Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2950▲ 8 respecto a la semana anterior
Críticas / altas1450▲ 184 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.94% | — | EMC LifelineIomega Home Media Network Hard DriveIomega IconnectIomega Storcenter | 16/8/2012 | 16/6/2026 | The Iomega Home Media Network Hard Drive with EMC Lifeline firmware before 2.104, Home Media Network Hard Drive Cloud Edition with EMC Lifeline firmware before 3.2.3.15290, iConnect with EMC Lifeline firmware before 2.5.26.18966, and StorCenter with EMC Lifeline firmware before 2.0.18.23122, 2.1.x before 2.1.42.18967,… | |
| Modificada | Crítica (9.8) | 23% | — | Iomega Storcenter PRO Firmware | 8/7/2009 | 16/6/2026 | cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote attackers to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter. | |
| Modificada | Media (5) | 1.3% | — | Iomega NAS | 31/12/2002 | 16/6/2026 | Iomega NAS A300U uses cleartext LANMAN authentication when mounting CIFS/SMB drives, which allows remote attackers to perform a man-in-the-middle attack. | |
| Modificada | Alta (7.5) | 1.2% | — | Iomega NAS A300u Firmware | 31/12/2002 | 16/6/2026 | The Network Attached Storage (NAS) Administration Web Page for Iomega NAS A300U transmits passwords in cleartext, which allows remote attackers to sniff the administrative password. | |
| Modificada | Media (4.6) | 0.31% | — | Iomega Network Attached Storage | 31/12/2002 | 16/6/2026 | Iomega Network Attached Storage (NAS) A300U, and possibly other models, does not allow the FTP service to be disabled, which allows local users to access home directories via FTP even when access to all shared directories have been disabled. | |
| Modificada | Media (4.6) | 0.35% | — | Iomega ZIP 100 MB Drive | 21/12/2001 | 25/9/2026 | ZIP drive for Iomega ZIP-100 disks allows attackers with physical access to the drive to bypass password protection by inserting a known disk with a known password, waiting for the ZIP drive to power down, manually replacing the known disk with the target disk, and using the known password to access the target disk. | |
| Modificada | Alta (7.2) | 1.0% | — | Iomega Jazip | 12/3/2001 | 16/6/2026 | Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environmental variable. |