Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 3.1% | 💥 PoC | Rubetek Rv-3406 FirmwareRubetek Rv-3409 FirmwareRubetek Rv-3411 Firmware | 25/9/2020 | 17/6/2026 | The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be… | |
| Modificada | Alta (8.1) | 0.84% | 💥 PoC | Rubetek Rv-3406 FirmwareRubetek Rv-3409 FirmwareRubetek Rv-3411 Firmware | 25/9/2020 | 17/6/2026 | A Cleartext Transmission issue was discovered on Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339). Someone in the middle can intercept and modify the video data from the camera, which is transmitted in an unencrypted form. One can also modify responses from NTP and RTSP servers and force… | |
| Modificada | Crítica (9.4) | 1.8% | 💥 PoC | Rubetek Rv-3406 FirmwareRubetek Rv-3409 FirmwareRubetek Rv-3411 Firmware | 25/9/2020 | 17/6/2026 | The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, the attacker can watch live streams from the camera, rotate the camera, change some settings (brightness, clarity,… |