Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 166 respecto a la semana anterior
Críticas / altas1379▲ 45 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 260 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 1.7% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-YST EST, YSTAP_3.0(1)B11P280YST250F V1.xxV2.xx allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 2.7% | — | Ruijie X30 PRO FirmwareRuijie Rg-eap602 FirmwareRuijie Rg-est350 FirmwareRuijie Rg-ew300 PRO Firmware+1 | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 1.7% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-YST AP_3.0(1)B11P280YST250F allowing attackers to execute arbitrary commands via a crafted POST request to the pwdmodify in file /usr/lib/lua/luci/modules/common.lua. | |
| Analizada | Alta (8.8) | 2.8% | — | Ruijie Rg-ew1200g PRO FirmwareRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1200G PRO RG-EW1200G PRO V1.00/V2.00/V3.00/V4.00 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 3.2% | — | Ruijie X30 PRO FirmwareRuijie Rg-ew300 PRO FirmwareRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the setWisp in file /usr/lib/lua/luci/modules/wireless.lua. | |
| Analizada | Alta (8.8) | 2.1% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie RG-EW1800GX PRO B11P226_EW1800GX-PRO_10223117 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_cwmp.lua. | |
| Analizada | Alta (8.8) | 2.0% | — | Ruijie Rg-yst250f FirmwareRuijie Rg-est310 V2 FirmwareRuijie Reyee OSRuijie Rg-eap602 Firmware | 11/12/2025 | 17/6/2026 | OS Command Injection vulnerability in Ruijie X30-PRO X30-PRO-V1_09241521 allowing attackers to execute arbitrary commands via a crafted POST request to the module_set in file /usr/local/lua/dev_sta/nbr_networkId_merge.lua. | |
| Modificada | Alta (8.8) | 2.6% | — | Ruijie Rg-ew1200 FirmwareRuijie Rg-ew1200g PRO FirmwareRuijie Rg-ew1200r FirmwareRuijie Rg-ew1300g Firmware+92 | 17/8/2023 | 17/6/2026 | A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 series switches v.SWITCH_3.0(1)B11P219, RG-EG series business VPN routers v.EG_3.0(1)B11P219, EAP and RAP series wireless access points v.AP_3.0(1)B11P219, and NBC series wireless controllers… |