Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2783▲ 27 respecto a la semana anterior
Críticas / altas1477▲ 294 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 441 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.1) | 0.58% | — | Themetrex MaxifyAI | 5/3/2026 | 17/6/2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Maxify maxify allows PHP Local File Inclusion.This issue affects Maxify: from n/a through <= 1.0.16. | |
| Modificada | Media (5.3) | 0.54% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Arbitrary Files can be installed in the Setting Data Import function of Office / Small Office Multifunction Printers and Laser Printers(*). *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C… | |
| Modificada | Media (5.3) | 0.57% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Improper Authentication of RemoteUI of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger unauthorized access to the product. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan.… | |
| Modificada | Alta (7.5) | 0.61% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Unintentional change of settings during initial registration of system administrators which uses control protocols. The affected Office / Small Office Multifunction Printers and Laser Printers(*) may allow an attacker on the network segment to trigger unauthorized access to the product. *:Satera LBP660C Series/LBP620C… | |
| Modificada | Crítica (9.8) | 1.1% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in IPP sides attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series… | |
| Modificada | Crítica (9.8) | 1.1% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in IPP number-up attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series… | |
| Modificada | Crítica (9.8) | 1.2% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in NetBIOS QNAME registering and communication process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C… | |
| Modificada | Crítica (9.8) | 1.2% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in mDNS NSEC record registering process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C… | |
| Modificada | Crítica (9.8) | 1.1% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in the Address Book of Mobile Device function of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C… | |
| Modificada | Crítica (9.8) | 1.1% | — | Canon Mf642cdw FirmwareCanon Mf644cdw FirmwareCanon Mf741cdw FirmwareCanon Mf743cdw Firmware+41 | 11/5/2023 | 17/6/2026 | Buffer overflow in CPCA Resource Download process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series… | |
| Modificada | Crítica (9.8) | 8.9% | — | Themerex AddonsThemerex Ozeum-museumThemerex Chit Club-board GamesThemerex Yottis-simple Portfolio+59 | 10/3/2020 | 17/6/2026 | The ThemeREX Addons plugin before 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe sc parameter. |