Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2663▼ 380 respecto a la semana anterior
Críticas / altas1289▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 0.57% | — | Codesys Ethernet IP AdapterAI | 23/4/2026 | 17/6/2026 | An unauthenticated remote attacker is able to exhaust all available TCP connections in the CODESYS EtherNet/IP adapter stack, preventing legitimate clients from establishing new connections. | |
| Aplazada | Alta (7.7) | 0.32% | — | Allen Bradley 1715 Ethernet IP AdapterAI | 14/10/2025 | 17/6/2026 | A denial-of-service security issue exists in the affected product and version. The security issue is caused through CIP communication using crafted payloads. The security issue could result in no CIP communication with 1715 EtherNet/IP Adapter.A restart is required to recover. | |
| Modificada | Alta (7.5) | 1.3% | — | Pyramidsolutions Netstax Ethernet/ip Adapter Development KITPyramidsolutions Netstax Ethernet/ip Adapter DLL KITPyramidsolutions Netstax Ethernet/ip Scanner Development KITPyramidsolutions Netstax Ethernet/ip Scanner DLL KIT | 12/7/2022 | 17/6/2026 | Pyramid Solutions' affected products, the Developer and DLL kits for EtherNet/IP Adapter and EtherNet/IP Scanner, are vulnerable to an out-of-bounds write, which may allow an unauthorized attacker to send a specially crafted packet that may result in a denial-of-service condition. | |
| Modificada | Alta (8.6) | 1.1% | — | Hilscher Ethernet/ip Adapter FirmwarePepperl-fuchs WCS FirmwarePepperl-fuchs Pxv100-f200-b25-v1d FirmwarePepperl-fuchs Pxv100i-f200-b25-v1d Firmware+4 | 16/2/2021 | 17/6/2026 | A denial of service and memory corruption vulnerability was found in Hilscher EtherNet/IP Core V2 prior to V2.13.0.21that may lead to code injection through network or make devices crash without recovery. | |
| Modificada | Media (5) | 57% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | An information exposure of confidential information results when the device receives a specially crafted CIP packet to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP. Successful exploitation of this vulnerability could cause loss of confidentiality. Rockwell Automation EtherNet/IP products; 1756-ENBT,… | |
| Modificada | Media (4.8) | 9.3% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | The Web server password authentication mechanism used by the products is vulnerable to a MitM and Replay attack. Successful exploitation of this vulnerability will allow unauthorized access of the product’s Web server to view and alter product configuration and diagnostics information. Rockwell Automation EtherNet/IP… | |
| Modificada | Alta (8.5) | 23% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP that changes the product’s configuration and network parameters, a DoS condition can occur. This situation could cause loss of availability and a disruption… | |
| Modificada | Alta (7.5) | 27% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | The device does not properly validate the data being sent to the buffer. An attacker can send a malformed CIP packet to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP, which creates a buffer overflow and causes the NIC to crash. Successful exploitation of this vulnerability could cause loss of… | |
| Modificada | Crítica (9.8) | 7.8% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | The device does not properly authenticate users and the potential exists for a remote user to upload a new firmware image to the Ethernet card, whether it is a corrupt or legitimate firmware image. Successful exploitation of this vulnerability could cause loss of availability, integrity, and confidentiality and a… | |
| Modificada | Alta (7.5) | 27% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | The device does not properly validate the data being sent to the buffer. An attacker can send a malformed CIP packet to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP, which creates a buffer overflow and causes the CPU to crash. Successful exploitation of this vulnerability could cause loss of… | |
| Modificada | Alta (7.5) | 33% | — | Rockwellautomation Controllogix ControllersRockwellautomation Guardlogix ControllersRockwellautomation MicrologixRockwellautomation Softlogix Controllers+13 | 24/1/2013 | 16/6/2026 | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or Port 44818/UDP that instructs the CPU to stop logic execution and enter a fault state, a DoS can occur. This situation could cause loss of availability and a disruption of… |