Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)2.1%—3s-smart Software Solutions Codesys Gateway Server25/10/201517/6/2026
3S-Smart CODESYS Gateway Server before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted (1) GET or (2) POST request.
ModificadaAlta (7.5)6.2%—3s-smart Codesys Gateway Server18/9/201517/6/2026
Multiple heap-based buffer overflows in 3S-Smart CODESYS Gateway Server before 2.3.9.34 allow remote attackers to execute arbitrary code via opcode (1) 0x3ef or (2) 0x3f0.
ModificadaAlta (10)3.8%—3s-software Codesys Gateway-server23/5/201316/6/2026
Use-after-free vulnerability in the server application in 3S CODESYS Gateway 2.3.9.27 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecified vectors.
ModificadaAlta (10)7.4%—3s-software Codesys Gateway-server24/2/201316/6/2026
Stack-based buffer overflow in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via a crafted packet.
ModificadaAlta (10)3.6%—3s-software Codesys Gateway-server24/2/201316/6/2026
3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors that trigger an out-of-bounds memory access.
ModificadaAlta (7.8)1.6%—3s-software Codesys Gateway-server24/2/201316/6/2026
Integer signedness error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to cause a denial of service via a crafted packet that triggers a heap-based buffer overflow.
ModificadaAlta (10)65%💥 Exploit3s-software Codesys Gateway-server24/2/201316/6/2026
Directory traversal vulnerability in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors involving a crafted pathname.
ModificadaAlta (10)4.2%—3s-software Codesys Gateway-server24/2/201316/6/2026
Array index error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via a crafted packet.
Orbitaley — Vulnerabilidades