Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 237 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.1) | 0.52% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 17/12/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200, and MSG2300 v3.90. The component affected by this issue is /upload_sysconfig.php on the web interface. By crafting a suitable form name, arbitrary files can be uploaded, potentially leading to unauthorized access to server permissions. | |
| Analizada | Crítica (9.8) | 0.60% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 17/12/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200, and MSG2300 3.90. The component affected by this issue is /upload_ipslib.php on the web interface. By crafting a suitable form name, arbitrary files can be uploaded. | |
| Analizada | Media (6.3) | 0.24% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 17/12/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200, and MSG2300 3.90. The component affected by this issue is /upload_sfmig.php on the web interface. By crafting a suitable form name, arbitrary files can be uploaded, potentially leading to unauthorized access to server permissions. | |
| Analizada | Crítica (9.1) | 0.52% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 17/12/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200, and MSG2300 3.90. The component affected by this issue is /upload_netaction.php on the web interface. By crafting a suitable form name, arbitrary files can be uploaded, potentially leading to unauthorized access to server permissions. | |
| Analizada | Media (5.3) | 25% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 5/8/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been rated as critical. This issue affects the function sslvpn_config_mod of the file /vpn/vpn_template_style.php of the component Web Interface. The manipulation of the argument template/stylenum leads to os command injection.… | |
| Analizada | Media (5.3) | 25% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 5/8/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been declared as critical. This vulnerability affects the function sslvpn_config_mod of the file /vpn/list_vpn_web_custom.php of the component Web Interface. The manipulation of the argument template/stylenum leads to os command… | |
| Analizada | Media (5.3) | 25% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 5/8/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been classified as critical. This affects the function sslvpn_config_mod of the file /vpn/list_service_manage.php of the component Web Interface. The manipulation of the argument template/stylenum leads to os command injection.… | |
| Analizada | Media (5.3) | 23% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 5/8/2024 | 17/6/2026 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90 and classified as critical. Affected by this issue is the function sslvpn_config_mod of the file /vpn/list_ip_network.php of the component Web Interface. The manipulation of the argument template/stylenum leads to os command injection.… | |
| Modificada | Media (5.3) | 93% | — | Raisecom Msg2300 FirmwareRaisecom Msg2100e FirmwareRaisecom Msg2200 FirmwareRaisecom Msg1200 Firmware | 26/7/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. This affects an unknown part of the file list_base_config.php of the component Web Interface. The manipulation of the argument template leads to os command injection. It is possible to initiate the… |