Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2528▼ 418 respecto a la semana anterior
Críticas / altas1311▲ 21 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
15 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.54% | — | Loytec LIP Me201cAILoytec L INXAILoytec L GateAILoytec L ROCAI+4 | 24/7/2026 | 27/7/2026 | Out-of-bounds Read (CWE-125) in BACnet packet parsing (`bacdt_datetime_to_tod`) in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.18 on LINX-A64 allows an unauthenticated remote attacker to crash `linx_a64.exe` and ultimately reboot the device via a malformed BACnet… | |
| Aplazada | Media (6.6) | 0.54% | — | Loytec Lip-me201cAILoytec L-inxAILoytec L-gateAILoytec L-rocAI+5 | 24/7/2026 | 27/7/2026 | Unchecked input for loop condition (CWE-606) in the SNMP agent in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an unauthenticated remote attacker to cause persistent denial of service (CPU exhaustion) via a crafted SNMP GETNEXT request with a large OID… | |
| Aplazada | Baja (3.8) | 0.16% | — | Loytec Lip-me201cAILoytec L-inxAILoytec L-gateAILoytec L-rocAI+4 | 24/7/2026 | 27/7/2026 | Stack-based Buffer Overflow (CWE-121) in `/usr/bin/ltsudo` `cmd_ipaddr_conflict` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a `superadmin`-group attacker to trigger a SUID-root process abort or potentially elevate privileges via an overly long… | |
| Aplazada | Alta (8.4) | 0.19% | — | Loytec Lip-me201cAILoytec L-inxAILoytec L-gateAILoytec L-rocAI+5 | 24/7/2026 | 27/7/2026 | Improper Authentication (CWE-287) in the PAM configuration in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a local attacker to authenticate as a uid=0 account without a password and obtain a root shell via an `/etc/passwd` entry with an empty password field. | |
| Aplazada | Crítica (9.2) | 0.18% | — | Loytec L-inxAILoytec L-gateAILoytec L-rocAILoytec L-iobAI+3 | 24/7/2026 | 27/7/2026 | Improper Link Resolution (CWE-59) in `/usr/bin/larm_starter` in Loytec L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an authenticated `larmapp` attacker to make `/etc/passwd` writable by the `larmapp` group (leading to root privilege escalation) via a symlink attack on… | |
| Aplazada | Alta (8.4) | 0.15% | — | Loytec Lip-me201cAILoytec L-inxAILoytec L-gateAILoytec L-rocAI+5 | 24/7/2026 | 27/7/2026 | Improper Privilege Management (CWE-269) in `/usr/bin/ltsudo` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a `superadmin`-group attacker to reset the password of any LARM user (including the `larmapp` service account) via the `set-passwd` subcommand. | |
| Aplazada | Alta (8.7) | 0.61% | — | Loytec Lip-me201cAILoytec L-inxAILoytec L-gateAILoytec L-rocAI+4 | 24/7/2026 | 27/7/2026 | Stored Cross-Site Scripting (CWE-79) in the OPC XML-DA server statistics in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an unauthenticated remote attacker to execute arbitrary JavaScript in an administrator's browser (session hijacking, credential theft,… | |
| Modificada | Media (5.3) | 0.50% | — | Cellinx NVT WEB Server | 8/2/2024 | 17/6/2026 | An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configuration information via a crafted POST request. | |
| Modificada | Alta (7.5) | 0.76% | — | Loytec L-inx Configurator | 30/11/2023 | 17/6/2026 | LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. An admin credential is passed as a value of URL parameters without encryption, so it allows remote attackers to steal the password and gain full control of Loytec device configuration. | |
| Modificada | Alta (7.5) | 1.5% | — | Loytec L-inx Configurator | 30/11/2023 | 17/6/2026 | LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. Cleartext storage of credentials allows remote attackers to disclose admin password and bypass an authentication to login Loytec device. | |
| Modificada | Alta (7.5) | 1.4% | — | Loytec L-inx Configurator | 30/11/2023 | 17/6/2026 | LOYTEC electronics GmbH LINX Configurator (all versions) uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the password and gain full control of Loytec device configuration. | |
| Modificada | Alta (7.5) | 2.4% | — | Cellinx NVT WEB Server | 22/2/2023 | 17/6/2026 | Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi. | |
| Modificada | Media (6.5) | 0.71% | — | Cellinx NVT - IP PTZ Camera Firmware | 18/7/2022 | 17/6/2026 | Allows a remote user to read files on the camera's OS "GetFileContent.cgi". Reading arbitrary files on the camera's OS as root user. | |
| Modificada | Alta (8.8) | 0.54% | — | Cellinx NVT - IP PTZ Camera Firmware | 18/7/2022 | 17/6/2026 | On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera. | |
| Modificada | Crítica (9.8) | 2.9% | — | Cellinx NVT WEB Server | 6/11/2020 | 17/6/2026 | Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side. |