Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 69 respecto a la semana anterior
Críticas / altas1419▲ 52 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.5) | 0.39% | — | Ankaref Innovation AND Technology INC LibridAIAnkaref Innovation AND Technology INC LibrefAI | 10/9/2026 | 23/9/2026 | Weak Password Recovery Mechanism for Forgotten Password vulnerability in Ankaref Innovation and Technology Inc. LIBRID/LIBREF allows Password Recovery Exploitation. This issue affects LIBRID/LIBREF: from 2.01.0.2183 before 18.9.26.2319. | |
| Aplazada | Media (5.4) | 0.16% | — | Ankaref Innovation AND Technology INC LibridAI | 10/9/2026 | 23/9/2026 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc. LIBRID/LIBREF allows Stored XSS. This issue affects LIBRID/LIBREF: from 2.01.0.2183 before 18.9.26.2319. | |
| Aplazada | Media (5.4) | 0.16% | — | Ankaref Innovation AND Technology INC LibridAI | 10/9/2026 | 23/9/2026 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ankaref Innovation and Technology Inc. LIBRID/LIBREF allows Stored XSS. This issue affects LIBRID/LIBREF: from 2.01.0.2183 before 18.9.26.2319. | |
| Modificada | Alta (8.8) | 0.45% | — | Philips Intellibridge Ec40 FirmwarePhilips Intellibridge Ec80 Firmware | 27/12/2021 | 17/6/2026 | The standard access path of the IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) requires authentication, but the product has an alternate path or channel that does not require authentication. | |
| Modificada | Alta (8.8) | 0.27% | — | Philips Intellibridge Ec40 FirmwarePhilips Intellibridge Ec80 Firmware | 27/12/2021 | 17/6/2026 | IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) contains hard-coded credentials, such as a password or a cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. | |
| Modificada | Media (4.5) | 0.52% | — | Philips Intellibridge Enterprise | 11/6/2020 | 17/6/2026 | Philips IntelliBridge Enterprise (IBE), Versions B.12 and prior, IntelliBridge Enterprise system integration with SureSigns (VS4), EarlyVue (VS30) and IntelliVue Guardian (IGS). Unencrypted user credentials received in the IntelliBridge Enterprise (IBE) are logged within the transaction logs, which are secured behind… | |
| Modificada | Media (6.5) | 0.33% | — | Philips Intellibridge Ec40 FirmwarePhilips Intellibridge Ec80 Firmware | 26/11/2019 | 17/6/2026 | In Philips IntelliBridge EC40 and EC80, IntelliBridge EC40 Hub all versions, and IntelliBridge EC80 Hub all versions, the SSH server running on the affected products is configured to allow weak ciphers. This could enable an unauthorized attacker with access to the network to capture and replay the session and gain… |