Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▲ 32 respecto a la semana anterior
Críticas / altas1477▲ 367 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
12 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.7% | — | Silabs Gecko Software Development KITWeston-embedded Uc-http | 20/2/2024 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit 80d4004. A specially crafted network packet can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | A memory corruption vulnerability exists in the HTTP Server Host header parsing functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.5% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01. Specially crafted network packets can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | A memory corruption vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.8% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the HTTP Server form boundary functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted set of network packets can lead to arbitrary code execution. An attacker can send a malicious packet to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.2% | — | Silabs Gecko Software Development KITWeston-embedded Cesium NETWeston-embedded Uc-http | 14/11/2023 | 17/6/2026 | An out-of-bounds write vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. A specially crafted network packet can lead to memory corruption. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 2.0% | — | Silabs Micrium Uc-http | 15/11/2022 | 17/6/2026 | Heap based buffer overflow in HTTP Server functionality in Micrium uC-HTTP 3.01.01 allows remote code execution via HTTP request. | |
| Modificada | Alta (7.5) | 1.9% | — | Micrium Uc-http | 10/2/2021 | 17/6/2026 | A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafted HTTP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 2.6% | — | Silabs Micrium Uc-http | 26/1/2021 | 17/6/2026 | A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafted HTTP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 40% | — | Xiongmaitech Uc-httpd | 8/6/2018 | 17/6/2026 | Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725. | |
| Modificada | Crítica (9.8) | 29% | — | Xiongmaitech Uc-httpd | 7/4/2017 | 17/6/2026 | XiongMai uc-httpd has directory traversal allowing the reading of arbitrary files via a "GET ../" HTTP request. |