Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2561▼ 314 respecto a la semana anterior
Críticas / altas1347▲ 83 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.77% | — | Linksys E1200 Firmware | 13/11/2025 | 5/7/2026 | A stack-based buffer overflow exists in the get_merge_mac function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The function concatenates up to six user-supplied CGI parameters matching <parameter>_0~5 into a fixed-size buffer (a2) without proper bounds checking, appending… | |
| Modificada | Alta (7.5) | 1.1% | — | Linksys E1200 Firmware | 13/11/2025 | 5/7/2026 | A stack-based buffer overflow exists in the validate_static_route function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The function improperly concatenates user-supplied CGI parameters (route_ipaddr_0~3, route_netmask_0~3, route_gateway_0~3) into fixed-size buffers (v6, v10,… | |
| Modificada | Alta (8.4) | 0.23% | — | Linksys E1200 Firmware | 13/11/2025 | 5/7/2026 | A stack-based buffer overflow vulnerability exists in the libshared.so library of Cisco Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The functions get_mac_from_ip and get_ip_from_mac use sscanf with overly permissive "%100s" format specifiers to parse entries from /proc/net/arp into fixed-size… | |
| Modificada | Alta (8.8) | 0.71% | — | Linksys E1200 Firmware | 13/11/2025 | 5/7/2026 | A stack-based buffer overflow exists in the httpd binary of Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The apply_cgi and block_cgi functions copy user-supplied input from the "url" CGI parameter into stack buffers (v36, v29) using sprintf without bounds checking. Because these buffers are… | |
| Modificada | Alta (8.8) | 3.9% | — | Linksys E1200 Firmware | 13/11/2025 | 5/7/2026 | A stack-based buffer overflow exists in the get_merge_ipaddr function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The function concatenates up to four user-supplied CGI parameters matching <parameter>_0~3 into a fixed-size buffer (a2) without bounds checking. Remote… | |
| Modificada | Media (5.4) | 18% | — | Linksys E1200 Firmware | 13/11/2025 | 22/7/2026 | An unauthenticated command injection vulnerability exists in the Start_EPI function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The vulnerability occurs because user-supplied CGI parameters (wl_ant, wl_ssid, wl_rate, ttcp_num, ttcp_ip, ttcp_size) are concatenated into system… | |
| Aplazada | Alta (8.3) | 54% | — | Linksys E1000AILinksys E1200AILinksys E3200AI | 11/7/2025 | 16/6/2026 | Linksys E1000 devices through 2.1.02, E1200 devices before 2.0.05, and E3200 devices through 1.0.04 allow OS command injection via shell metacharacters in the apply.cgi ping_ip parameter on TCP port 52000. | |
| Modificada | Crítica (9.8) | 9.8% | — | Linksys E1200 Firmware | 28/8/2022 | 9/7/2026 | Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name. | |
| Modificada | Alta (7.2) | 4.8% | — | Linksys E1200 FirmwareLinksys E2500 Firmware | 17/10/2018 | 17/6/2026 | An exploitable operating system command injection exists in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04). Specially crafted entries to network configuration information can cause execution of arbitrary system commands, resulting in full control… | |
| Modificada | Alta (7.2) | 3.4% | — | Linksys E1200 FirmwareLinksys E2500 Firmware | 17/10/2018 | 17/6/2026 | Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to OS command injection vulnerabilities due to improper filtering of data passed to and retrieved from NVRAMData entered into the 'Router Name' input field through the web… | |
| Modificada | Alta (7.2) | 14% | — | Linksys E1200 FirmwareLinksys E2500 Firmware | 17/10/2018 | 17/6/2026 | Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to OS command injection vulnerabilities due to improper filtering of data passed to and retrieved from NVRAM. Data entered into the 'Router Name' input field through the web… | |
| Modificada | Alta (8.1) | 1.4% | — | Moxa Iologik E1200 Series FirmwareMoxa Iologik E2200 Series Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, firmware Version V2.4 and prior, ioLogik E1240, firmware Version V2.3 and prior,… | |
| Modificada | Alta (8.1) | 1.7% | — | Moxa Iologik E1200 Series FirmwareMoxa Iologik E2200 Series Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, firmware Version V2.4 and prior, ioLogik E1240, firmware Version V2.3 and prior,… | |
| Modificada | Media (6.1) | 1.2% | — | Moxa Iologik E1200 Series FirmwareMoxa Iologik E2200 Series Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, firmware Version V2.4 and prior, ioLogik E1240, firmware Version V2.3 and prior,… | |
| Modificada | Media (6.3) | 0.57% | — | Moxa Iologik E1200 Series FirmwareMoxa Iologik E2200 Series Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, firmware Version V2.4 and prior, ioLogik E1240, firmware Version V2.3 and prior,… |