Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3029▼ 65 respecto a la semana anterior
Críticas / altas1425▲ 60 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

16 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.5)0.79%—Cisco Wap121 FirmwareCisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 Firmware+86/3/202417/6/2026
A vulnerability in the web-based user interface of Cisco Small Business 100, 300, and 500 Series Wireless APs could allow an authenticated, remote attacker to perform buffer overflow attacks against an affected device. In order to exploit this vulnerability, the attacker must have valid administrative credentials for…
AnalizadaMedia (6.5)1.00%—Cisco Wap121 FirmwareCisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 Firmware+86/3/202417/6/2026
A vulnerability in the web-based management interface of Cisco Small Business 100, 300, and 500 Series Wireless APs could allow an authenticated, remote attacker to perform command injection attacks against an affected device. In order to exploit this vulnerability, the attacker must have valid administrative…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.6%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.7%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.6%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)1.6%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+222/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to perform command injection attacks against an affected device. These vulnerabilities are due to improper validation of…
ModificadaAlta (7.2)2.0%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+26/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to obtain sensitive information from or inject arbitrary commands on an affected device. For more information about these…
ModificadaAlta (8.8)1.3%—Cisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 FirmwareCisco Wap351 Firmware+26/5/202117/6/2026
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to obtain sensitive information from or inject arbitrary commands on an affected device. For more information about these…
ModificadaAlta (7.5)15%—UI Unifi ControllerW1.fi HostapdAsus Rt-n11Broadcom Adsl+2138/6/202017/6/2026
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.
ModificadaMedia (6.8)0.63%—Cisco Wap121 FirmwareCisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 Firmware+415/8/201817/6/2026
A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Series Wireless Access Points could allow an authenticated, adjacent attacker to cause a denial of service (DoS) condition on…
ModificadaMedia (5.3)0.25%—Cisco Wap121 FirmwareCisco Wap125 FirmwareCisco Wap131 FirmwareCisco Wap150 Firmware+415/8/201817/6/2026
A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Series Wireless Access Points could allow an unauthenticated, adjacent attacker to force the downgrade of the encryption…