Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.89% | — | Moxa Oncell G3100v2 FirmwareMoxa Oncell G3111 FirmwareMoxa Oncell G3151 FirmwareMoxa Oncell G3211 Firmware+1 | 21/3/2019 | 17/6/2026 | Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker to execute arbitrary script code in the user’s browser within the trust relationship between their browser and the… | |
| Modificada | Baja (3.3) | 0.30% | — | Moxa Oncell G3001 FirmwareMoxa Oncell G3100v2 Firmware | 24/8/2016 | 17/6/2026 | Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 use cleartext password storage, which makes it easier for local users to obtain sensitive information by reading a configuration file. | |
| Modificada | Crítica (9.8) | 4.0% | — | Moxa Oncell G3001 FirmwareMoxa Oncell G3100v2 Firmware | 24/8/2016 | 17/6/2026 | Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack. |