Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2965▲ 27 respecto a la semana anterior
Críticas / altas1456▲ 193 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
18 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.5) | 1.8% | — | Tp-link Archer Ax53 Firmware | 8/4/2026 | 25/7/2026 | An OS command injection vulnerability in the dnsmasq module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent attacker to execute arbitrary code when a specially crafted configuration file is processed due to insufficient input validation. Successful exploitation may allow the attacker to modify device… | |
| Modificada | Media (6.8) | 0.36% | — | Tp-link Archer Ax53 Firmware | 8/4/2026 | 25/7/2026 | An external configuration control vulnerability in the OpenVPN module of TP-Link AX53 v1.0 allows an authenticated adjacent attacker to read arbitrary files when a malicious configuration file is processed. Successful exploitation may allow unauthorized access to arbitrary files on the device, potentially exposing… | |
| Modificada | Media (6.8) | 0.36% | — | Tp-link Archer Ax53 Firmware | 8/4/2026 | 25/7/2026 | An external control of configuration vulnerability in the OpenVPN module of TP-Link AX53 v1.0 allows an authenticated adjacent attacker to read arbitrary file when a malicious configuration file is processed. Successful exploitation may allow unauthorized access to arbitrary files on the device, potentially exposing… | |
| Modificada | Alta (8.5) | 2.2% | — | Tp-link Archer Ax53 Firmware | 8/4/2026 | 25/7/2026 | An OS command injection vulnerability in the OpenVPN module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent attacker to execute system commands when a specially crafted configuration file is processed due to insufficient input validation. Successful exploitation may allow modification of configuration… | |
| Modificada | Alta (7.3) | 0.56% | — | Tp-link Archer Ax53 Firmware | 8/4/2026 | 25/7/2026 | A stack-based buffer overflow in the tmpServer module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent attacker to trigger a segmentation fault and potentially execute arbitrary code via a specially crafted configuration file. Successful exploitation may cause a crash and could allow arbitrary code… | |
| Modificada | Alta (7.7) | 0.64% | — | Tp-link Archer Ax53 Firmware | 20/3/2026 | 12/8/2026 | This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient input sanitization in the device’s probe handling logic, where unvalidated parameters can trigger a stack-based buffer overflow that causes the affected service to crash and, under specific conditions, may enable remote code execution… | |
| Analizada | Alta (7.3) | 2.0% | — | Tp-link Archer Ax53 Firmware | 20/3/2026 | 17/6/2026 | A command injection vulnerability on AX53 v1 occurs in mscd debug functionality due to insufficient input handling, allowing log redirection to arbitrary files and concatenation of unvalidated file content into shell commands, enabling authenticated attackers to inject and execute arbitrary commands. Successful… | |
| Modificada | Alta (7) | 0.50% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a specially crafted man‑in‑the‑middle (MITM) attack. This could enable unauthorized access if captured credentials are reused.This issue affects Archer AX53 v1.0: through… | |
| Modificada | Alta (7.3) | 0.51% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing a field whose length exceeds the maximum expected value.This issue… | |
| Modificada | Alta (7.3) | 0.51% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet whose length exceeds the maximum expected value.This issue affects Archer AX53… | |
| Modificada | Alta (7.3) | 0.51% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing an excessive number of fields with zero‑length values.This issue affects… | |
| Modificada | Alta (7.3) | 0.45% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing an excessive number of fields with zero‑length values.This issue affects… | |
| Modificada | Alta (7.3) | 0.45% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code. The vulnerability arises from improper validation of a packet field whose offset is used to determine the write location… | |
| Modificada | Alta (7.3) | 0.45% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing a field whose length exceeds the maximum expected value.This issue… | |
| Modificada | Alta (7.3) | 0.45% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet whose length exceeds the maximum expected value.This issue affects Archer AX53… | |
| Modificada | Alta (7.3) | 0.45% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 17/6/2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted set of network packets containing an excessive number of host entries This issue affects Archer… | |
| Modificada | Alta (8.6) | 0.55% | — | Tp-link Archer Ax53 Firmware | 3/2/2026 | 22/9/2026 | Heap-based Buffer Overflow vulnerability in Archer AX53 v1.0 and AX12 v1.0 (tdpserver modules) allows adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing a maliciously formed field. This issue affects Archer AX53 v1.0: through 1.3.1… | |
| Modificada | Alta (7.2) | 0.43% | — | Tp-link Archer Ax53 FirmwareTp-link Archer C20 Firmware | 21/1/2026 | 17/6/2026 | Logic vulnerability in TP-Link Archer C20 v5, 6.0, Archer AX53 v1.0 and TL-WR841N v13 (TDDP module) allows unauthenticated adjacent attackers to execute administrative commands including factory reset and device reboot without credentials. Attackers on the adjacent network can remotely trigger factory resets and… |