Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2904▼ 176 respecto a la semana anterior
Críticas / altas1294▼ 55 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
–

10 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/network/diag_iperf. The manipulation of the argument iperf leads to command injection. The attack may be launched remotely. The…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/network/ajax_getChannelList. The manipulation of the argument countryCode leads to command injection. The attack can be…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability, which was classified as critical, was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. Affected is an unknown function of the file /admin/network/diag_nslookup. The manipulation of the argument diag_nslookup leads to command injection. It is possible to launch the attack remotely.…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability, which was classified as critical, has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This issue affects some unknown processing of the file /admin/network/diag_ping6. The manipulation of the argument diag_ping6 leads to command injection. The attack may be initiated…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability classified as critical was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This vulnerability affects unknown code of the file /admin/network/diag_pinginterface. The manipulation of the argument diag_ping leads to command injection. The attack can be initiated remotely. The…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability classified as critical has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This affects an unknown part of the file /admin/network/diag_traceroute6. The manipulation of the argument diag_traceroute6 leads to command injection. It is possible to initiate the attack remotely.…
AnalizadaMedia (5.1)29%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/network/diag_traceroute. The manipulation of the argument diag_traceroute leads to command injection. The attack may be…
AnalizadaMedia (5.1)30%—Engeniustech Enh1350ext FirmwareEngeniustech Ens500-ac FirmwareEngeniustech Ens620ext Firmware25/11/202417/6/2026
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/sn_package/sn_https. The manipulation of the argument https_enable leads to command injection. The attack can be…
AnalizadaMedia (5.1)27%—Engeniustech Enh1350ext FirmwareEngeniustech Ens620ext FirmwareEngeniustech Ens500-ac Firmware25/11/202417/6/2026
A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been classified as critical. Affected is an unknown function of the file /admin/network/wifi_schedule. The manipulation of the argument wifi_schedule_day_em_5 leads to command injection. It is possible to launch the attack…
AplazadaAlta (7.8)35%—Engenius Enh1350extAI24/10/202417/6/2026
EnGenius ENH1350EXT A8J-ENH1350EXT devices through 3.9.3.2_c1.9.51 allow (blind) OS Command Injection via shell metacharacters to the Ping or Speed Test utility. During the time of initial setup, the device creates an open unsecured network whose admin panel is configured with the default credentials of admin/admin.…