Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3023▼ 71 respecto a la semana anterior
Críticas / altas1419▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)2.4%—Meinbergglobal Lantime M300 FirmwareMeinbergglobal Lantime M1000 Firmware20/1/202017/6/2026
Meinberg Lantime M300 and M1000 devices allow attackers (with privileges to configure a device) to execute arbitrary OS commands by editing the /config/netconf.cmd script (aka Extended Network Configuration). Note: According to the description, the vulnerability requires a fully authenticated super-user account using…
ModificadaAlta (8.1)5.1%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
The NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allows remote authenticated users to obtain root privileges for writing to…
ModificadaAlta (7.3)1.1%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
Multiple stack-based buffer overflows in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allow remote attackers to obtain…
ModificadaAlta (7.3)5.2%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
Stack-based buffer overflow in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allows remote attackers to obtain sensitive…
ModificadaMedia (4.3)1.8%—Meinberg NTP Server FirmwareMeinberg Lantime M100Meinberg Lantime M200Meinberg Lantime M300+45/11/201417/6/2026
Cross-site scripting (XSS) vulnerability in Meinberg NTP Server firmware on LANTIME M-Series devices 6.15.019 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.