Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3017▼ 66 respecto a la semana anterior
Críticas / altas1412▲ 56 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)381▼ 129 respecto a la semana anterior
23 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.94% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the configuration file mib_init_value_array functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted .dat file can lead to arbitrary code execution. An attacker can upload a malicious file to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.9% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related… | |
| Modificada | Alta (7.2) | 1.9% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related… | |
| Modificada | Alta (7.2) | 3.2% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related… | |
| Modificada | Alta (7.2) | 1.1% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa getInfo functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.4% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This stack-based buffer overflow… | |
| Modificada | Alta (7.2) | 1.4% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Two stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This stack-based buffer overflow… | |
| Modificada | Alta (7.2) | 1.4% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This stack-based… | |
| Modificada | Alta (7.2) | 1.4% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | Two stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This stack-based… | |
| Modificada | Alta (7.2) | 1.1% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send a series of HTTP requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 0.89% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa rollback_control_code functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 0.89% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa formFilter functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 0.89% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa formDnsv6 functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.4% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa set_RadvdPrefixParam functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (8.8) | 0.36% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted network request can lead to CSRF. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.2% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | An integer overflow vulnerability exists in the boa updateConfigIntoFlash functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.0% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa setRepeaterSsid functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of network requests can lead to arbitrary code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 1.3% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in the boa formRoute functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 0.47% | — | Realtek Rtl819x Jungle Software Development KITLevel1 Wbr-6013 Firmware | 8/7/2024 | 17/6/2026 | A firmware update vulnerability exists in the boa formUpload functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted network packets can lead to arbitrary firmware update. An attacker can provide a malicious file to trigger this vulnerability. | |
| Analizada | Crítica (9.8) | 98% | ⚠ Explotación activa | Realtek Rtl819x Jungle Software Development KIT | 16/8/2021 | 17/6/2026 | Realtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure the access point. Two versions of this management interface exists: one based on Go-Ahead named webs and another based on Boa named boa. Both of them are affected by these… | |
| Analizada | Crítica (9.8) | 100% | ⚠ Explotación activa | Realtek Rtl819x Jungle Software Development KIT | 16/8/2021 | 17/6/2026 | Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary. The binary is affected by multiple memory corruption vulnerabilities and an arbitrary command injection vulnerability that can be exploited by remote unauthenticated attackers. | |
| Analizada | Crítica (9.8) | 70% | — | Realtek Rtl819x Jungle Software Development KIT | 16/8/2021 | 17/6/2026 | Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a stack buffer overflow vulnerability that is present due to unsafe parsing of… | |
| Analizada | Alta (7.5) | 83% | — | Realtek Rtl819x Jungle Software Development KIT | 16/8/2021 | 17/6/2026 | Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a heap buffer overflow that is present due to unsafe crafting of SSDP NOTIFY… |