Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

11 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.1)0.45%—Moxa Tn-5900 FirmwareMoxa Tn-4900 Firmware17/8/202317/6/2026
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-delete function, which could potentially allow malicious users to delete arbitrary…
ModificadaAlta (8.1)0.71%—Moxa Tn-5900 FirmwareMoxa Tn-4900 Firmware17/8/202317/6/2026
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability derives from insufficient input validation in the key-delete function, which could potentially allow malicious users to delete arbitrary files.
ModificadaCrítica (9.8)0.74%—Moxa Tn-5900 Firmware17/8/202317/6/2026
TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation and improper authentication in the certification-generation function, which could potentially allow malicious users to execute remote code on affected…
ModificadaCrítica (9.8)0.44%—Moxa Tn-5900 FirmwareMoxa Tn-4900 Firmware17/8/202317/6/2026
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability stems from insufficient input validation in the certificate-generation function, which could potentially allow malicious users to execute…
ModificadaCrítica (9.8)0.76%—Moxa Tn-5900 Firmware17/8/202317/6/2026
TN-5900 Series firmware versions v3.3 and prior are vulnerable to command-injection vulnerability. This vulnerability stems from insufficient input validation and improper authentication in the key-generation function, which could potentially allow malicious users to execute remote code on affected devices.
ModificadaCrítica (9.8)1.3%—Moxa Tn-5900 FirmwareMoxa Tn-4900 Firmware17/8/202317/6/2026
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from insufficient input validation in the key-generation function, which could potentially allow malicious users to execute remote code…
ModificadaCrítica (9.8)0.82%—Moxa Tn-5900 FirmwareMoxa Tn-4900 Firmware17/8/202317/6/2026
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote…
ModificadaAlta (8.8)0.63%—Moxa Tn-5900 Firmware17/8/202317/6/2026
TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability. This vulnerability arises from inadequate authentication measures implemented in the web API handler, allowing low-privileged APIs to execute restricted actions that only high-privileged APIs are allowed This…
ModificadaMedia (5.3)0.61%—Moxa Tn-5900 Firmware5/7/202317/6/2026
TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may allow a remote attacker to determine whether a user is valid during password recovery through the web login page and enable a brute force attack with valid users.
ModificadaCrítica (9.8)3.6%—Moxa Tn-5900 Firmware26/1/202217/6/2026
The firmware on Moxa TN-5900 devices through 3.1 allows command injection that could lead to device damage.
ModificadaAlta (7.5)0.44%—Moxa Tn-5900 Firmware26/1/202217/6/2026
The firmware on Moxa TN-5900 devices through 3.1 has a weak algorithm that allows an attacker to defeat an inspection mechanism for integrity protection.
Orbitaley — Vulnerabilidades