Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2624▼ 236 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
–

25 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.8)0.26%—Samsung Smart Switch10/8/202619/8/2026
Improper input validation in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data.
AnalizadaMedia (6.9)0.17%—Samsung Smart Switch10/8/202619/8/2026
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to access sensitive data.
AnalizadaAlta (7)0.10%—Samsung Smart Switch10/8/202619/8/2026
Missing encryption of sensitive data in Smart Switch prior to version 3.7.72.6 allows adjacent attackers to intercept transmitted data.
AnalizadaMedia (4.7)0.16%—Samsung Smart Switch10/8/202619/8/2026
Insufficient verification of data authenticity in Smart Switch trouble scanning mode prior to version 3.7.72.6 allows adjacent attackers to spoof device identity.
AplazadaAlta (7.2)0.24%—Mitsubishielectric Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Room AIR ConditionersAIMitsubishielectric Wireless LAN Adapters FOR Packaged AIR ConditionersAIMitsubishielectric RefrigeratorsAI+1217/6/202617/6/2026
Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Room Air Conditioners (for Japan and outside Japan); Wireless LAN Adapters for Packaged Air Conditioners (for Japan and outside Japan); Refrigerators (for Japan); Heat Pump…
Pendiente de análisisMedia (4.6)0.24%—Aziot Node Smart Switch 16ampAI6/4/20265/7/2026
An information disclosure vulnerability exists in AZIOT 1 Node Smart Switch (16amp)- WiFi/Bluetooth Enabled Software Version: 1.1.9 due to improper access control on the UART debug interface. An attacker with physical access can connect to the UART interface and obtain sensitive information from the serial console…
AnalizadaAlta (7.1)0.24%—Samsung Smart Switch16/3/202617/6/2026
Path traversal in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to overwrite arbitrary files with Smart Switch privilege.
AnalizadaMedia (6.9)0.18%—Samsung Smart Switch16/3/202617/6/2026
Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service.
AnalizadaAlta (7.1)0.31%—Samsung Smart Switch16/3/202617/6/2026
Authentication bypass by replay in Smart Switch prior to version 3.7.69.15 allows remote attackers to trigger privileged functions.
AnalizadaAlta (7.1)0.55%—Samsung Smart Switch16/3/202617/6/2026
Improper authentication in Smart Switch prior to version 3.7.69.15 allows remote attackers to bypass authentication.
AnalizadaMedia (5.3)0.26%—Samsung Smart Switch16/3/202617/6/2026
Improper verification of cryptographic signature in Smart Switch prior to version 3.7.69.15 allows remote attackers to potentially bypass authentication.
AnalizadaAlta (7.1)0.17%—Samsung Smart Switch16/3/202617/6/2026
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.69.15 allows remote attackers to configure a downgraded scheme for authentication.
AnalizadaMedia (5.3)0.28%—Samsung Smart Switch16/3/202617/6/2026
Exposure of sensitive functionality to an unauthorized actor in Smart Switch prior to version 3.7.69.15 allows remote attackers to set a specific configuration.
AnalizadaMedia (6.5)0.21%—Samsung Smart Switch5/11/202517/6/2026
Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.
AnalizadaAlta (7.8)0.10%—Samsung Smart Switch10/10/202517/6/2026
Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability.
AnalizadaMedia (5.5)0.10%—Samsung Smart Switch10/10/202517/6/2026
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access sensitive data. User interaction is required for triggering this vulnerability.
AnalizadaMedia (6.5)0.27%—Samsung Smart Switch10/10/202530/9/2026
Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
AnalizadaMedia (5.5)0.10%—Samsung Smart Switch10/10/202530/9/2026
Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access backup data from applications. User interaction is required for triggering this vulnerability.
AnalizadaMedia (5)0.13%—Samsung Smart Switch4/6/202517/6/2026
Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability.
ModificadaMedia (5.5)0.11%—Samsung Smart Switch PC6/7/202317/6/2026
Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.23052_1 allows local attackers to delete arbitrary directory using directory junction.
ModificadaMedia (5.5)0.15%—Samsung Smart Switch PC6/7/202317/6/2026
Improper privilege management vulnerability in Samsung Smart Switch for Windows Installer prior to version 4.3.23043_3 allows attackers to cause permanent DoS via directory junction.
ModificadaAlta (7.8)0.23%—Samsung Smart Switch PC9/9/202217/6/2026
DLL hijacking vulnerability in Smart Switch PC prior to version 4.3.22083_3 allows attacker to execute arbitrary code.
ModificadaAlta (7.1)0.16%—Samsung Smart Switch PC9/9/202217/6/2026
Improper validation of integrity check vulnerability in Smart Switch PC prior to version 4.3.22083 allows local attackers to delete arbitrary directory using directory junction.
ModificadaAlta (7.8)0.24%—Samsung Smart Switch PC11/4/202217/6/2026
DLL hijacking vulnerability in Smart Switch PC prior to version 4.2.22022_4 allows attacker to execute abitrary code.
ModificadaMedia (5)1.6%—Cisco 200 Series Smart SwitchesCisco 300 Series Managed SwitchesCisco 200 Series Smart Switches SoftwareCisco 500 Series Stackable Managed Switches7/3/201316/6/2026
The Cisco Small Business 200 Series Smart Switch 1.2.7.76 and earlier, Small Business 300 Series Managed Switch 1.2.7.76 and earlier, and Small Business 500 Series Stackable Managed Switch 1.2.7.76 and earlier allow remote attackers to cause a denial of service (SSL/TLS layer outage) via malformed (1) SSH or (2) SSL…