Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2531▼ 362 respecto a la semana anterior
Críticas / altas1338▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
81 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 3.8% | — | Iptime N104s-r1 FirmwareIptime N104v FirmwareIptime N1E FirmwareIptime N1plus Firmware+159 | 20/1/2026 | 17/6/2026 | A command injection vulnerability exists in the upnp_relay() function in multiple ipTIME router models because the controlURL value used to pass port-forwarding information to an upper router is passed to system() without proper validation or sanitization, allowing OS command injection. | |
| Analizada | Alta (7.9) | 0.17% | — | ARM C1-ultra FirmwareARM C1-premium FirmwareARM Cortex-a710 FirmwareARM Cortex-x2 Firmware+7 | 14/1/2026 | 17/6/2026 | In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a TLBI is issued to the PE, either by the same PE or another PE in the shareability domain. In this case, the PE may retain stale TLB entries which should have been invalidated by the TLBI. | |
| Analizada | Alta (8.6) | 0.24% | — | Sound4 Playout Ula8 FirmwareSound4 Stream X8 FirmwareSound4 Stream X4 FirmwareSound4 Stream X2 Firmware+11 | 22/12/2025 | 17/6/2026 | SOUND4 Server Service 4.1.102 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path by inserting malicious code in the system root path that could execute with LocalSystem… | |
| Analizada | Crítica (9.8) | 0.52% | — | Iroadau FX2 Firmware | 28/7/2025 | 17/6/2026 | An issue was discovered on IROAD Dashcam FX2 devices. Bypass of Device Pairing/Registration can occur. It requires device registration via the "IROAD X View" app for authentication, but its HTTP server lacks this restriction. Once connected to the dashcam's Wi-Fi network via the default password ("qwertyuiop"), an… | |
| Analizada | Crítica (9.4) | 0.55% | — | Iroadau FX2 Firmware | 25/7/2025 | 17/6/2026 | An issue was discovered on IROAD Dashcam FX2 devices. Dumping Files Over HTTP and RTSP Without Authentication can occur. It lacks authentication controls on its HTTP and RTSP interfaces, allowing attackers to retrieve sensitive files and video recordings. By connecting to http://192.168.10.1/mnt/extsd/event/, an… | |
| Analizada | Crítica (9.8) | 0.68% | — | Iroadau FX2 Firmware | 26/6/2025 | 17/6/2026 | An issue was discovered on IROAD Dashcam FX2 devices. An unauthenticated file upload endpoint can be leveraged to execute arbitrary commands by uploading a CGI-based webshell. Once a file is uploaded, the attacker can execute commands with root privileges, gaining full control over the dashcam. Additionally, by… | |
| Analizada | Crítica (9.8) | 0.64% | — | Dell Chassis Management Controller FOR Poweredge FX2 FirmwareDell Chassis Management Controller FOR Poweredge Vrtx Firmware | 21/3/2025 | 17/6/2026 | Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with… | |
| Analizada | Media (5.3) | 0.25% | — | Iroadau FX2 Firmware | 16/3/2025 | 17/6/2026 | A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been rated as critical. Affected by this issue is some unknown functionality of the file /action/upload_file. The manipulation leads to unrestricted upload. Access to the local network is required for this attack to succeed. The exploit has been… | |
| Analizada | Baja (2.3) | 0.16% | — | Iroadau FX2 Firmware | 16/3/2025 | 17/6/2026 | A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /etc/passwd of the component Password Hash Handler. The manipulation leads to password hash with insufficient computational effort. Access to the… | |
| Analizada | Media (5.3) | 0.21% | — | Iroadau FX2 Firmware | 16/3/2025 | 17/6/2026 | A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been classified as problematic. Affected is an unknown function of the file /mnt/extsd/event/ of the component HTTP/RTSP. The manipulation leads to information disclosure. The attack needs to be initiated within the local network. The exploit has… | |
| Analizada | Media (5.3) | 0.23% | — | Iroadau FX2 Firmware | 16/3/2025 | 17/6/2026 | A vulnerability was found in IROAD Dash Cam FX2 up to 20250308 and classified as problematic. This issue affects some unknown processing of the component Device Registration. The manipulation of the argument Password with the input qwertyuiop leads to use of default password. The attack needs to be done within the… | |
