Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2568▼ 306 respecto a la semana anterior
Críticas / altas1351▲ 96 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
41 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.4) | 0.48% | — | Tenda F451AI | 8/6/2026 | 23/7/2026 | A weakness has been identified in Tenda F451 1.0.0.7/1.0.0.9. The affected element is the function fromNatlimit of the file /goform/Natlimit of the component Web Management Interface. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit… | |
| Aplazada | Alta (7.4) | 1.6% | — | Tenda F451AI | 8/6/2026 | 23/7/2026 | A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the function formWriteFacMac of the file /goform/WriteFacMac of the component Web Management Interface. Performing a manipulation of the argument mac results in os command injection. Remote exploitation of the attack is possible. The… | |
| Aplazada | Alta (7.4) | 0.79% | — | Tenda F451AI | 20/4/2026 | 17/6/2026 | A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromSafeClientFilter of the file /goform/SafeClientFilter of the component httpd. The manipulation of the argument menufacturer/Go leads to buffer overflow. Remote exploitation of the attack is possible. The exploit… | |
| Aplazada | Alta (7.4) | 0.79% | — | Tenda F451AI | 20/4/2026 | 17/6/2026 | A vulnerability was determined in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter of the component httpd. Executing a manipulation of the argument page can lead to buffer overflow. The attack may be launched remotely. The exploit has been… | |
| Aplazada | Alta (7.4) | 0.79% | — | Tenda F451AI | 20/4/2026 | 17/6/2026 | A vulnerability was found in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipulation of the argument dips results in buffer overflow. The attack may be initiated remotely. The exploit has been made public and… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 13/4/2026 | 17/6/2026 | A vulnerability was detected in Tenda F451 1.0.0.7_cn_svn7958. The affected element is the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument wanmode/PPPOEPassword results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is now public and may… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 13/4/2026 | 17/6/2026 | A security vulnerability has been detected in Tenda F451 1.0.0.7_cn_svn7958. Impacted is the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 13/4/2026 | 17/6/2026 | A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A vulnerability was identified in Tenda F451 1.0.0.7_cn_svn7958. This affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A vulnerability was determined in Tenda F451 1.0.0.7. This vulnerability affects the function fromSafeMacFilter of the file /goform/SafeMacFilter of the component httpd. Executing a manipulation of the argument page/menufacturer can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit… | |
| Analizada | Alta (7.4) | 0.96% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A vulnerability was found in Tenda F451 1.0.0.7. This affects the function fromAddressNat of the file /goform/addressNat of the component httpd. Performing a manipulation of the argument entrys results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this issue is the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Such manipulation of the argument page leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A flaw has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function WrlclientSet of the file /goform/WrlclientSet of the component httpd. This manipulation of the argument GO causes stack-based buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 12/4/2026 | 17/6/2026 | A vulnerability was detected in Tenda F451 1.0.0.7. Affected is the function fromDhcpListClient of the file /goform/DhcpListClient of the component httpd. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 10/4/2026 | 17/6/2026 | A vulnerability was determined in Tenda F451 1.0.0.7. This affects the function fromP2pListFilter of the file /goform/P2pListFilter. This manipulation of the argument page causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 10/4/2026 | 17/6/2026 | A vulnerability was found in Tenda F451 1.0.0.7. Affected by this issue is the function formWrlExtraSet of the file /goform/WrlExtraSet. The manipulation of the argument GO results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 10/4/2026 | 17/6/2026 | A vulnerability has been found in Tenda F451 1.0.0.7. Affected by this vulnerability is the function fromSafeEmailFilter of the file /goform/SafeEmailFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public… | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 10/4/2026 | 17/6/2026 | A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /goform/RouteStatic. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been published and may be used. | |
| Analizada | Alta (7.4) | 0.95% | — | Tenda F451 Firmware | 9/4/2026 | 17/6/2026 | A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the file /goform/AdvSetWrlsafeset. Performing a manipulation of the argument mit_ssid results in stack-based buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used. | |
| Analizada | Alta (7.4) | 0.98% | — | Tenda F451 Firmware | 7/3/2026 | 17/6/2026 | A vulnerability was identified in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function formQuickIndex of the file /goform/QuickIndex. Such manipulation of the argument mit_linktype/PPPOEPassword leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit is publicly… | |
| Analizada | Crítica (9.3) | 0.99% | — | Canon Mf455dw FirmwareCanon Mf453dw FirmwareCanon Mf452dw FirmwareCanon Mf451dw Firmware+12 | 16/1/2026 | 17/6/2026 | Buffer overflow in XPS font parse processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in… | |
| Analizada | Crítica (9.3) | 0.92% | — | Canon Mf455dw FirmwareCanon Mf453dw FirmwareCanon Mf452dw FirmwareCanon Mf451dw Firmware+12 | 16/1/2026 | 17/6/2026 | Buffer overflow in Address Book attribute tag processing on Small Office Multifunction Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in… | |
| Analizada | Crítica (9.3) | 0.92% | — | Canon Mf656cdw FirmwareCanon Mf653cdw FirmwareCanon Mf652cw FirmwareCanon Mf1238 II Firmware+12 | 16/1/2026 | 17/6/2026 | Buffer overflow in XPS font fpgm data processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier… | |
| Analizada | Crítica (9.3) | 0.92% | — | Canon Mf455dw FirmwareCanon Mf453dw FirmwareCanon Mf452dw FirmwareCanon Mf451dw Firmware+12 | 16/1/2026 | 17/6/2026 | Buffer overflow in CPCA list processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in… |