Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2568▼ 334 respecto a la semana anterior
Críticas / altas1340▲ 73 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 434 respecto a la semana anterior
–

4 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.1)5.1%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
The NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allows remote authenticated users to obtain root privileges for writing to…
ModificadaAlta (7.3)1.1%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
Multiple stack-based buffer overflows in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allow remote attackers to obtain…
ModificadaAlta (7.3)5.2%—Meinberg NTP Server FirmwareMeinberg Ims-lantime M1000Meinberg Ims-lantime M3000Meinberg Ims-lantime M500+83/7/201617/6/2026
Stack-based buffer overflow in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, and LCES devices with firmware before 6.20.004 allows remote attackers to obtain sensitive…
ModificadaMedia (4.3)1.8%—Meinberg NTP Server FirmwareMeinberg Lantime M100Meinberg Lantime M200Meinberg Lantime M300+45/11/201417/6/2026
Cross-site scripting (XSS) vulnerability in Meinberg NTP Server firmware on LANTIME M-Series devices 6.15.019 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.