Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

11 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.
AnalizadaAlta (8.7)0.58%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.
AnalizadaAlta (8.7)0.68%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaAlta (7.2)0.53%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
AnalizadaCrítica (9.3)0.59%—Mbs-solutions Universal Gateway Firmware3/6/202622/7/2026
An unauthenticated remote attacker can recover a default, hard coded password from a firmware image and thus gain full access to all affected devices.