Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2952▲ 10 respecto a la semana anterior
Críticas / altas1451▲ 185 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.9) | 0.16% | — | Siemens Sipass Integrated Ac5102 (acc-g2) FirmwareSiemens Sipass Integrated Acc-ap Firmware | 23/5/2025 | 17/6/2026 | A vulnerability has been identified in Building X - Security Manager Edge Controller (ACC-AP) (All versions). Affected devices do not properly check the integrity of firmware updates. This could allow a local attacker to upload a maliciously modified firmware onto the device. In a second scenario, a remote attacker… | |
| Analizada | Crítica (9.4) | 0.50% | — | Siemens Sipass Integrated Ac5102 (acc-g2) FirmwareSiemens Sipass Integrated Acc-ap Firmware | 11/3/2025 | 17/6/2026 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-AP (All versions < V6.4.9). Affected devices improperly sanitize input for the pubkey endpoint of the REST API. This could allow an authenticated remote administrator to escalate privileges by… | |
| Analizada | Crítica (9.3) | 0.18% | — | Siemens Sipass Integrated Ac5102 (acc-g2) FirmwareSiemens Sipass Integrated Acc-ap Firmware | 11/3/2025 | 17/6/2026 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-AP (All versions < V6.4.9). Affected devices improperly sanitize user input for specific commands on the telnet command line interface. This could allow an authenticated local administrator to… | |
| Aplazada | Media (6.9) | 0.45% | — | Sipass Integrated Ac5102AISipass Integrated Acc-apAI | 11/3/2025 | 17/6/2026 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.8), SiPass integrated ACC-AP (All versions < V6.4.8). Affected devices expose several MQTT URLs without authentication. This could allow an unauthenticated remote attacker to access sensitive data. | |
| Modificada | Alta (7.8) | 0.23% | — | Siemens Sipass Integrated Acc-ap FirmwareSiemens Sipass Integrated Ac5102 (acc-g2) Firmware | 14/2/2023 | 17/6/2026 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V2.85.44), SiPass integrated ACC-AP (All versions < V2.85.43). Affected devices improperly sanitize user input on the telnet command line interface. This could allow an authenticated user to escalate privileges by injecting… |