Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.9) | 0.19% | — | Macgregor Interschalt VDR G4E Firmware | 29/5/2026 | 22/7/2026 | Danelec MacGregor Voyage Data Recorder passwords are stored with a hashing method which limits password length and is susceptible to brute force attacks. | |
| Analizada | Media (5.9) | 0.23% | — | Macgregor Interschalt VDR G4E Firmware | 29/5/2026 | 21/7/2026 | An authenticated user can download a backup of the Danelec MacGregor Voyage Data Recorder device which includes account data and password hashes. | |
| Analizada | Alta (8.7) | 0.34% | — | Macgregor Interschalt VDR G4E Firmware | 29/5/2026 | 21/7/2026 | The Danelec MacGregor Voyage Data Recorder device includes a default username and password, with no enforced password change. | |
| Analizada | Alta (8.7) | 0.34% | — | Macgregor Interschalt VDR G4E Firmware | 29/5/2026 | 21/7/2026 | Danelec MacGregor Voyage Data Recorder includes default accounts with hard-coded credentials. | |
| Analizada | Media (6.9) | 0.60% | — | Macgregor Interschalt VDR G4E Firmware | 29/5/2026 | 20/7/2026 | The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password. | |
| Modificada | Media (5.3) | 1.7% | — | Macgregor Interschalt VDR G4E Firmware | 13/2/2017 | 17/6/2026 | An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to construct paths to files and directories without properly neutralizing special elements within the pathname that could allow an attacker to read files on the system, a Path Traversal. |