Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.55% | — | Siemens Sicam A8000 Cp-8050 FirmwareSiemens Sicam A8000 Cp-8031 Firmware | 9/1/2024 | 17/6/2026 | A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.20), CP-8050 MASTER MODULE (All versions < CPCI85 V05.20). The network configuration service of affected devices contains a flaw in the conversion of ipv4 addresses that could lead to an uninitialized variable being used in… | |
| Modificada | Alta (8.8) | 0.73% | — | Siemens Cp-8050 FirmwareSiemens Cp-8031 Firmware | 10/10/2023 | 17/6/2026 | A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11). The web server of affected devices fails to properly sanitize user input for the /sicweb-ajax/tmproot/ endpoint. This could allow an authenticated remote attacker to… | |
| Modificada | Alta (7.8) | 0.36% | — | Siemens Cp-8050 FirmwareSiemens Cp-8031 Firmware | 10/10/2023 | 17/6/2026 | A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11 (only with activated debug support)). The affected devices contain a hard-coded ID in the SSH `authorized_keys` configuration file. An… | |
| Modificada | Crítica (9.8) | 2.8% | — | Siemens Cp-8031 FirmwareSiemens Cp-8050 Firmware | 11/4/2023 | 17/6/2026 | A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). Affected devices are vulnerable to command injection via the web server port 443/tcp, if the parameter “Remote Operation” is enabled. The parameter is disabled by default. The… | |
| Modificada | Alta (7.5) | 2.5% | — | Siemens Sicam A8000 Cp-8031 FirmwareSiemens Sicam A8000 Cp-8050 Firmware | 12/4/2022 | 17/6/2026 | A vulnerability has been identified in SICAM A8000 CP-8031 (All versions < V4.80), SICAM A8000 CP-8050 (All versions < V4.80). Affected devices do not require an user to be authenticated to access certain files. This could allow unauthenticated attackers to download these files. | |
| Modificada | Alta (7.5) | 2.0% | — | Siemens Sicam A8000 Cp-8000 FirmwareSiemens Sicam A8000 Cp-802x FirmwareSiemens Sicam A8000 Cp-8050 Firmware | 21/3/2019 | 17/6/2026 | A vulnerability has been identified in SICAM A8000 CP-8000 (All versions < V14), SICAM A8000 CP-802X (All versions < V14), SICAM A8000 CP-8050 (All versions < V2.00). Specially crafted network packets sent to port 80/TCP or 443/TCP could allow an unauthenticated remote attacker to cause a Denial-of-Service condition… |