Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2860▼ 336 respecto a la semana anterior
Críticas / altas1383▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 214 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)5.5%—Billion 5200w-t FirmwareZyxel P660hn-t1a V2 FirmwareZyxel P660hn-t1a V1 Firmware2/5/201917/6/2026
The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passwords, including a hardcoded service account with the username true and password true. These accounts can be used to login to the web interface, exploit authenticated command…
ModificadaAlta (8.8)22%💥 ExploitBillion 5200w-t FirmwareZyxel P660hn-t1a V2 FirmwareZyxel P660hn-t1a V1 Firmware2/5/201917/6/2026
The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Setting function, which is only accessible by an authenticated user. The vulnerability is in the tools_time.asp page and can be exploited through the uiViewSNTPServer parameter.…
ModificadaCrítica (9.8)23%💥 ExploitBillion 5200w-t FirmwareZyxel P660hn-t1a V2 FirmwareZyxel P660hn-t1a V1 Firmware2/5/201917/6/2026
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user accounts with default passwords, including two hardcoded service accounts: one with the username true and password true, and another with the username supervisor and password zyad1234. These accounts can be used to login to…
ModificadaAlta (8.8)24%💥 ExploitBillion 5200w-t FirmwareZyxel P660hn-t1a V2 FirmwareZyxel P660hn-t1a V1 Firmware2/5/201917/6/2026
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is only accessible by an authenticated user. The vulnerability is in the logSet.asp page and can be exploited through the ServerIP parameter.…
AnalizadaCrítica (9.8)94%⚠ Explotación activa💥 ExploitBillion 5200w-t FirmwareZyxel P660hn-t1a V2 FirmwareZyxel P660hn-t1a V1 Firmware2/5/201917/6/2026
The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is accessible by an unauthenticated user. The vulnerability is in the ViewLog.asp page and can be exploited through the…
Orbitaley — Vulnerabilidades