Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.5)0.46%—Inhandnetworks Ir915l-fq39-s FirmwareInhandnetworks Ir912l-fq58 Firmware18/6/202622/6/2026
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a buffer overflow vulnerability in the device registration function. This vulnerability could allow an attacker to cause a denial of service attack on the remote target device.
AnalizadaCrítica (9.8)2.3%—Inhandnetworks Ir915l-fq39-s FirmwareInhandnetworks Ir912l-fq58 Firmware18/6/202622/6/2026
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the file upload function. The vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
AnalizadaCrítica (9.8)2.3%—Inhandnetworks Ir915l-fq39-s FirmwareInhandnetworks Ir912l-fq58 Firmware18/6/202622/6/2026
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python application export function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
AnalizadaCrítica (9.8)2.3%—Inhandnetworks Ir915l-fq39-s FirmwareInhandnetworks Ir912l-fq58 Firmware18/6/202622/6/2026
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the log viewing function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
AnalizadaCrítica (9.8)2.3%—Inhandnetworks Ir915l-fq39-s FirmwareInhandnetworks Ir912l-fq58 Firmware18/6/202622/6/2026
InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python configuration function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.
Orbitaley — Vulnerabilidades