Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.33% | — | Dlink Di-8100 FirmwareDlink Di-8100g FirmwareDlink Di-8004w FirmwareDlink Di-8003g Firmware+5 | 8/4/2026 | 25/7/2026 | D-Link DI-8003 v16.07.26A1, DI-8500 v16.07.26A1; DI-8003G v17.12.21A1, DI-8200G v17.12.20A1, DI-8200 v16.07.26A1, DI-8400 v16.07.26A1, DI-8004w v16.07.26A1, DI-8100 v16.07.26A1, and DI-8100G v17.12.20A1 were discovered to contain a buffer overflow via the rd_en, rd_auth, rd_acct, http_hadmin, http_hadminpwd, rd_key,… | |
| Analizada | Baja (3.5) | 0.39% | — | Dlink Di-8200 Firmware | 31/7/2025 | 17/6/2026 | D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the yyxz_dlink_asp function via the id parameter. | |
| Analizada | Baja (3.5) | 0.37% | — | Dlink Di-8200 Firmware | 31/7/2025 | 17/6/2026 | D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter. | |
| Analizada | Baja (3.5) | 0.37% | — | Dlink Di-8200 Firmware | 31/7/2025 | 17/6/2026 | D-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter. | |
| Modificada | Crítica (9.8) | 31% | — | Dlink Di-8200 Firmware | 21/11/2024 | 17/6/2026 | D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function via the flag parameter and cmd parameter. | |
| Analizada | Media (5.5) | 0.26% | — | Linux KernelDebian LinuxNetapp A1K FirmwareNetapp A70 Firmware+25 | 3/4/2024 | 17/6/2026 | In the Linux kernel, the following vulnerability has been resolved: arp: Prevent overflow in arp_req_get(). syzkaller reported an overflown write in arp_req_get(). [0] When ioctl(SIOCGARP) is issued, arp_req_get() looks up an neighbour entry and copies neigh->ha to struct arpreq.arp_ha.sa_data. The arp_ha here is… | |
| Modificada | Alta (7.8) | 0.26% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+68 | 18/8/2022 | 17/6/2026 | Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.1) | 0.46% | — | Commscope Arris Surfboard Sb8200 Firmware | 9/11/2021 | 17/6/2026 | The password change utility for the Arris SurfBoard SB8200 can have safety measures bypassed that allow any logged-in user to change the administrator password. | |
| Modificada | Alta (8.8) | 0.56% | — | Commscope Arris Surfboard Sb8200 Firmware | 21/10/2021 | 17/6/2026 | The administration web interface for the Arris Surfboard SB8200 lacks any protections against cross-site request forgery attacks. This means that an attacker could make configuration changes (such as changing the administrative password) without the consent of the user. | |
| Modificada | Media (6.1) | 0.66% | — | Mediakind Rx8200 Firmware | 14/9/2020 | 17/6/2026 | MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters and send the URL to a user in order to exploit reflected XSS. In the case of stored XSS, an attacker must modify the… | |
| Modificada | Alta (7.5) | 1.8% | — | Netapp Fas26x0 FirmwareNetapp Fas27x0 FirmwareNetapp Fas8200 FirmwareNetapp AFF C190 Firmware+3 | 11/5/2020 | 17/6/2026 | Certain versions of the NetApp Service Processor and Baseboard Management Controller firmware allow a remote unauthenticated attacker to cause a Denial of Service (DoS). |