Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.1)1.0%—Owllabs Meeting OWL PRO Firmware2/6/202217/6/2026
Owl Labs Meeting Owl 5.2.0.15 does not require a password for Bluetooth commands, because only client-side authentication is used.
ModificadaAlta (8.8)0.88%—Owllabs Meeting OWL PRO Firmware2/6/202217/6/2026
Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be found in Bluetooth broadcast data.
ModificadaMedia (6.5)0.89%—Owllabs Meeting OWL PRO Firmware2/6/202217/6/2026
Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.
ModificadaAlta (7.4)3.4%—Owllabs Meeting OWL PRO Firmware2/6/202217/6/2026
Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.
ModificadaMedia (6.5)0.84%—Owllabs Meeting OWL PRO Firmware2/6/202217/6/2026
Owl Labs Meeting Owl 5.2.0.15 allows attackers to retrieve the passcode hash via a certain c 10 value over Bluetooth.
Orbitaley — Vulnerabilidades