Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

11 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.5)0.33%—Dlink Di-8100 FirmwareDlink Di-8100g FirmwareDlink Di-8004w FirmwareDlink Di-8003g Firmware+58/4/202625/7/2026
D-Link DI-8003 v16.07.26A1, DI-8500 v16.07.26A1; DI-8003G v17.12.21A1, DI-8200G v17.12.20A1, DI-8200 v16.07.26A1, DI-8400 v16.07.26A1, DI-8004w v16.07.26A1, DI-8100 v16.07.26A1, and DI-8100G v17.12.20A1 were discovered to contain a buffer overflow via the rd_en, rd_auth, rd_acct, http_hadmin, http_hadminpwd, rd_key,…
AnalizadaBaja (3.5)0.39%—Dlink Di-8200 Firmware31/7/202517/6/2026
D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the yyxz_dlink_asp function via the id parameter.
AnalizadaBaja (3.5)0.37%—Dlink Di-8200 Firmware31/7/202517/6/2026
D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter.
AnalizadaBaja (3.5)0.37%—Dlink Di-8200 Firmware31/7/202517/6/2026
D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter.
ModificadaCrítica (9.8)31%—Dlink Di-8200 Firmware21/11/202417/6/2026
D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function via the flag parameter and cmd parameter.
AnalizadaMedia (5.5)0.26%—Linux KernelDebian LinuxNetapp A1K FirmwareNetapp A70 Firmware+253/4/202417/6/2026
In the Linux kernel, the following vulnerability has been resolved: arp: Prevent overflow in arp_req_get(). syzkaller reported an overflown write in arp_req_get(). [0] When ioctl(SIOCGARP) is issued, arp_req_get() looks up an neighbour entry and copies neigh->ha to struct arpreq.arp_ha.sa_data. The arp_ha here is…
ModificadaAlta (7.8)0.26%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+6818/8/202217/6/2026
Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
ModificadaAlta (7.1)0.46%—Commscope Arris Surfboard Sb8200 Firmware9/11/202117/6/2026
The password change utility for the Arris SurfBoard SB8200 can have safety measures bypassed that allow any logged-in user to change the administrator password.
ModificadaAlta (8.8)0.56%—Commscope Arris Surfboard Sb8200 Firmware21/10/202117/6/2026
The administration web interface for the Arris Surfboard SB8200 lacks any protections against cross-site request forgery attacks. This means that an attacker could make configuration changes (such as changing the administrative password) without the consent of the user.
ModificadaMedia (6.1)0.66%—Mediakind Rx8200 Firmware14/9/202017/6/2026
MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters and send the URL to a user in order to exploit reflected XSS. In the case of stored XSS, an attacker must modify the…
ModificadaAlta (7.5)1.8%—Netapp Fas26x0 FirmwareNetapp Fas27x0 FirmwareNetapp Fas8200 FirmwareNetapp AFF C190 Firmware+311/5/202017/6/2026
Certain versions of the NetApp Service Processor and Baseboard Management Controller firmware allow a remote unauthenticated attacker to cause a Denial of Service (DoS).