Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2640▼ 268 respecto a la semana anterior
Críticas / altas1348▲ 90 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 468 respecto a la semana anterior
126 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.7) | 0.36% | — | Buffalo WI FIAI | 28/9/2026 | 30/9/2026 | Stack-based buffer overflow vulnerability exists in BUFFALO Wi-Fi products. A non-authenticated crafted HTTP request may cause a denial-of-service (DoS) condition. | |
| Pendiente de análisis | Alta (8.6) | 0.36% | — | Buffalo WI FIAI | 28/9/2026 | 30/9/2026 | BUFFALO Wi-Fi products handle some web form input improperly to assemble command line strings internally. An administrative user may send a crafted HTTP request and execute an arbitrary OS command. | |
| Aplazada | Alta (8.9) | 3.6% | — | Shenzhen Aitemi M300 Wi-fi RepeaterAI | 9/8/2026 | 12/8/2026 | A security flaw has been discovered in Shenzhen Aitemi M300 Wi-Fi Repeater r0-ea7890a. Impacted is the function sprintf of the file /protocol.csp?fname=net&opt=smacfilter_conf&function=set&act=add&name=test&enable=1. Performing a manipulation of the argument enable/name/mac results in command injection. The attack may… | |
| Pendiente de análisis | Alta (7.5) | 0.15% | — | Lorex 2K Indoor Wi-fi Security CameraAI | 13/7/2026 | 14/7/2026 | Lorex 2K Indoor Wi-Fi Security Camera Device Management Server Improper Certificate Validation Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Lorex 2K Indoor Wi-Fi Security Cameras. User interaction is not required to exploit this… | |
| Pendiente de análisis | Alta (7.5) | 0.41% | — | Lorex 2K Indoor Wi-fi Security CameraAI | 13/7/2026 | 14/7/2026 | Lorex 2K Indoor Wi-Fi Security Camera CDeviceOperator Format String Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Lorex 2K Indoor Wi-Fi Security Cameras. Authentication is not required to exploit this vulnerability. The… | |
| Aplazada | Crítica (9.3) | 2.9% | — | Shenzhen Aitemi M300 Wi-fi RepeaterAI | 1/7/2026 | 6/7/2026 | Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) contains an unauthenticated OS command injection vulnerability that allows network-adjacent attackers to execute arbitrary shell commands by injecting unsanitized input through the smacfilter_conf handler in the commuos web backend. Attackers can append… | |
| Aplazada | Media (5.2) | 0.13% | — | CP Plus Wi-fi CameraAI | 25/5/2026 | 23/7/2026 | This vulnerability exists in CP Plus Wi-Fi Camera due to improper protection of sensitive information in runtime memory. An attacker with physical access could exploit this vulnerability by accessing the UART interface and performing memory extraction to obtain sensitive information, including cryptographic private… | |
| Pendiente de análisis | Media (5.6) | 0.18% | — | NXP Moal.koAINXP Wi-fi DriverAI | 13/5/2026 | 17/6/2026 | NXP moal.ko Wi-Fi driver 5.1.7.10 FW version from v17.92.1.p149.43 To v17.92.1.p149.157 was discovered to contain a buffer overflow via the mod_para parameter in the woal_init_module_param function. | |
| Analizada | Alta (7.7) | 0.23% | — | Tp-link AginetTp-link DecoTp-link FestaTp-link Kasa+10 | 13/2/2026 | 17/6/2026 | A vulnerability in the certificate validation logic may allow applications to accept untrusted or improperly validated server identities during TLS communication. An attacker in a privileged network position may be able to intercept or modify traffic if they can position themselves within the communication channel.… | |
| Analizada | Baja (2) | 0.36% | — | Tp-link AginetTp-link DecoTp-link FestaTp-link Kasa+10 | 13/2/2026 | 17/6/2026 | A permissive web security configuration may allow cross-origin restrictions enforced by modern browsers to be bypassed under specific circumstances. Exploitation requires the presence of an existing client-side injection vulnerability and user access to the affected web interface. Successful exploitation could allow… | |
