Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7)0.14%—AMD Atihdwt6AI11/2/202617/6/2026
Integer Overflow within atihdwt6.sys can allow a local attacker to cause out of bound read/write potentially leading to loss of confidentiality, integrity and availability
AplazadaCrítica (9.8)0.40%—DWTAI27/6/202517/6/2026
The DWT - Directory & Listing WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.3.6. This is due to the plugin not properly checking for an empty token value prior to resetting a user's password through the…
AnalizadaMedia (5.4)0.27%—Scriptsbundle DWT Listing8/2/202517/6/2026
The DWT - Directory & Listing WordPress Theme is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.3.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above…
AplazadaMedia (6.1)0.29%—DWT Directory AND ListingAI16/1/202517/6/2026
The DWT - Directory & Listing WordPress Theme is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.3.3 due to insufficient input sanitization and output escaping on the 'sort_by' and 'token' parameters. This makes it possible for unauthenticated attackers to inject arbitrary web scripts…
ModificadaAlta (7.5)0.94%—Fujifilm Docuprint M265 Z FirmwareFujifilm Docuprint M268 Z FirmwareFujifilm Docuprint M225 Z FirmwareFujifilm Docuprint M225 DW Firmware+21211/7/202317/6/2026
Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected products/models/versions, see the detailed information…
ModificadaAlta (7.5)1.8%—Brother Ads-2400n FirmwareBrother Ads-2800w FirmwareBrother Ads-3000n FirmwareBrother Ads-3600w Firmware+29613/3/202017/6/2026
Some Brother printers (such as the HL-L8360CDW v1.20) were affected by different information disclosure vulnerabilities that provided sensitive information to an unauthenticated user who visits a specific URL.
ModificadaAlta (8.8)3.1%—Brother Ads-2400n FirmwareBrother Ads-2800w FirmwareBrother Ads-3000n FirmwareBrother Ads-3600w Firmware+29613/3/202017/6/2026
Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a stack buffer overflow vulnerability as the web server did not parse the cookie value properly. This would allow an attacker to execute arbitrary code on the device.
ModificadaCrítica (9.8)3.8%—Brother Ads-2400n FirmwareBrother Ads-2800w FirmwareBrother Ads-3000n FirmwareBrother Ads-3600w Firmware+29613/3/202017/6/2026
Some Brother printers (such as the HL-L8360CDW v1.20) were affected by a heap buffer overflow vulnerability as the IPP service did not parse attribute names properly. This would allow an attacker to execute arbitrary code on the device.