Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2534▼ 399 respecto a la semana anterior
Críticas / altas1321▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)96▼ 431 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 1.9% | — | Solarview CompactAI | 14/9/2026 | 16/9/2026 | SolarView Compact contains an OS command Injection vulnerability in in Schedule Settings. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product. | |
| Modificada | Crítica (9.8) | 0.81% | — | Contec Solarview Compact Firmware | 27/10/2023 | 17/6/2026 | An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.php component. | |
| Modificada | Alta (7.5) | 3.2% | — | Contec Solarview Compact Firmware | 8/9/2023 | 17/6/2026 | SolarView Compact < 6.00 is vulnerable to Directory Traversal. | |
| Modificada | Crítica (9.1) | 60% | — | Contec Solarview Compact Firmware | 23/5/2023 | 17/6/2026 | SolarView Compact <= 6.0 is vulnerable to Insecure Permissions. Any file on the server can be read or modified because texteditor.php is not restricted. | |
| Modificada | Crítica (9.8) | 99% | — | Contec Solarview Compact Firmware | 6/2/2023 | 17/6/2026 | There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions through downloader.php. | |
| Modificada | Media (6.1) | 1.7% | — | Contec Solarview Compact Firmware | 29/11/2022 | 17/6/2026 | SolarView Compact 7.0 is vulnerable to Cross-site Scripting (XSS) via /network_test.php. | |
| Modificada | Crítica (9.8) | 1.6% | — | Contec Solarview Compact Firmware | 29/11/2022 | 17/6/2026 | SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file. | |
| Modificada | Crítica (9.8) | 30% | — | Contec Solarview Compact Firmware | 17/11/2022 | 17/6/2026 | SolarView Compact 6.00 was discovered to contain a command injection vulnerability via network_test.php |