| Aplazada | Alta (7.5) | 0.32% | — | Reolink Video Doorbell Wi-fiAI | 28/10/2025 | 17/6/2026 | Reolink Video Doorbell Wi-Fi DB_566128M5MP_W stores and transmits DDNS credentials in plaintext within its configuration and update scripts, allowing attackers to intercept or extract sensitive information. | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the… | |
| Analizada | Alta (7.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek RTL8811AU rtwlanu.sys N6CSet_DOT11_CIPHER_DEFAULT_KEY Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute low-privileged… | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the… | |
| Analizada | Baja (3.8) | 0.14% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 17/6/2026 | Realtek RTL8811AU rtwlanu.sys N6CQueryInformationHandleCustomized11nOids Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute… | |
| Analizada | Alta (8.8) | 0.15% | — | Realtek Wi-fi USB Driver | 2/9/2025 | 30/9/2026 | Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute… | |
| Analizada | Crítica (9.8) | 1.7% | — | Reolink Smart 2K+ Plug-in Wi-fi Video Doorbell With Chime Firmware | 22/8/2025 | 17/6/2026 | Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to contain a command injection vulnerability via the setddns_pip_system() function. | |
| Analizada | Alta (7.5) | 0.52% | — | Reolink Smart 2K+ Plug-in Wi-fi Video Doorbell With Chime Firmware | 22/8/2025 | 17/6/2026 | Incorrect access control in the RTMP server settings of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows unauthorized attackers to cause a Denial of Service (DoS) via initiating a large number of simultaneous ffmpeg-based stream pushes. | |
| Aplazada | Media (4) | 0.14% | — | Reolink Smart 2K+ Plug-in Wi-fi Video DoorbellAI | 22/8/2025 | 17/6/2026 | Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to manage users' sessions system wide instead of an account-by-account basis, potentially leading to a Denial of Service (DoS) via resource exhaustion. NOTE: the Supplier reports that the system-wide limit is… | |
| Analizada | Alta (7.3) | 0.27% | — | Reolink Smart 2K+ Plug-in Wi-fi Video Doorbell With Chime Firmware | 22/8/2025 | 17/6/2026 | A discrepancy in the error message returned by the login function of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 when entering the wrong username and password allows attackers to enumerate existing accounts. | |
| Aplazada | Media (6.5) | 0.21% | — | Reolink Smart 2K Plug-in Wi-fi Video Doorbell With ChimeAI | 22/8/2025 | 17/6/2026 | Insecure permissions in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allow attackers to arbitrarily change other users' passwords via manipulation of the userName value. | |
| Aplazada | Media (5.3) | 0.24% | — | Reolink Smart 2K+ Plug-in Wi-fi Video Doorbell With ChimeAI | 22/8/2025 | 17/6/2026 | Insufficient privilege verification in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows authenticated attackers to create accounts with elevated privileges. | |
| Aplazada | Media (5.3) | 0.24% | — | Reolink Smart 2K Plus Plug IN WI FI Video Doorbell With ChimeAI | 22/8/2025 | 17/6/2026 | An Insecure Direct Object Reference (IDOR) vulnerability in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows unauthorized attackers to access the Admin-only settings and edit the session storage. | |
| Aplazada | Crítica (9.4) | 87% | — | Shenzhen Aitemi M300 Wi-fi RepeaterAI | 7/8/2025 | 17/6/2026 | An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) via the 'time' parameter of the '/protocol.csp?' endpoint. The input is processed by the internal date '-s' command without rebooting or disrupting HTTP service. Unlike other injection points,… | |
| Modificada | Alta (7.8) | 0.15% | — | Aziot 2MP Full HD Smart Wi-fi Cctv Home Security Camera Firmware | 30/7/2025 | 5/7/2026 | The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02) contains an Incorrect Access Control vulnerability that allows local attackers to gain root shell access. Once accessed, the device exposes critical data including Wi-Fi credentials and ONVIF service credentials stored in… |