Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2624▼ 236 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
25 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.8) | 0.26% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Improper input validation in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. | |
| Analizada | Media (6.9) | 0.17% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data. | |
| Analizada | Alta (7) | 0.10% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Missing encryption of sensitive data in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to intercept transmitted data. | |
| Analizada | Media (4.7) | 0.16% | — | Samsung Smart Switch | 10/8/2026 | 19/8/2026 | Insufficient verification of data authenticity in Smart Switch trouble scanning mode prior to version 3.7.72.6 allows adjacent attackers to spoof device identity. | |
| Aplazada | Alta (7.2) | 0.24% | — | Mitsubishielectric Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Packaged AIR ConditionersAIMitsubishielectric RefrigeratorsAI+12 | 17/6/2026 | 17/6/2026 | Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Packaged Air Conditioners (for Japan and outside Japan); Refrigerators (for Japan); Heat Pump… | |
| Pendiente de análisis | Media (4.6) | 0.24% | — | Aziot Node Smart Switch 16ampAI | 6/4/2026 | 5/7/2026 | An information disclosure vulnerability exists in AZIOT 1 Node Smart Switch (16amp)- WiFi/Bluetooth Enabled Software Version: 1.1.9 due to improper access control on the UART debug interface. An attacker with physical access can connect to the UART interface and obtain sensitive information from the serial console… | |
| Analizada | Alta (7.1) | 0.24% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Path traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files with Smart Switch privilege. | |
| Analizada | Media (6.9) | 0.18% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service. | |
| Analizada | Alta (7.1) | 0.31% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger privileged functions. | |
| Analizada | Alta (7.1) | 0.55% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authentication. | |
| Analizada | Media (5.3) | 0.26% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attackers to potentially bypass authentication. | |
| Analizada | Alta (7.1) | 0.17% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attackers to configure a downgraded scheme for authentication. | |
| Analizada | Media (5.3) | 0.28% | — | Samsung Smart Switch | 16/3/2026 | 17/6/2026 | Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows remote attackers to set a specific configuration. | |
| Analizada | Media (6.5) | 0.21% | — | Samsung Smart Switch | 5/11/2025 | 17/6/2026 | Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications. | |
| Analizada | Alta (7.8) | 0.10% | — | Samsung Smart Switch | 10/10/2025 | 17/6/2026 | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability. | |
| Analizada | Media (5.5) | 0.10% | — | Samsung Smart Switch | 10/10/2025 | 17/6/2026 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability. | |
| Analizada | Media (6.5) | 0.27% | — | Samsung Smart Switch | 10/10/2025 | 30/9/2026 | Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data. | |
| Analizada | Media (5.5) | 0.10% | — | Samsung Smart Switch | 10/10/2025 | 30/9/2026 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability. | |
| Analizada | Media (5) | 0.13% | — | Samsung Smart Switch | 4/6/2025 | 17/6/2026 | Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability. | |
| Modificada | Media (5.5) | 0.11% | — | Samsung Smart Switch PC | 6/7/2023 | 17/6/2026 | Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.23052_1 allows local attackers to delete arbitrary directory using directory junction. | |
| Modificada | Media (5.5) | 0.15% | — | Samsung Smart Switch PC | 6/7/2023 | 17/6/2026 | Improper privilege management vulnerability in Samsung Smart Switch for Windows Installer prior to version 4.3.23043_3 allows attackers to cause permanent DoS via directory junction. | |
| Modificada | Alta (7.8) | 0.23% | — | Samsung Smart Switch PC | 9/9/2022 | 17/6/2026 | DLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code. | |
| Modificada | Alta (7.1) | 0.16% | — | Samsung Smart Switch PC | 9/9/2022 | 17/6/2026 | Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.22083 allows local attackers to delete arbitrary directory using directory junction. | |
| Modificada | Alta (7.8) | 0.24% | — | Samsung Smart Switch PC | 11/4/2022 | 17/6/2026 | DLL hijacking vulnerability in Smart Switch PC prior to version 4.2.22022_4 allows attacker to execute abitrary code. | |
| Modificada | Media (5) | 1.6% | — | Cisco 200 Series Smart SwitchesCisco 300 Series Managed SwitchesCisco 200 Series Smart Switches SoftwareCisco 500 Series Stackable Managed Switches | 7/3/2013 | 16/6/2026 | The Cisco Small Business 200 Series Smart Switch 1.2.7.76 and earlier, Small Business 300 Series Managed Switch 1.2.7.76 and earlier, and Small Business 500 Series Stackable Managed Switch 1.2.7.76 and earlier allow remote attackers to cause a denial of service (SSL/TLS layer outage) via malformed (1) SSH or (2) SSL… |