Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2720▼ 598 respecto a la semana anterior
Críticas / altas1299▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.57% | — | Buffalo Bs-gsl2024 FirmwareBuffalo Bs-gsl2016p FirmwareBuffalo Bs-gsl2016 FirmwareBuffalo Bs-gs2008 Firmware+12 | 11/4/2023 | 17/6/2026 | Use of hard-coded credentials vulnerability in Buffalo network devices allows an attacker to access the debug function of the product. The affected products and versions are as follows: BS-GSL2024 firmware Ver. 1.10-0.03 and earlier, BS-GSL2016P firmware Ver. 1.10-0.03 and earlier, BS-GSL2016 firmware Ver. 1.10-0.03… | |
| Modificada | Alta (8.1) | 0.29% | — | Buffalo Bs-gsl2024 FirmwareBuffalo Bs-gsl2016p FirmwareBuffalo Bs-gsl2016 FirmwareBuffalo Bs-gs2008 Firmware+8 | 11/4/2023 | 17/6/2026 | Improper access control vulnerability in Buffalo network devices allows a network-adjacent attacker to obtain specific files of the product. As a result, the product settings may be altered. The affected products and versions are as follows: BS-GSL2024 firmware Ver. 1.10-0.03 and earlier, BS-GSL2016P firmware Ver.… | |
| Modificada | Media (5.4) | 0.37% | — | Buffalo Bs-gs2008 FirmwareBuffalo Bs-gs2016 FirmwareBuffalo Bs-gs2024 FirmwareBuffalo Bs-gs2048 Firmware+3 | 11/4/2023 | 17/6/2026 | Stored-cross-site scripting vulnerability in Buffalo network devices allows an attacker with access to the web management console of the product to execute arbitrary JavaScript on a legitimate user's web browser. The affected products and versions are as follows: BS-GS2008 firmware Ver. 1.0.10.01 and earlier,… |