Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2507▼ 423 respecto a la semana anterior
Críticas / altas1283▲ 4 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 4.8% | — | Digital Alert Systems Dasdec EASMonroe Electronics R189 One-net EAS | 30/6/2013 | 16/6/2026 | The Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 have a default password for an administrative account, which makes it easier for remote attackers to obtain access via an IP network. | |
| Modificada | Alta (7.3) | 1.4% | — | Digital Alert Systems Dasdec EASMonroe Electronics R189 One-net EAS | 30/6/2013 | 16/6/2026 | dasdec_mkuser on the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 generates predictable passwords, which might make it easier for attackers to obtain non-administrative access via unspecified vectors. | |
| Modificada | Alta (7.5) | 2.3% | — | Digital Alert Systems Dasdec EASMonroe Electronics R189 One-net EAS | 30/6/2013 | 16/6/2026 | The web server on the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 allows remote attackers to obtain sensitive configuration and status information by reading log files. | |
| Modificada | Alta (10) | 3.0% | — | Digital Alert Systems Dasdec EASMonroe Electronics R189 One-net EAS | 30/6/2013 | 16/6/2026 | The administrative web server on the Digital Alert Systems DASDEC EAS device through 2.0-2 and the Monroe Electronics R189 One-Net EAS device through 2.0-2 uses predictable session ID values, which makes it easier for remote attackers to hijack sessions by sniffing the network. NOTE: VU#662676 states "Monroe… | |
| Modificada | Alta (10) | 13% | — | Digital Alert Systems Dasdec EASMonroe Electronics R189 One-net EAS | 30/6/2013 | 16/6/2026 | The default configuration of the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 contains a known SSH private key, which makes it easier for remote attackers to obtain root access, and spoof alerts, via an SSH session. |