Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.3) | 0.33% | — | Buffalo Wrc-2533gst2AIBuffalo Wrc-1167gst2AIBuffalo Wrc-2533gs2v-bAIBuffalo Wrc-2533gs2-bAI+3 | 24/6/2025 | 17/6/2026 | Unrestricted upload of file with dangerous type issue exists in WRC-2533GST2, WRC-1167GST2, WRC-2533GST2, WRC-2533GS2V-B,WRC-2533GS2-B v1.69 and earlier, WRC-2533GS2-W, WRC-1167GST2, WRC-1167GS2-B, and WRC-1167GS2H-B. If a specially crafted file is uploaded by a remote authenticated attacker, arbitrary code may be… | |
| Modificada | Alta (8.8) | 0.21% | — | Elecom Wrc-2533gs2-b FirmwareElecom Wrc-2533gs2-w FirmwareElecom Wrc-2533gs2v-b FirmwareElecom Wrc-x6000xs-g Firmware+2 | 1/8/2024 | 17/6/2026 | Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product with an administrative privilege, the user may be directed to perform unintended operations such as changing the login ID, login password, etc. | |
| Modificada | Alta (8.8) | 0.25% | — | Elecom Wrc-1167gs2-b FirmwareElecom Wrc-1167gs2h-b FirmwareElecom Wrc-1167gst2 FirmwareElecom Wrc-2533gs2-b Firmware+7 | 28/2/2024 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in ELECOM wireless LAN routers and wireless LAN repeater allows a remote unauthenticated attacker to hijack the authentication of administrators and to perform unintended operations to the affected product. Note that WMC-X1800GST-B and WSC-X1800GS-B are also included in… | |
| Analizada | Media (4.8) | 1.3% | — | Elecom Wrc-1167gs2-b FirmwareElecom Wrc-1167gs2h-b FirmwareElecom Wrc-1167gst2 FirmwareElecom Wrc-2533gs2-b Firmware+6 | 28/2/2024 | 17/6/2026 | ELECOM wireless LAN routers contain a cross-site scripting vulnerability. Assume that a malicious administrative user configures the affected product with specially crafted content. When another administrative user logs in and operates the product, an arbitrary script may be executed on the web browser. Note that… |