Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2838▼ 146 respecto a la semana anterior
Críticas / altas1377▲ 68 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)255▼ 268 respecto a la semana anterior
–

29 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.7)0.95%—Tattile Smart+ FirmwareTattile Tolling+ FirmwareTattile Smart+ Speed FirmwareTattile Smart+ Traffic Light Firmware+624/2/202617/6/2026
Tattile Smart+, Vega, and Basic device families firmware versions 1.181.5 and prior implement an authentication token (X-User-Token) with insufficient expiration. An attacker who obtains a valid token (for example via interception, log exposure, or token reuse on a shared system) can continue to authenticate to the…
AnalizadaCrítica (9.3)2.7%—Tattile Smart+ FirmwareTattile Tolling+ FirmwareTattile Smart+ Speed FirmwareTattile Smart+ Traffic Light Firmware+624/2/202617/6/2026
Tattile Smart+, Vega, and Basic device families firmware versions 1.181.5 and prior ship with default credentials that are not forced to be changed during installation or commissioning. An attacker who can reach the management interface can authenticate using the default credentials and gain administrative access,…
AnalizadaAlta (8.7)1.0%—Tattile Smart+ FirmwareTattile Tolling+ FirmwareTattile Smart+ Speed FirmwareTattile Smart+ Traffic Light Firmware+624/2/202617/6/2026
Tattile Smart+, Vega, and Basic device families firmware versions 1.181.5 and prior expose RTSP streams without requiring authentication. A remote attacker can connect to the RTSP service and access live video/audio streams without valid credentials, resulting in unauthorized disclosure of surveillance data.
ModificadaMedia (6.5)0.50%—Elecom Wrc-2533ghbk2-t FirmwareElecom Wrc-2533ghbk-i FirmwareElecom Wrc-1750ghbk2-i FirmwareElecom Wrc-1750ghbk-e Firmware+3016/11/202317/6/2026
Inadequate encryption strength vulnerability in multiple routers provided by ELECOM CO.,LTD. and LOGITEC CORPORATION allows a network-adjacent unauthenticated attacker to guess the encryption key used for wireless LAN communication and intercept the communication. As for the affected products/versions, see the…
ModificadaAlta (7.8)0.92%—Phicomm K2 Firmware25/8/202317/6/2026
Phicomm k2 v22.6.529.216 was discovered to contain a command injection vulnerability via the function luci.sys.call.
ModificadaCrítica (9.8)1.5%—Elecom Wrc-f1167acf FirmwareElecom Wrc-1750ghbk FirmwareElecom Wrc-1167ghbk2 FirmwareElecom Wrc-1750ghbk2-i Firmware+118/8/202317/6/2026
OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-F1167ACF all versions, WRC-1750GHBK all versions, WRC-1167GHBK2 all versions,…
ModificadaAlta (7.5)0.45%—Phicomm K2 Firmware27/1/202317/6/2026
Phicomm K2G v22.6.3.20 was discovered to store the root and admin passwords in plaintext.
ModificadaAlta (7.8)0.90%—Phicomm K2 Firmware27/1/202317/6/2026
Phicomm K2G v22.6.3.20 was discovered to contain a command injection vulnerability via the autoUpTime parameter in the automatic upgrade function.
ModificadaAlta (7.5)0.44%—Phicomm K2 Firmware27/1/202317/6/2026
Phicomm K2 v22.6.534.263 was discovered to store the root and admin passwords in plaintext.
ModificadaAlta (7.8)0.90%—Phicomm K2 Firmware27/1/202317/6/2026
Phicomm K2 v22.6.534.263 was discovered to contain a command injection vulnerability via the autoUpTime parameter in the automatic upgrade function.
ModificadaCrítica (9.8)33%—Wavlink Wl-wn535k2 FirmwareWavlink Wl-wn535k3 Firmware20/7/202217/6/2026
A vulnerability was found in WAVLINK WN535K2 and WN535K3 and classified as critical. This issue affects some unknown processing of the file /cgi-bin/touchlist_sync.cgi. The manipulation of the argument IP leads to os command injection. The exploit has been disclosed to the public and may be used.
ModificadaCrítica (9.8)79%—Wavlink Wl-wn535k2 FirmwareWavlink Wl-wn535k3 Firmware20/7/202217/6/2026
A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/nightled.cgi. The manipulation of the argument start_hour leads to os command injection. The exploit has been disclosed to the public and may be used.
ModificadaCrítica (9.8)30%—Wavlink Wl-wn535k2 FirmwareWavlink Wl-wn535k3 Firmware20/7/202217/6/2026
A vulnerability, which was classified as critical, was found in WAVLINK WN535K2 and WN535K3. This affects an unknown part of the file /cgi-bin/mesh.cgi?page=upgrade. The manipulation of the argument key leads to os command injection. The exploit has been disclosed to the public and may be used.
