Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.00% | — | Seiko-sol Skybridge Basic Mb-a130 FirmwareSeiko-sol Skybridge Mb-a200 FirmwareSeiko-sol Skyspider Mb-r210 Firmware | 10/5/2023 | 17/6/2026 | Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product. Affected products and versions are as follows: SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, SkyBridge BASIC MB-A130 firmware… | |
| Modificada | Media (6.5) | 0.46% | — | Seiko-sol Skybridge Basic Mb-a130 FirmwareSeiko-sol Skybridge Mb-a200 Firmware | 10/5/2023 | 17/6/2026 | Improper following of a certificate's chain of trust exists in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, and SkyBridge BASIC MB-A130 firmware Ver. 1.4.1 and earlier, which may allow a remote unauthenticated attacker to eavesdrop on or alter the communication sent to the WebUI of the product. | |
| Modificada | Alta (7.5) | 2.0% | — | Seiko-sol Skybridge Mb-a200 Firmware | 10/5/2023 | 17/6/2026 | Improper access control vulnerability in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier allows a remote unauthenticated attacker to connect to the product's ADB port. | |
| Modificada | Alta (8.6) | 0.98% | — | Seiko-sol Skybridge Basic Mb-a130 FirmwareSeiko-sol Skybridge Mb-a200 Firmware | 10/5/2023 | 17/6/2026 | Missing authentication for critical function exists in Seiko Solutions SkyBridge series, which may allow a remote attacker to obtain or alter the setting information of the product or execute some critical functions without authentication, e.g., rebooting the product. Affected products and versions are as follows:… | |
| Modificada | Crítica (9.8) | 0.79% | — | Seiko-sol Skybridge Mb-a200 Firmware | 29/8/2022 | 17/6/2026 | Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain multiple hard-coded passcodes for root. Attackers are able to access the passcodes at /etc/srapi/config/system.conf and /usr/sbin/ssol-sshd.sh. | |
| Modificada | Crítica (9.8) | 1.8% | — | Seiko-sol Skybridge Mb-a200 Firmware | 29/8/2022 | 17/6/2026 | Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain a command injection vulnerability via the Ping parameter at ping_exec.cgi. |