Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.9) | 0.12% | — | Observerip Scan ToolAI | 26/4/2026 | 17/6/2026 | ObserverIP Scan Tool 1.4.0.1 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string in the IP input field. Attackers can paste a 2000-byte buffer of repeated characters into the IP field and trigger a search operation to cause an… | |
| Pendiente de análisis | Crítica (9.8) | 0.92% | — | Talend JobserverAITalend RuntimeAI | 14/4/2026 | 17/6/2026 | A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The attack vector is the JMX monitoring port of the Talend JobServer. The vulnerability can be mitigated for the Talend JobServer by requiring TLS client authentication for the… | |
| Modificada | Alta (7.5) | 1.1% | — | Auto-maskin RP 210e FirmwareAuto-maskin DCU 210e FirmwareAuto-maskin Marine PRO Observer | 23/3/2020 | 17/6/2026 | In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak. | |
| Modificada | Crítica (9.1) | 1.1% | — | Auto-maskin Rp210e FirmwareAuto-maskin DCU 210 FirmwareAuto-maskin Marine PRO Observer | 23/3/2020 | 17/6/2026 | In Auto-Maskin RP210E Versions 3.7 and prior, DCU210E Versions 3.7 and prior and Marine Observer Pro (Android App), the software contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak. | |
| Modificada | Alta (8.8) | 0.88% | — | Auto-maskin RP 210e FirmwareAuto-maskin DCU 210e FirmwareAuto-maskin Marine PRO Observer | 8/10/2018 | 17/6/2026 | The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App use an embedded webserver that uses unencrypted plaintext for the transmission of the administrator PIN Impact: An attacker once authenticated can change configurations, upload new configuration files, and upload executable code via file upload for… | |
| Modificada | Media (5.9) | 0.87% | — | Auto-maskin RP 210e FirmwareAuto-maskin DCU 210e FirmwareAuto-maskin Marine PRO Observer | 8/10/2018 | 17/6/2026 | The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The devices transmit process control information via unencrypted Modbus communications. Impact: An attacker can exploit… | |
| Modificada | Media (4.3) | 1.4% | — | Hitachi JP1 Integrated Management Service SupportHitachi Jp1/automatic JOB Management System 2-viewHitachi JOB Management Partner 1/automatic JOB Management System 2-viewHitachi JOB Management Partner 1/integrated Management-view+10 | 21/4/2010 | 16/6/2026 | Unspecified vulnerability in multiple versions of Hitachi JP1/Automatic Job Management System 2 - View, JP1/Integrated Management - View, and JP1/Cm2/SNMP System Observer, allows remote attackers to cause a denial of service ("abnormal" termination) via vectors related to the display of an "invalid GIF file." | |
| Modificada | Alta (10) | 14% | 💥 Exploit | Project-observer Observer | 29/9/2008 | 16/6/2026 | Observer 0.3.2.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter to (1) whois.php or (2) netcmd.php. | |
| Modificada | Media (5) | 1.6% | — | Hitachi Jp1-cm2-network Node ManagerHitachi Jp1-cm2-network Node Manager 250Hitachi JPI Automatic JOB Management System 2Hitachi JPI Performance Management+5 | 27/4/2006 | 16/6/2026 | Unspecified vulnerability in Hitachi JP1 products allow remote attackers to cause a denial of service (application stop or fail) via unexpected requests or data. |