Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.46% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 21/2/2026 | 17/6/2026 | A vulnerability has been found in feng_ha_ha/megagao ssm-erp and production_ssm up to 4288d53bd35757b27f2d070057aefb2c07bdd097. This affects the function pictureDelete of the file PictureController.java. Such manipulation of the argument picName leads to path traversal. The attack can be launched remotely. The exploit… | |
| Aplazada | Baja (2.1) | 0.46% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 21/2/2026 | 17/6/2026 | A flaw has been found in feng_ha_ha/megagao ssm-erp and production_ssm up to 4288d53bd35757b27f2d070057aefb2c07bdd097. The impacted element is the function deleteFile of the file FileServiceImpl.java. This manipulation causes path traversal. The attack can be initiated remotely. The exploit has been published and may… | |
| Aplazada | Baja (2.1) | 0.36% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 21/2/2026 | 17/6/2026 | A security vulnerability has been detected in feng_ha_ha/megagao ssm-erp and production_ssm up to 4288d53bd35757b27f2d070057aefb2c07bdd097. Impacted is an unknown function of the file EmployeeController.java. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit… | |
| Aplazada | Media (5.3) | 0.32% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 16/5/2025 | 17/6/2026 | A vulnerability classified as critical has been found in feng_ha_ha/megagao ssm-erp and production_ssm 1.0. This affects the function uploadPicture of the file PictureServiceImpl.java. The manipulation of the argument File leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has… | |
| Aplazada | Media (5.3) | 0.49% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 11/5/2025 | 17/6/2026 | A vulnerability was found in feng_ha_ha/megagao ssm-erp and production_ssm 1.0. It has been declared as problematic. Affected by this vulnerability is the function handleFileDownload of the file FileController.java of the component File Handler. The manipulation leads to path traversal. The attack can be launched… | |
| Aplazada | Media (5.3) | 0.33% | — | Feng HA HA Megagao Ssm-erpAIMegagao Production SSMAI | 6/5/2025 | 17/6/2026 | A vulnerability was found in feng_ha_ha/megagao ssm-erp and production_ssm up to 0.0.1. It has been classified as critical. This affects the function uploadFile of the file src/main/java/com/megagao/production/ssm/service/impl/FileServiceImpl.java. The manipulation of the argument uploadFile leads to unrestricted… |