Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.69% | — | Huawei Ese620x Vess Firmware | 12/7/2022 | 17/6/2026 | There is a buffer overflow vulnerability in eSE620X vESS V100R001C10SPC200 and V100R001C20SPC200. An attacker can exploit this vulnerability by sending a specific message to the target device due to insufficient validation of packets. Successful exploit could cause a denial of service condition. | |
| Modificada | Media (6.5) | 0.59% | — | Huawei Ecns280 TD FirmwareHuawei Ese620x Vess Firmware | 29/11/2021 | 17/6/2026 | Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi contains an out-of-bounds read vulnerability that could lead to a denial of service. Affected product versions include: eCNS280_TD V100R005C10; eSE620X vESS V100R001C10SPC200, V100R001C20SPC200,… | |
| Modificada | Alta (7.8) | 0.15% | — | Huawei Ecns280 TD FirmwareHuawei Ese620x Vess Firmware | 2/8/2021 | 17/6/2026 | There is a privilege escalation vulnerability in some Huawei products. Due to improper privilege management, a local attacker with common privilege may access some specific files in the affected products. Successful exploit will cause privilege escalation.Affected product versions include:eCNS280_TD… | |
| Modificada | Media (4.9) | 0.60% | — | Huawei Ecns280 TD FirmwareHuawei Ese620x Vess Firmware | 22/6/2021 | 17/6/2026 | There is an out-of-bounds read vulnerability in eCNS280_TD V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a message-handling function that contains an out-of-bounds read vulnerability. An attacker can exploit this vulnerability by sending a specific… | |
| Modificada | Media (5.5) | 0.16% | — | Huawei Ese620x Vess Firmware | 22/6/2021 | 17/6/2026 | There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains an out-of-bounds read vulnerability. An attacker could crafted messages between system process, successful exploit could… | |
| Modificada | Baja (3.3) | 0.15% | — | Huawei Ese620x Vess Firmware | 22/6/2021 | 17/6/2026 | There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A local attacker can exploit this vulnerability by sending specific message to the target device. Due to insufficient validation of internal message, successful exploit may cause the process and the… | |
| Modificada | Alta (7.8) | 0.18% | — | Huawei Ecns280 FirmwareHuawei Ese620x Vess Firmware | 22/6/2021 | 17/6/2026 | There is an improper authorization vulnerability in eCNS280 V100R005C00, V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200. A file access is not authorized correctly. Attacker with low access may launch privilege escalation in a specific scenario. This may compromise the normal service. |