Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2544▼ 345 respecto a la semana anterior
Críticas / altas1339▲ 68 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)0.35%—Brocade Vyatta 5400 Vrouter SoftwareBrocade Vyatta 5400 Vrouter7/10/201417/6/2026
/opt/vyatta/bin/sudo-users/vyatta-clear-dhcp-lease.pl on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 does not properly validate parameters, which allows local users to gain privileges by leveraging the sudo configuration.
ModificadaMedia (5)1.1%—Brocade Vyatta 5400 Vrouter SoftwareBrocade Vyatta 5400 Vrouter7/10/201417/6/2026
The Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 allows attackers to obtain sensitive encrypted-password information by leveraging membership in the operator group.
ModificadaAlta (9)2.7%—Brocade Vyatta 5400 Vrouter SoftwareBrocade Vyatta 5400 Vrouter7/10/201417/6/2026
The management console on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 allows remote authenticated users to execute arbitrary Linux commands via shell metacharacters in a console command.
ModificadaMedia (5.4)0.95%—Brocade Vyatta Vrouter SoftwareBrocade Vyatta Vrouter23/1/201417/6/2026
The OSPF implementation on the Brocade Vyatta vRouter with software before 6.6R1 does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing…
ModificadaMedia (5.4)0.75%—Brocade ADXBrocade Bigiron RXBrocade FastironBrocade ICX+723/1/201417/6/2026
The OSPF implementation on Brocade routers does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet…