Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2568▼ 310 respecto a la semana anterior
Críticas / altas1351▲ 96 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (8.7)0.55%—Phoenixcontact Plcnext EngineerAI12/8/202629/9/2026
An unauthenticated denial-of-service vulnerability in the device's PLCnext Engineer communication interface allow an remote attacker to interrupt access via the client application. Successful exploitation prevents communication until the PLCnext service is manually restarted.
ModificadaMedia (6.5)0.31%—Phoenixcontact AXC F 1152 FirmwarePhoenixcontact AXC F 2152 FirmwarePhoenixcontact AXC F 3152 FirmwarePhoenixcontact BPC 9102s Firmware+514/12/202317/6/2026
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connected devices.
ModificadaAlta (8.8)0.74%—Phoenixcontact AXC F 1152 FirmwarePhoenixcontact AXC F 2152 FirmwarePhoenixcontact AXC F 3152 FirmwarePhoenixcontact BPC 9102s Firmware+514/12/202317/6/2026
A incorrect permission assignment for critical resource vulnerability in PLCnext products allows an remote attacker with low privileges to gain full access on the affected devices.
ModificadaCrítica (9.8)2.0%—Wibu Codemeter RuntimeTrumpf OseonTrumpf ProgrammingtubeTrumpf Teczonebend+2013/9/202317/6/2026
A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system.
ModificadaAlta (7.3)0.40%—Phoenixcontact Plcnext Engineer21/7/202017/6/2026
In PHOENIX CONTACT PLCnext Engineer version 2020.3.1 and earlier an improper path sanitation vulnerability exists on import of project files.