Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2617▼ 302 respecto a la semana anterior
Críticas / altas1346▲ 78 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)4.3%—Second Rule LLC IP3 Netaccess12/2/200716/6/2026
Directory traversal vulnerability in portalgroups/portalgroups/getfile.cgi in IP3 NetAccess before firmware 4.1.9.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.
ModificadaBaja (3.6)0.34%—IP3 Networks IP3 Netaccess 7526/4/200616/6/2026
The (1) shadow password file in na-img-4.0.34.bin for the IP3 Networks NetAccess NA75 has world readable permissions, which allows local users to view encrypted passwords; and the (2) NetAccess database file has world readable and writable permissions, which allows local users to view sensitive information and modify…
ModificadaAlta (7.5)1.5%—IP3 Networks IP3 Netaccess 7526/4/200616/6/2026
na-img-4.0.34.bin for the IP3 Networks NetAccess NA75 has a default username of admin and a default password of admin.
ModificadaMedia (4.6)0.65%—IP3 Networks IP3 Netaccess 7526/4/200616/6/2026
na-img-4.0.34.bin for the IP3 Networks NetAccess NA75 allows local users to gain Unix shell access via "`" (backtick) characters in the appliance's command line interface (CLI).
ModificadaAlta (7.5)1.4%—IP3 Networks IP3 NetaccessIP3 Networks IP3 Netaccess - HospitalityIP3 Networks IP3 Netaccess - Wireless Hotspots31/12/200416/6/2026
SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows remote attackers to bypass authentication via the (1) login or (2) password. NOTE: this issue was later reported to also affect firmware 4.0.34.