Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2585▼ 302 respecto a la semana anterior
Críticas / altas1355▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
–

16 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.4)0.80%—H3C Magic B1AI19/4/202617/6/2026
A vulnerability was detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function SetMobileAPInfoById of the file /goform/aspForm. Performing a manipulation of the argument param results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be…
AplazadaAlta (7.4)0.80%—H3C Magic B1AI19/4/202617/6/2026
A vulnerability has been found in H3C Magic B1 up to 100R004. The affected element is the function SetAPWifiorLedInfoById of the file /goform/aspForm. The manipulation of the argument param leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be…
AnalizadaAlta (7.4)1.1%—H3C Magic B1 Firmware8/3/202617/6/2026
A security vulnerability has been detected in H3C Magic B1 up to 100R004. Affected by this vulnerability is the function Edit_BasicSSID_5G of the file /goform/aspForm. Such manipulation of the argument param leads to buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may…
AplazadaAlta (7.4)0.53%—H3C Magic B1AI7/12/202517/6/2026
A weakness has been identified in H3C Magic B1 up to 100R004. The affected element is the function sub_44de0 of the file /goform/aspForm. This manipulation of the argument param causes buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be…
ModificadaCrítica (9.8)0.56%—H3C Magic B1st Firmware16/8/202417/6/2026
H3C Magic B1ST v100R012 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateSnat function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateMacClone function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the AddWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the Edit_BasicSSID_5G function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateWanParams function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.85%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)1.3%—H3C Magic B1st Firmware28/6/202317/6/2026
A stack overflow in the Edit_BasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
ModificadaAlta (7.5)0.91%—H3C Magic B1stw Firmware26/6/202317/6/2026
H3C Magic B1STW B1STV100R012 was discovered to contain a stack overflow via the function SetAPInfoById. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.