Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2623▼ 237 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
–

13 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisCrítica (9.4)0.70%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a path traversal vulnerability in the web management portal upload endpoint that allows authenticated attackers to write arbitrary data to…
Pendiente de análisisCrítica (10)1.0%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000 before firmware v9.7.0.5, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain an authentication bypass vulnerability in the web management portal upload endpoint that allows unauthenticated attackers to read sensitive…
Pendiente de análisisAlta (8.9)0.63%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
All firmware versions of Lantronix SLC8000, SLC9000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentication bypass vulnerability in the web management portal that allows unauthenticated attackers to derive valid session tokens of logged-in users and bypass source IP and User-Agent validation. Session…
Pendiente de análisisCrítica (9.4)1.7%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202626/9/2026
Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as…
Pendiente de análisisCrítica (9.4)1.7%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202626/9/2026
Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as…
Pendiente de análisisAlta (7.7)0.58%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI22/9/202626/9/2026
Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to…
Pendiente de análisisAlta (7.7)0.58%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI22/9/202626/9/2026
Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to…
Pendiente de análisisAlta (7.7)0.58%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI22/9/202626/9/2026
Lantronix SLC8000 before firmware v9.7.0.3, SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to…
Pendiente de análisisCrítica (9.4)0.46%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a stack-based buffer overflow vulnerability that allows authenticated attackers to potentially execute arbitrary code by exploiting an undocumented mfc eeprom write…
Pendiente de análisisCrítica (9.4)0.85%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202625/9/2026
Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a stack-based buffer overflow vulnerability that allows authenticated attackers to potentially execute arbitrary code by exploiting an undocumented mfc eeprom read…
Pendiente de análisisCrítica (9.4)1.7%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers with the services permission to execute arbitrary shell commands as root by exploiting the set…
Pendiente de análisisCrítica (9.4)1.5%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers to execute arbitrary shell commands as root by exploiting an undocumented mfc eeprom write…
Pendiente de análisisCrítica (9.4)1.5%—Lantronix Slc8000AILantronix Emg8500AILantronix Emg7500AILantronix Slb882AI+222/9/202624/9/2026
Lantronix SLC8000/SLC9000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a command injection vulnerability that allows authenticated attackers to execute arbitrary shell commands as root by exploiting an undocumented mfc eeprom read…