Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
26 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.58% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Set Upstream Channel ID (UCID) parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web… | |
| Modificada | Alta (7.5) | 0.58% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Add Downstream Frequency parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of… | |
| Modificada | Alta (7.5) | 0.37% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network. A remote attacker could exploit this vulnerability by eavesdropping on the victim’s network traffic to extract username and password from the web interface (Password… | |
| Modificada | Alta (7.5) | 0.37% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network. A remote attacker could exploit this vulnerability by eavesdropping on the victim’s network traffic to extract username and password from the web interface (Login Page)… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Device Name parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Network Name (SSID) parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Preshared Phrase parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the L2TP/PPTP Username parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Pre-shared key parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Identity parameter under Remote endpoint settings at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Identity parameter under Local endpoint settings at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the IPsec Tunnel Name parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Hostname parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Password parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the DDNS Username parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Password parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Username parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the SMTP Server Name parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Contact Email Address parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the URL parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Description parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 3 parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 2 parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Time Server 1 parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the… | |
| Modificada | Media (5.4) | 0.36% | — | Skyworthdigital Cm5100 Firmware | 17/1/2024 | 17/6/2026 | This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Traceroute parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable… |