Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3034▼ 62 respecto a la semana anterior
Críticas / altas1427▲ 61 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 6.9% | — | Cisco Dpc2203 Cable Modem FirmwareCisco Epc2203 Cable Modem Firmware | 9/3/2016 | 17/6/2026 | Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCuv05935. | |
| Modificada | Media (5) | 2.6% | — | Acme Micro HttpdRCA Digital Cable Modem | 26/4/2010 | 16/6/2026 | micro_httpd on the RCA DCM425 cable modem allows remote attackers to cause a denial of service (device reboot) via a long string to TCP port 80. | |
| Modificada | Alta (7.5) | 2.0% | — | Cable-modems Phphoo3 | 21/7/2008 | 16/6/2026 | SQL injection vulnerability in phpHoo3.php in phpHoo3 4.3.9, 4.3.10, 4.4.8, and 5.2.6 allows remote attackers to execute arbitrary SQL commands via the viewCat parameter. | |
| Modificada | Alta (7.8) | 2.8% | — | Scientific Atlanta Dpx2100 Cable Modem | 16/12/2005 | 16/6/2026 | Scientific Atlanta DPX2100 Cable Modem allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD), as demonstrated using hping2. NOTE: the provenance of this issue is unknown; the details are obtained… | |
| Modificada | Alta (7.8) | 1.8% | — | Motorola Cable Modem | 14/12/2005 | 16/6/2026 | Motorola SB5100E Cable Modem allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LAND). | |
| Modificada | Alta (7.5) | 2.6% | — | Thomson Cable Modem | 21/2/2005 | 16/6/2026 | The RgSecurity form in the HTTP server for the Thomson TCW690 cable modem running firmware 2.1 and software ST42.03.0a does not properly validate the password before performing changes, which allows remote attackers on the LAN to gain access via a direct POST request. | |
| Modificada | Media (5) | 1.8% | — | RCA Digital Cable Modem | 31/12/2002 | 16/6/2026 | The RCA Digital Cable Modems DCM225 and DCM225E allow remote attackers to cause a denial of service (modem device reset) by connecting to port 80 on the 10.0.0.0/8 device. | |
| Modificada | Media (5) | 1.4% | — | RCA Digital Cable Modem | 31/12/2002 | 16/6/2026 | RCA Digital Cable Modem DCM225 and DCM225E, and other modems that must conform to the Data-over-Cable Service Interface Specifications DOCSIS standard, uses the "public" community string for SNMP access, which allows remote attackers to read or write MIB information. | |
| Modificada | Alta (10) | 3.8% | — | Hybrid Network HsmpHybrid Network Cable Modem | 6/10/1999 | 16/6/2026 | Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to compromise the system through the HSMP protocol. |