Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

7 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.8)1.2%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary OS command on the affected product.
ModificadaAlta (8.1)0.81%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Server-side request forgery vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to send an arbitrary HTTP request (GET) from the affected product.
AnalizadaMedia (6.5)0.89%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Path traversal vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to obtain an arbitrary file in the affected product.
ModificadaCrítica (9.3)0.79%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the management page of the affected product.
ModificadaMedia (6.5)0.36%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Cross-site request forgery vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a remote unauthenticated attacker to change the product settings.
ModificadaMedia (6.5)0.39%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Improper access control vulnerability exists in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier, which may allow a network-adjacent unauthenticated attacker to obtain a username and its hashed password displayed on the management page of the affected product.
ModificadaAlta (8.8)0.52%—Sharp Jh-rvb1 FirmwareSharp Jh-rv11 Firmware14/2/202417/6/2026
Improper authentication vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to access the affected product without authentication.