Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.8) | 0.63% | — | A1 Wlan BOX ADB Vv2220 Firmware | 27/1/2020 | 17/6/2026 | The Username field in the Storage Service settings of A1 WLAN Box ADB VV2220v2 devices allows stored XSS (after a successful Administrator login). | |
| Modificada | Alta (7.5) | 6.4% | — | Adbglobal Dv2210 FirmwareAdbglobal Vv2220 FirmwareAdbglobal Vv5522 FirmwareAdbglobal PRG Av4202n Firmware | 6/7/2018 | 17/6/2026 | All ADB broadband gateways / routers based on the Epicentro platform are affected by a privilege escalation vulnerability where attackers can gain access to the command line interface (CLI) if previously disabled by the ISP, escalate their privileges, and perform further attacks. | |
| Modificada | Alta (7.5) | 35% | — | Adbglobal Dv2210 FirmwareAdbglobal Vv2220 FirmwareAdbglobal Vv5522 FirmwareAdbglobal PRG Av4202n Firmware | 6/7/2018 | 17/6/2026 | All ADB broadband gateways / routers based on the Epicentro platform are affected by an authorization bypass vulnerability where attackers are able to access and manipulate settings within the web interface that are forbidden to end users (e.g., by the ISP). An attacker would be able to enable the TELNET server or… | |
| Modificada | Alta (7.8) | 1.6% | — | Adbglobal Dv2210 FirmwareAdbglobal Vv2220 FirmwareAdbglobal Vv5522 FirmwareAdbglobal PRG Av4202n Firmware | 6/7/2018 | 17/6/2026 | All ADB broadband gateways / routers based on the Epicentro platform are affected by a local root jailbreak vulnerability where attackers are able to gain root access on the device, and extract further information such as sensitive configuration data of the ISP (e.g., VoIP credentials) or attack the internal network… |