Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 0.58% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root. | |
| Analizada | Alta (8.7) | 0.58% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root. | |
| Analizada | Alta (8.7) | 0.58% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root. | |
| Analizada | Alta (8.7) | 0.68% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | |
| Analizada | Alta (7.2) | 0.53% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input. | |
| Analizada | Crítica (9.3) | 0.59% | — | Mbs-solutions Universal Gateway Firmware | 3/6/2026 | 22/7/2026 | An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices. |