Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 237 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
13 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Crítica (9.4) | 0.70% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a path traversal vulnerability in the web management portal upload endpoint that allows authenticated attackers to write arbitrary data to… | |
| Pendiente de análisis | Crítica (10) | 1.0% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain an authentication bypass vulnerability in the web management portal upload endpoint that allows unauthenticated attackers to read sensitive… | |
| Pendiente de análisis | Alta (8.9) | 0.63% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | All firmware versions of Lantronix SLC8000, SLC9000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentication bypass vulnerability in the web management portal that allows unauthenticated attackers to derive valid session tokens of logged-in users and bypass source IP and User-Agent validation. Session… | |
| Pendiente de análisis | Crítica (9.4) | 1.7% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 26/9/2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as… | |
| Pendiente de análisis | Crítica (9.4) | 1.7% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 26/9/2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as… | |
| Pendiente de análisis | Alta (7.7) | 0.58% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI | 22/9/2026 | 26/9/2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to… | |
| Pendiente de análisis | Alta (7.7) | 0.58% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI | 22/9/2026 | 26/9/2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to… | |
| Pendiente de análisis | Alta (7.7) | 0.58% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI | 22/9/2026 | 26/9/2026 | Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to… | |
| Pendiente de análisis | Crítica (9.4) | 0.46% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a stack-based buffer overflow vulnerability that allows authenticated attackers to potentially execute arbitrary code by exploiting an undocumented mfc eeprom write… | |
| Pendiente de análisis | Crítica (9.4) | 0.85% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 25/9/2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a stack-based buffer overflow vulnerability that allows authenticated attackers to potentially execute arbitrary code by exploiting an undocumented mfc eeprom read… | |
| Pendiente de análisis | Crítica (9.4) | 1.7% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as root by exploiting the set… | |
| Pendiente de análisis | Crítica (9.4) | 1.5% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers to execute arbitrary shell commands as root by exploiting an undocumented mfc eeprom write… | |
| Pendiente de análisis | Crítica (9.4) | 1.5% | — | Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+2 | 22/9/2026 | 24/9/2026 | Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers to execute arbitrary shell commands as root by exploiting an undocumented mfc eeprom read… |