Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.3) | 5.6% | — | Samsung Galaxy I9305 FirmwareArista C-250 FirmwareArista C-260 FirmwareArista C-230 Firmware+15 | 11/5/2021 | 17/6/2026 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfiltrate selected fragments. This vulnerability is exploitable when another device sends fragmented frames and the WEP,… | |
| Modificada | Media (6.5) | 3.5% | — | Samsung Galaxy I9305 FirmwareSiemens 6gk5763-1al00-7da0 FirmwareSiemens 6gk5766-1ge00-7da0 FirmwareSiemens 6gk5766-1ge00-7db0 Firmware+9 | 11/5/2021 | 17/6/2026 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and process them as full unfragmented frames. An adversary can abuse this to inject arbitrary network packets independent of the… | |
| Modificada | Media (6.5) | 4.9% | — | Samsung Galaxy I9305 FirmwareArista C-250 FirmwareArista C-260 FirmwareArista C-230 Firmware+14 | 11/5/2021 | 17/6/2026 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC1042 (i.e., LLC/SNAP) header for EAPOL. An adversary can abuse this to inject arbitrary network packets independent of the… |