Analizada | Alta (8.8) | 0.45% | — | Mitel 6940w FirmwareMitel 6930w FirmwareMitel 6920w FirmwareMitel 6970 Firmware+10 | 8/4/2024 | 17/6/2026 | In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password). | |
| Modificada | Alta (7.5) | 1.3% | — | Mitel 6863 FirmwareMitel 6865 FirmwareMitel 6867 FirmwareMitel 6869 Firmware+7 | 26/8/2020 | 17/6/2026 | The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unauthenticated attacker to expose sensitive information due to improper memory handling during failed login attempts. |