Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
66 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 0.64% | — | Milesight Ur32l Firmware | 1/5/2024 | 17/6/2026 | A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A specially crafted network request can lead to arbitrary firmware update. An attacker can send a network request to trigger this vulnerability. | |
| Modificada | Media (6.1) | 0.42% | — | Milesight Ur51 FirmwareMilesight Ur52 FirmwareMilesight Ur55 FirmwareMilesight Ur32l Firmware+3 | 5/10/2023 | 17/6/2026 | Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the admin panel. | |
| Modificada | Alta (7.5) | 64% | — | Milesight Ur5x FirmwareMilesight Ur32l FirmwareMilesight Ur32 FirmwareMilesight Ur35 Firmware+1 | 4/10/2023 | 9/7/2026 | An information disclosure in Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 allows attackers to access sensitive router components. | |
| Modificada | Alta (7.2) | 3.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the code branch that manages a new… | |
| Modificada | Alta (7.2) | 3.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the code branch that manages an… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… | |
| Modificada | Alta (7.2) | 1.5% | — | Milesight Ur32l Firmware | 6/7/2023 | 17/6/2026 | Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to arbitrary code execution. An attacker with high privileges can send HTTP requests to trigger these vulnerabilities.This buffer… |