Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2585▼ 303 respecto a la semana anterior
Críticas / altas1355▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.8) | 0.31% | — | Extremenetworks IQ EngineAI | 14/9/2026 | 22/9/2026 | Bonjour Gateway in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has an ah_bgd buffer overflow via ah_event_send. | |
| Aplazada | Alta (8.8) | 0.40% | — | Extremenetworks IQ EngineAI | 19/2/2025 | 17/6/2026 | Buffer Overflow vulnerability in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, allows an attacker to execute arbitrary code via the implementation of the ah_auth service | |
| Aplazada | Crítica (9.8) | 0.76% | — | Extremenetworks IQ EngineAI | 19/2/2025 | 17/6/2026 | Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has a buffer overflow. This issue arises from the ah_webui service, which listens on TCP port 3009 by default. | |
| Modificada | Crítica (9.8) | 1.6% | — | Extremenetworks IQ Engine | 4/10/2023 | 17/6/2026 | IQ Engine before 10.6r2 on Extreme Network AP devices has a Buffer Overflow. | |
| Modificada | Crítica (9.8) | 1.1% | — | Extremenetworks IQ Engine | 15/7/2023 | 17/6/2026 | IQ Engine before 10.6r1 on Extreme Network AP devices has a Buffer Overflow in the implementation of the CAPWAP protocol that may be exploited to obtain elevated privileges to conduct remote code execution. Access to the internal management interface/subnet is required to conduct the exploit. |