ModificadaAlta (8.4)0.77%—Phicomm K2 FirmwarePhicomm K3 FirmwarePhicomm K3C FirmwarePhicomm K2G Firmware+110/3/202217/6/2026
A null byte interaction error has been discovered in the code that the telnetd_startup daemon uses to construct a pair of ephemeral passwords that allow a user to spawn a telnet service on the router, and to ensure that the telnet service persists upon reboot. By means of a crafted exchange of UDP packets, an…
ModificadaAlta (8.1)0.99%—Phicomm K2 FirmwarePhicomm K3 FirmwarePhicomm K3C FirmwarePhicomm K2G Firmware+110/3/202217/6/2026
The use of the RSA algorithm without OAEP, or any other padding scheme, in telnetd_startup, allows an unauthenticated attacker on the local area network to achieve a significant degree of control over the "plaintext" to which an arbitrary blob of ciphertext will be decrypted by OpenSSL's RSA_public_decrypt() function.…
ModificadaAlta (7.8)0.33%—Phicomm K2 FirmwarePhicomm K3C Firmware10/3/202217/6/2026
Use of a hard-coded cryptographic key pair by the telnetd_startup service allows an attacker on the local area network to obtain a root shell on the device over telnet. The builds of telnetd_startup included in the version 22.5.9.163 of the K2 firmware, and version 32.1.15.93 of the K3C firmware (possibly amongst many…
ModificadaMedia (5.3)1.1%—Phicomm K2 FirmwarePhicomm K3 FirmwarePhicomm K3C FirmwarePhicomm K2G Firmware+110/3/202217/6/2026
Improper access control on the LocalMACConfig.asp interface allows an unauthenticated remote attacker to add (or remove) client MAC addresses to (or from) a list of banned hosts. Clients with those MAC addresses are then prevented from accessing either the WAN or the router itself.
ModificadaAlta (7.4)1.5%—Phicomm K2 FirmwarePhicomm K3 FirmwarePhicomm K3C FirmwarePhicomm K2G Firmware+110/3/202217/6/2026
Improper access control on the LocalClientList.asp interface allows an unauthenticated remote attacker to obtain sensitive information concerning devices on the local area network, including IP and MAC addresses. Improper access control on the wirelesssetup.asp interface allows an unauthenticated remote attacker to…
ModificadaMedia (6.8)0.37%—Phicomm K2 FirmwarePhicomm K3 FirmwarePhicomm K3C FirmwarePhicomm K2G Firmware+110/3/202217/6/2026
Improper physical access control and use of hard-coded credentials in /etc/passwd permits an attacker with physical access to obtain a root shell via an unprotected UART port on the device. The same port exposes an unauthenticated Das U-Boot BIOS shell.
ModificadaAlta (7.5)1.3%—Peplink Balance 20X FirmwarePeplink Balance 310x FirmwarePeplink MBX FirmwarePeplink EPX Firmware+517/10/202017/6/2026
Peplink Balance before 8.1.0rc1 allows an unauthenticated attacker to download PHP configuration files (/filemanager/php/connector.php) from Web Admin.
ModificadaMedia (5.3)1.2%—Coinkite Coldcard MK1 FirmwareCoinkite Coldcard MK2 Firmware31/10/201917/6/2026
On Coldcard MK1 and MK2 devices, a side channel for the row-based OLED display was found. The power consumption of each row-based display cycle depends on the number of illuminated pixels, allowing a partial recovery of display contents. For example, a hardware implant in the USB cable might be able to leverage this…
ModificadaMedia (5.3)1.3%—Honeywell Ip-ak2 Firmware25/10/201917/6/2026
In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow remote attackers to obtain web configuration data, which can be accessed without authentication over the network.
ModificadaAlta (7.8)0.41%—Enttec Datagate MK2 FirmwareEnttec Storm 24 FirmwareEnttec Pixelator FirmwareEnttec E-streamer MK2 Firmware7/6/201917/6/2026
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They replace secure and protected directory permissions (set as default by the underlying operating system) with highly insecure read, write, and execute directory permissions for all…
ModificadaCrítica (9.8)2.0%—Enttec Datagate MK2 FirmwareEnttec Storm 24 FirmwareEnttec Pixelator FirmwareEnttec E-streamer MK2 Firmware7/6/201917/6/2026
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They include a hard-coded SSH backdoor for remote SSH and SCP access as the root user. A command in the relocate and relocate_revB scripts copies the hardcoded key to the root user's…
ModificadaAlta (8.8)1.8%—Enttec Datagate MK2 FirmwareEnttec Storm 24 FirmwareEnttec Pixelator FirmwareEnttec E-streamer MK2 Firmware7/6/201917/6/2026
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They allow high-privileged root access by www-data via sudo without requiring appropriate access control. (Furthermore, the user account that controls the web application service is…