Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2904▼ 176 respecto a la semana anterior
Críticas / altas1294▼ 55 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.2) | 0.54% | — | LSC Indoor CameraAI | 27/3/2026 | 17/6/2026 | A buffer overflow vulnerability exists in the ONVIF GetStreamUri function of LSC Indoor Camera V7.6.32. The application fails to validate the length of the Protocol parameter inside the Transport element. By sending a specially crafted SOAP request containing an oversized protocol string, an attacker can overflow the… | |
| Analizada | Alta (8.8) | 0.71% | — | Wyze CAM V3 FirmwareRoku Indoor Camera SE FirmwareOwletcare CAM FirmwareOwletcare CAM 2 Firmware+1 | 15/5/2024 | 17/6/2026 | ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an unexpected PSK identity | |
| Analizada | Media (6.5) | 0.33% | — | Wyze CAM V3 FirmwareRoku Indoor Camera SE FirmwareOwletcare CAM FirmwareOwletcare CAM 2 Firmware+1 | 15/5/2024 | 17/6/2026 | ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server. | |
| Analizada | Alta (8.8) | 1.0% | — | Wyze CAM V3 FirmwareRoku Indoor Camera SE FirmwareThroughtek Kalay Platform | 15/5/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the message parsing functionality of the Roku Indoor Camera SE version 3.0.2.4679 and Wyze Cam v3 version 4.36.11.5859. A specially crafted message can lead to stack-based buffer overflow. An attacker can make authenticated requests to trigger this vulnerability. | |
| Modificada | Media (6.7) | 0.85% | — | Netatmo Smart Indoor Camera Firmware | 23/4/2020 | 17/6/2026 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in firmware versions prior to x.xx of Netatmo Smart Indoor Camera allows an attacker to execute commands on the device. This issue affects: Netatmo Smart Indoor Camera version and prior versions. | |
| Modificada | Crítica (9.8) | 1.9% | — | Bosch 360-indoor Camera FirmwareBosch Eyes Outdoor Camera Firmware | 19/12/2018 | 17/6/2026 | An issue was discovered in several Bosch Smart Home cameras (360 degree indoor camera and Eyes outdoor camera) with firmware before 6.52.4. A malicious client could potentially succeed in the unauthorized execution of code on the device via the network interface, because there is a buffer overflow in the RCP+ parser… | |
| Modificada | Crítica (9.8) | 26% | — | Foscam C1 HD Indoor Camera Firmware | 21/6/2017 | 17/6/2026 | An exploitable stack-based buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera. A specially crafted http request can cause a stack-based buffer overflow resulting in overwriting arbitrary data on the stack frame. An attacker can simply send an http request to the… |