Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2839▼ 348 respecto a la semana anterior
Críticas / altas1378▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
33 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.1) | 0.24% | — | Gt3themes Soho - Photography Wordpress ThemeAI | 20/2/2026 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GT3themes SOHO - Photography WordPress Theme soho allows DOM-Based XSS.This issue affects SOHO - Photography WordPress Theme: from n/a through <= 3.0.3. | |
| Aplazada | Alta (8.7) | 0.77% | — | EdusohoAI | 22/1/2026 | 15/7/2026 | EduSoho versions prior to 22.4.7 contain an arbitrary file read vulnerability in the classroom-course-statistics export functionality. A remote, unauthenticated attacker can supply crafted path traversal sequences in the fileNames[] parameter to read arbitrary files from the server filesystem, including application… | |
| Modificada | Alta (8.8) | 5.6% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.This vulnerability is specifically… | |
| Modificada | Alta (8.8) | 5.6% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.This vulnerability is specifically… | |
| Modificada | Alta (8.8) | 5.5% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability. | |
| Modificada | Media (5.4) | 0.81% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | A stored cross-site scripting (XSS) vulnerability exists in the upload_brand.cgi functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to execution of arbitrary javascript in another user's browser. An attacker can make an authenticated HTTP request to trigger this… | |
| Modificada | Alta (8.8) | 5.9% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability. | |
| Modificada | Alta (8.8) | 5.7% | — | Peplink Surf Soho Firmware | 11/10/2023 | 17/6/2026 | An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 0.89% | 💥 PoC | Ieee 802.11Sonicwall Tz670 FirmwareSonicwall Tz570 FirmwareSonicwall Tz570p Firmware+26 | 15/4/2023 | 17/6/2026 | The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point (such as authentication frames or… | |
| Modificada | Alta (7.5) | 1.3% | — | Peplink Balance 20X FirmwarePeplink Balance 310x FirmwarePeplink MBX FirmwarePeplink EPX Firmware+51 | 7/10/2020 | 17/6/2026 | Peplink Balance before 8.1.0rc1 allows an unauthenticated attacker to download PHP configuration files (/filemanager/php/connector.php) from Web Admin. | |
| Modificada | Crítica (9.8) | 5.2% | — | Greenpacket Ox350 FirmwareHuawei Bm2022 FirmwareHuawei Hes-309m FirmwareHuawei Hes-319m Firmware+10 | 20/6/2017 | 17/6/2026 | WiMAX routers based on the MediaTek SDK (libmtk) that use a custom httpd plugin are vulnerable to an authentication bypass allowing a remote, unauthenticated attacker to gain administrator access to the device by performing an administrator password change on the device via a crafted POST request. | |
| Modificada | Media (6.8) | 3.2% | 💥 Exploit | Visohotlink | 25/1/2007 | 16/6/2026 | PHP remote file inclusion vulnerability in includes/functions.visohotlink.php in VisoHotlink 1.01 and possibly earlier allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | |
| Modificada | Alta (7.5) | 3.5% | 💥 Exploit | Soholaunch PRO Edition | 8/11/2006 | 16/6/2026 | Multiple PHP remote file inclusion vulnerabilities in Soholaunch Pro Edition 4.9 r46 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the _SESSION[docroot_path] parameter to (1) includes/shared_functions.php or (2)… | |
| Modificada | Media (4.3) | 6.3% | 💥 Exploit | Sonicwall Soho Firmware | 2/5/2005 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in SonicWALL SOHO 5.1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URL or (2) the user login name, which is not filtered when the administrator views the log file. | |
| Modificada | Media (5) | 3.2% | — | Symantec Firewall VPN Appliance 100Symantec Firewall VPN Appliance 200Symantec Firewall VPN Appliance 200rSymantec Gateway Security 320+8 | 31/12/2004 | 16/6/2026 | Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 uses a default read/write SNMP community string, which allows remote attackers to alter the firewall's configuration file. | |
| Modificada | Media (5) | 3.9% | — | Symantec Firewall VPN Appliance 100Symantec Firewall VPN Appliance 200Symantec Firewall VPN Appliance 200rSymantec Gateway Security 320+8 | 31/12/2004 | 16/6/2026 | Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 and Gateway Security 320, 360, and 360R running firmware before 622 allow remote attackers to bypass filtering and determine whether the device is running services such as tftpd, snmpd, or isakmp via a UDP port scan with a… | |
| Modificada | Media (5) | 3.7% | — | Symantec Firewall VPN Appliance 100Symantec Firewall VPN Appliance 200Symantec Firewall VPN Appliance 200rSymantec Gateway Security+6 | 31/12/2004 | 16/6/2026 | Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware before 1.63 allow remote attackers to cause a denial of service (device freeze) via a fast UDP port scan on the WAN interface. | |
| Modificada | Media (5) | 2.6% | — | Avirt Soho | 23/11/2004 | 16/6/2026 | Buffer overflow in Avirt Soho 4.3 allows remote attackers to cause a denial of service (crash) via (1) a large GET request to port 1080 or (2) a large GET request of % characters to port 8080. | |
| Modificada | Media (4.3) | 1.6% | 💥 Exploit | Sonicwall Soho3 | 31/12/2002 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in content blocking in SonicWALL SOHO3 6.3.0.0 allows remote attackers to inject arbitrary web script or HTML via a blocked URL. | |
| Modificada | Alta (7.5) | 1.5% | — | Watchguard Legacy RssaWatchguard SohoWatchguard Vclass | 31/12/2002 | 16/6/2026 | WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates a response that contains the string, causing IPFilter to treat… | |
| Modificada | Alta (7.5) | 1.4% | — | Watchguard Soho Firewall | 4/10/2002 | 16/6/2026 | The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name. | |
| Modificada | Media (5) | 1.7% | — | Watchguard FireboxWatchguard Soho Firewall | 4/10/2002 | 16/6/2026 | Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110. | |
| Modificada | Alta (10) | 3.1% | — | Watchguard Soho Firewall | 12/8/2002 | 16/6/2026 | Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules. | |
| Modificada | Media (5) | 1.6% | — | Watchguard Soho Firewall | 12/8/2002 | 16/6/2026 | Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad IP options. | |
| Modificada | Alta (7.5) | 4.9% | — | Avirt GatewayAvirt Gateway SuiteAvirt Soho | 25/3/2002 | 16/6/2026 | Buffer overflows in Avirt Gateway Suite 4.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long header fields to the HTTP proxy, or (2) a long string to the telnet proxy. |