Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.5) | 16% | ⚠ Explotación activa | Tp-link Tl-wr841n FirmwareTp-link Mr6400 FirmwareTp-link Tl-wdr3600 FirmwareTp-link Tl-wdr4300 Firmware+32 | 3/5/2024 | 3/9/2026 | TP-Link TL-WR841N dropbearpwd Improper Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR841N routers. Authentication is not required to exploit this vulnerability. The specific flaw… | |
| Modificada | Crítica (9.8) | 2.7% | — | Tp-link Tl-wdr4300 FirmwareTp-link Tl-1043nd Firmware | 13/11/2019 | 16/6/2026 | Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND.. | |
| Modificada | Alta (8.8) | 1.1% | — | Tp-link Tl-wdr4300 Firmware | 25/10/2019 | 16/6/2026 | TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities. | |
| Modificada | Alta (8.8) | 8.5% | 💥 PoC | Tp-link Tl-wdr5620 FirmwareTp-link Tl-wdr3500 FirmwareTp-link Tl-wdr3600 FirmwareTp-link Tl-wdr4300 Firmware+1 | 18/1/2019 | 17/6/2026 | TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote code execution, because shell metacharacters can be included in the weather get_weather_observe citycode field. | |
| Analizada | Alta (7.5) | 84% | ⚠ Explotación activa💥 Exploit | Tp-link Tl-wr741nd FirmwareTp-link Tl-wr841n FirmwareTp-link Tl-wr740n FirmwareTp-link Archer C5 Firmware+7 | 22/4/2015 | 17/6/2026 | Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (1.0) with firmware before 150302, TL-WR740N (5.0) and TL-WR741ND (5.0) with… | |
| Modificada | Media (5) | 1.8% | — | Tp-link Tl-wdr4300 FirmwareTp-link Tl-wdr4300 | 30/9/2014 | 17/6/2026 | The web server in the TP-LINK N750 Wireless Dual Band Gigabit Router (TL-WDR4300) with firmware before 140916 allows remote attackers to cause a denial of service (crash) via a long header in a GET request. | |
| Modificada | Media (4.3) | 2.0% | — | Tp-link Tl-wdr4300 FirmwareTp-link Tl-wdr4300 | 30/9/2014 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in the DHCP clients page in the TP-LINK N750 Wireless Dual Band Gigabit Router (TL-WDR4300) with firmware before 140916 allows remote attackers to inject arbitrary web script or HTML via the hostname in a DHCP request. |