Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3026▼ 51 respecto a la semana anterior
Críticas / altas1412▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)385▼ 125 respecto a la semana anterior
17 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 7.6% | — | Telesquare Tlr-2005ksh Firmware | 29/8/2025 | 17/6/2026 | A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file /cgi-bin/internet.cgi?Command=lanCfg. Executing manipulation of the argument Hostname can lead to command injection. The attack may be performed from a remote location. The exploit has been publicly… | |
| Analizada | Alta (7.5) | 0.46% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Unauthorized stack overflow vulnerability in Telesquare TLR-2005KSH v.1.1.4 allows a remote attacker to obtain sensitive information via the systemutil.cgi component. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setUsernamePassword. | |
| Analizada | Crítica (9.8) | 0.40% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 allows unauthorized password modification when requesting the admin.cgi parameter with setUserNamePassword. | |
| Analizada | Alta (7.5) | 0.37% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 has an Information Disclosure vulnerability when requesting systemutilit.cgi. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | In Telesquare TLR-2005KSH 1.1.4, an unauthorized stack overflow vulnerability exists when requesting admin.cgi parameter with setSyncTimeHost. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability in the login interface when requesting systemtil.cgi. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setAutorest. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack overflow vulnerability when requesting admin.cgi parameter with setNtp. | |
| Analizada | Crítica (9.8) | 0.44% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi parameter with setDdns. | |
| Analizada | Crítica (9.8) | 0.69% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized command execution vulnerability when requesting the admin.cgi parameter with setAutorest. | |
| Analizada | Crítica (9.8) | 0.49% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter with setSyncTimeHost. | |
| Analizada | Alta (7.5) | 0.38% | — | Telesquare Tlr-2005ksh Firmware | 26/3/2025 | 17/6/2026 | Telesquare TLR-2005KSH 1.1.4 is vulnerable to Information Disclosure via the parameter getUserNamePassword. | |
| Analizada | Alta (8.8) | 6.3% | — | Telesquare Tlr-2005ksh Firmware | 10/4/2024 | 17/6/2026 | An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter. | |
| Modificada | Crítica (9.1) | 36% | — | Telesquare Tlr-2005ksh Firmware | 27/4/2022 | 17/6/2026 | Telesquare TLR-2005KSH 1.0.0 is affected by an arbitrary file deletion vulnerability that allows a remote attacker to delete any file, even system internal files, via a DELETE request. | |
| Modificada | Media (5.3) | 1.6% | — | Telesquare Tlr-2005ksh Firmware | 27/4/2022 | 17/6/2026 | Telesquare TLR-2005KSH 1.0.0 is affected by an unauthenticated file download vulnerability that allows a remote attacker to download a full configuration file. | |
| Modificada | Crítica (9.8) | 57% | — | Telesquare Tlr-2005ksh Firmware | 3/1/2022 | 17/6/2026 | TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can upload arbitrary files including HTML and CGI formats. |