Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2567▼ 333 respecto a la semana anterior
Críticas / altas1341▲ 75 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 434 respecto a la semana anterior
68 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.2% | — | Softwareag Quartz | 28/7/2023 | 17/6/2026 | quartz-jobs 2.3.2 and below was discovered to contain a code injection vulnerability in the component org.quartz.jobs.ee.jms.SendQueueMessageJob.execute. This vulnerability is exploited via passing an unchecked argument. NOTE: this is disputed by multiple parties because it is not plausible that untrusted user input… | |
| Modificada | Crítica (9.8) | 6.0% | — | FreshtomatoSiretta Quartz-gold Firmware | 30/1/2023 | 17/6/2026 | An OS command injection vulnerability exists in the httpd logs/view.cgi functionality of FreshTomato 2022.5. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 2.1% | — | FreshtomatoSiretta Quartz-gold Firmware | 30/1/2023 | 17/6/2026 | A directory traversal vulnerability exists in the httpd update.cgi functionality of FreshTomato 2022.5. A specially crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 3.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 3.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's… | |
| Modificada | Crítica (9.8) | 1.5% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the m2m DELETE_FILE cmd functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to a heap buffer overflow. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Media (6.5) | 1.9% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | A directory traversal vulnerability exists in the m2m DELETE_FILE cmd functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary file deletion. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 2.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.4% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 2.2% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Crítica (9.8) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Crítica (9.8) | 1.8% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Crítica (9.8) | 1.8% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Crítica (9.8) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Crítica (9.8) | 1.7% | — | Siretta Quartz-gold Firmware | 26/1/2023 | 17/6/2026 | Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer… |