Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
161 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Sin puntuar | 0.16% | — | Mercusys Ac12AI | 5/10/2026 | 6/10/2026 | An issue in Mercusys AC12 V2 allows a local attacker to execute arbitrary code via the UART serial interface on the printed circuit board (PCB) | |
| Aplazada | Alta (7.7) | 0.17% | — | Mercusys Ac12AI | 5/10/2026 | 6/10/2026 | An issue in Mercusys AC12 V2 allows a local attacker to execute arbitrary code via a hardcoded 512-bit RSA Private Key | |
| Aplazada | Alta (7.8) | 0.16% | — | Mercusys Ac12AI | 5/10/2026 | 6/10/2026 | An issue in Mercusys AC12 V2 allows a local attacker to execute arbitrary code via the storage of information in plaintext | |
| Aplazada | Alta (8.6) | 0.38% | — | Fast Fac1203rAI | 29/9/2026 | 29/9/2026 | A security flaw has been discovered in FAST FAC1203R 20200116_2.0.4. The affected element is the function _tWlanTask of the component MmtAtePrase Parser. Performing a manipulation results in stack-based buffer overflow. The attacker must have access to the local network to execute the attack. The exploit has been… | |
| Aplazada | Alta (8.6) | 0.45% | — | Fast Fac1200rAI | 28/9/2026 | 28/9/2026 | A vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the function MmtAtePrase of the component MmtAtePrase Parser. This manipulation causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be… | |
| Aplazada | Alta (8.6) | 0.46% | — | Fast Fac1200rAI | 28/9/2026 | 1/10/2026 | A vulnerability was found in FAST FAC1200R 5.0_20201119_1.0.2. Affected is the function parse_advertisement_frame of the component devdiscover Service. The manipulation results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used. The vendor was… | |
| Aplazada | Crítica (9.3) | 0.58% | — | Fast Fac1203r Gigabit EditionAI | 23/9/2026 | 23/9/2026 | A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_element of the component Device Discovery Service. Executing a manipulation can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been published and may be used. The… | |
| Aplazada | Crítica (9.3) | 1.4% | — | Tenda Ac1206AI | 31/8/2026 | 31/8/2026 | A vulnerability was identified in Tenda AC1206 15.03.06.23. This issue affects the function R7WebsSecurityHandler of the file /goform/ate of the component Web UI. The manipulation leads to missing authentication. The attack can be initiated remotely. The exploit is publicly available and might be used. | |
| Aplazada | Crítica (9.3) | 1.4% | — | Tenda Ac1206AI | 31/8/2026 | 31/8/2026 | A vulnerability was determined in Tenda AC1206 15.03.06.23. This vulnerability affects the function TendaTelnet of the file /goform/telnet of the component Web UI. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may… | |
| Aplazada | Alta (7.4) | 0.85% | — | Tenda Ac12AI | 14/8/2026 | 18/8/2026 | A vulnerability was determined in Tenda AC12 15.03.06.23_multi_TD01. This vulnerability affects the function formSetRebootTimer of the file /goform/SetSysAutoRebbotCfg of the component httpd web management interface. This manipulation of the argument rebootTime causes buffer overflow. The attack may be initiated… | |
| Aplazada | Alta (7.4) | 0.85% | — | Tenda Ac1206AI | 14/8/2026 | 14/8/2026 | A vulnerability was determined in Tenda AC1206 15.03.06.23_multi_TD01. This vulnerability affects the function set_wl_guest_iplist of the file /goform/WifiGuestSet of the component httpd web management interface. This manipulation of the argument shareSpeed causes stack-based buffer overflow. Remote exploitation of… | |
| Aplazada | Alta (7.4) | 0.85% | — | Tenda Ac1206AI | 14/8/2026 | 18/8/2026 | A vulnerability was found in Tenda AC1206 15.03.06.23_multi_TD01. This affects the function set_device_name of the file /goform/SetOnlineDevName of the component httpd web management interface. The manipulation of the argument devName results in stack-based buffer overflow. The attack may be launched remotely. The… | |
| Aplazada | Alta (7.7) | 0.71% | — | Totolink A3000ruAITotolink A3100rAITotolink A950rgAITotolink Ac1200t10AI+3 | 9/7/2026 | 3/9/2026 | A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 up to 20260906. Affected by this issue is some unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. The manipulation leads to least privilege violation. The attack may… | |
| Aplazada | Alta (7.5) | 0.55% | — | Tenda Ac1206AI | 8/6/2026 | 23/7/2026 | Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the fromGstDhcpSetSer function via the username and password parameters. These vulnerabilities allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request. | |
| Aplazada | Baja (2.1) | 0.21% | — | Totolink Ac1200 T8AIVsftpdAI | 8/6/2026 | 23/7/2026 | A security vulnerability has been detected in TOTOLINK AC1200 T8 4.1.5cu.8611. This affects an unknown function of the file /etc/vsftpd.conf of the component vsftpd. The manipulation leads to least privilege violation. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. | |
| Aplazada | Media (4.3) | 0.23% | — | Mercusys Ac12gAINlnetlabs UnboundAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 responds to version.bind CHAOS TXT queries, disclosing the DNS resolver software version (unbound 1.22.0), aiding targeted attacks against known vulnerabilities. | |
| Aplazada | Media (5.9) | 0.19% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key, and default PSK embedded in the production firmware binary. | |
| Aplazada | Media (4.3) | 0.24% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 exposes an undocumented /agileconfigreset endpoint that returns internal buffer contents to unauthenticated attackers on the adjacent network. | |
| Aplazada | Media (4.3) | 0.23% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized internal buffer contents when receiving HTTP POST requests to undefined paths, exposing server state to unauthenticated adjacent network attackers. | |
| Aplazada | Media (6.4) | 0.20% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 enables WPS 2.0 by default with a weak lockout policy (60-second lockout after 10 attempts). | |
| Aplazada | Alta (7.3) | 0.32% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized buffer when receiving POST requests without SOAPAction header on UPnP port 1900, exposing internal memory to unauthenticated adjacent network attackers. | |
| Aplazada | Media (5.9) | 0.19% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 transmits DDNS credentials over plaintext HTTP with only Base64 encoding. The firmware contains no TLS implementation, allowing man-in-the-middle interception of DDNS service credentials. | |
| Aplazada | Alta (7.3) | 0.23% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 uses a static authentication nonce that does not change between requests from the same source IP. Combined with the predictable XOR-based password encoding (securityEncode function), this allows an attacker to reverse captured authentication tokens to… | |
| Aplazada | Alta (8.8) | 0.30% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows UPnP AddPortMapping to forward external ports to the router's own admin interface by accepting its own IP (192.168.1.1) or localhost (127.0.0.1) as InternalClient. An unauthenticated LAN attacker can expose the admin panel to the internet with a… | |
| Aplazada | Alta (8.8) | 0.30% | — | Mercusys Ac12gAI | 3/6/2026 | 22/7/2026 | Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change endpoint (code=10), which lacks the rate limiting applied to the login endpoint (code=7). An attacker on the adjacent network can attempt unlimited passwords without triggering… |