Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
–

9 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)79%—Western Digital Arkeia5/10/201517/6/2026
The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation.
ModificadaAlta (7.5)8.8%—Westerndigital Arkeia Virtual Appliance Firmware28/4/201417/6/2026
Directory traversal vulnerability in opt/arkeia/wui/htdocs/index.php in the WD Arkeia virtual appliance (AVA) with firmware before 10.2.9 allows remote attackers to read arbitrary files and execute arbitrary PHP code via a ..././ (dot dot dot slash dot slash) in the lang Cookie parameter, as demonstrated by a request…
ModificadaAlta (10)65%—Knox Software Arkeia Server Backup2/5/200516/6/2026
Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request.
ModificadaCrítica (9.8)2.9%—Arkeia Network Backup21/2/200516/6/2026
Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the file system and possibly execute arbitrary commands.
ModificadaCrítica (9.8)0.95%—Arkeia31/8/200116/6/2026
Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing.
ModificadaAlta (10)2.2%—Knox Software Arkeia31/8/200116/6/2026
Knox Arkeia server 4.2, and possibly other versions, installs its root user with a null password by default, which allows local and remote users to gain privileges.
ModificadaAlta (7.2)0.35%—Knox Software Arkeia23/7/200116/6/2026
Arkeia backup server 4.2.8-2 and earlier creates its database files with world-writable permissions, which could allow local users to overwrite the files or obtain sensitive information.
ModificadaMedia (5)1.3%—Knox Software Arkeia26/9/199916/6/2026
Arkiea nlservd allows remote attackers to conduct a denial of service.
ModificadaAlta (7.2)1.1%—Knox Software Arkeia23/9/199916/6/2026
Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root access via a long HOME environmental variable.