Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 85 respecto a la semana anterior
Críticas / altas1403▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.5) | 0.26% | — | Arista Aos-8 InstantAIArista AOS 10AI | 14/10/2025 | 17/6/2026 | A vulnerability in the parsing of ethernet frames in AOS-8 Instant and AOS 10 could allow an unauthenticated remote attacker to conduct a denial of service attack. Successful exploitation could allow an attacker to potentially disrupt network services and require manual intervention to restore functionality. | |
| Aplazada | Media (6) | 0.25% | — | Arista Aos-8 InstantAIArista Aos-10 APAI | 8/4/2025 | 17/6/2026 | A vulnerability in the file creation process on the command line interface of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to perform remote code execution (RCE). Successful exploitation could allow an attacker to execute arbitrary operating system commands on the underlying operating… | |
| Aplazada | Media (6.5) | 0.45% | — | Aruba Aos-8 InstantAIAruba Aos-10 APAI | 8/4/2025 | 17/6/2026 | A vulnerability in a system binary of AOS-8 Instant and AOS-10 AP could allow an authenticated remote attacker to inject commands into the underlying operating system while using the CLI. Successful exploitation could lead to complete system compromise. | |
| Aplazada | Alta (7.2) | 0.71% | — | Aerohive Aos-8AIAerohive Aos-10AI | 14/1/2025 | 17/6/2026 | An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated user to leverage parameter injection to overwrite arbitrary system files. | |
| Aplazada | Media (6.8) | 0.87% | — | Instant Aos-8AIInstant Aos-10AI | 5/11/2024 | 17/6/2026 | An authenticated Path Traversal vulnerability exists in Instant AOS-8 and AOS-10. Successful exploitation of this vulnerability allows an attacker to copy arbitrary files to a user readable location from the command line interface of the underlying operating system, which could lead to a remote unauthorized access to… | |
| Aplazada | Alta (7.2) | 1.2% | — | Instant Aos-8AIInstant Aos-10AI | 5/11/2024 | 17/6/2026 | An arbitrary file creation vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. Successful exploitation of this vulnerability could allow an authenticated remote attacker to create arbitrary files, which could lead to a remote command execution (RCE) on the underlying operating system. | |
| Aplazada | Alta (7.2) | 1.2% | — | Instant Aos-8AIInstant Aos-10AI | 5/11/2024 | 17/6/2026 | An arbitrary file creation vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. Successful exploitation of this vulnerability could allow an authenticated remote attacker to create arbitrary files, which could lead to a remote command execution (RCE) on the underlying operating system. | |
| Aplazada | Alta (7.2) | 1.7% | — | Instant Aos-8AIInstant Aos-10AI | 5/11/2024 | 17/6/2026 | An authenticated command injection vulnerability exists in the Instant AOS-8 and AOS-10 command line interface. A successful exploitation of this vulnerability results in the ability to execute arbitrary commands as a privileged user on the underlying operating system. This allows an attacker to fully compromise the… |