| Modificada | Alta (7.7) | 0.22% | — | Ecovacs Deebot 900 FirmwareEcovacs Deebot N8 FirmwareEcovacs Deebot T8 FirmwareEcovacs Deebot N9 Firmware+10 | 23/1/2025 | 17/6/2026 | ECOVACS robot lawnmowers and vacuums use a deterministic symmetric key to decrypt firmware updates. An attacker can create and encrypt malicious firmware that will be successfully decrypted and installed by the robot. | |
| Analizada | Baja (1.8) | 0.21% | — | Ecovacs Deebot N8 FirmwareEcovacs Deebot 900 FirmwareEcovacs Deebot T8 FirmwareEcovacs Deebot N9 Firmware+10 | 23/1/2025 | 17/6/2026 | ECOVACS robot lawnmowers and vacuums insecurely store audio files used to indicate that the camera is on. An attacker with access to the /data filesystem can delete or modify warning files such that users may not be aware that the camera is on. | |
| Analizada | Media (4.8) | 0.15% | — | Ecovacs Deebot 900 FirmwareEcovacs Deebot N8 FirmwareEcovacs Deebot T8 FirmwareEcovacs Deebot N9 Firmware+10 | 23/1/2025 | 17/6/2026 | ECOVACS robot lawnmowers store the anti-theft PIN in cleartext on the device filesystem. An attacker can steal a lawnmower, read the PIN, and reset the anti-theft mechanism. | |
| Analizada | Media (5.3) | 0.33% | — | Ecovacs Deebot N10 FirmwareEcovacs Deebot T10 FirmwareEcovacs Deebot X1 FirmwareEcovacs Deebot T20 Firmware+10 | 23/1/2025 | 17/6/2026 | ECOVACS robot lawn mowers and vacuums use a shared, static secret key to encrypt BLE GATT messages. An unauthenticated attacker within BLE range can control any robot using the same key. | |
| Analizada | Alta (7) | 0.40% | — | Ecovacs Deebot 900 FirmwareEcovacs Deebot N8 FirmwareEcovacs Deebot T8 FirmwareEcovacs Deebot N9 Firmware+10 | 23/1/2025 | 17/6/2026 | ECOVACS robot lawnmowers and vacuums use a deterministic root password generated based on model and serial number. An attacker with shell access can login as root. | |
| Analizada | Crítica (9.8) | 0.56% | — | ARM Cortex-a710 FirmwareARM Cortex-a77 FirmwareARM Cortex-a78 FirmwareARM Cortex-a78ae Firmware+12 | 10/12/2024 | 17/6/2026 | Use of Hardware Page Aggregation (HPA) and Stage-1 and/or Stage-2 translation on Cortex-A77, Cortex-A78, Cortex-A78C, Cortex-A78AE, Cortex-A710, Cortex-X1, Cortex-X1C, Cortex-X2, Cortex-X3, Cortex-X4, Cortex-X925, Neoverse V1, Neoverse V2, Neoverse V3, Neoverse V3AE, Neoverse N2 may permit bypass of Stage-2… | |
| Modificada | Alta (8.8) | 0.96% | — | Supermicro M11sdv-4c-ln4f FirmwareSupermicro M11sdv-4ct-ln4f FirmwareSupermicro M11sdv-8c-ln4f FirmwareSupermicro M11sdv-8ct-ln4f Firmware+358 | 7/12/2023 | 9/7/2026 | The configuration functionality in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions through 3.17.02, allows remote authenticated users to execute arbitrary commands. | |
| Modificada | Alta (8.8) | 1.2% | — | Supermicro M11sdv-4c-ln4f FirmwareSupermicro M11sdv-4ct-ln4f FirmwareSupermicro M11sdv-8c-ln4f FirmwareSupermicro M11sdv-8ct-ln4f Firmware+358 | 7/12/2023 | 9/7/2026 | The web interface in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions before 3.17.02, allows remote authenticated users to execute arbitrary commands via a crafted request targeting vulnerable cgi… | |
| Modificada | Alta (7.5) | 1.3% | — | Supermicro M11sdv-4c-ln4f FirmwareSupermicro M11sdv-4ct-ln4f FirmwareSupermicro M11sdv-8c-ln4f FirmwareSupermicro M11sdv-8ct-ln4f Firmware+358 | 7/12/2023 | 9/7/2026 | A web server in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions up to 3.17.02, allows remote unauthenticated users to perform directory traversal, potentially disclosing sensitive information. | |
| Modificada | Alta (7.1) | 0.39% | — | Dell Xtremio X2 Firmware | 3/8/2023 | 17/6/2026 | Dell XtremIO X2 XMS versions prior to 6-4-1.11 contain an improper access control vulnerability. A remote read only user could potentially exploit this vulnerability to perform add/delete QoS policies which are disabled by default. | |
| Modificada | Alta (7.2) | 0.73% | — | Wavlink Wl-wn531ax2 Firmware | 30/6/2023 | 17/6/2026 | Improper neutralization of special elements in WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to execute OS commands with the root privilege. | |
| Modificada | Alta (7.2) | 0.68% | — | Wavlink Wl-wn531ax2 Firmware | 30/6/2023 | 17/6/2026 | WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to upload arbitrary files and execute OS commands with the root privilege. | |
| Modificada | Media (6.5) | 0.30% | — | Wavlink Wl-wn531ax2 Firmware | 30/6/2023 | 17/6/2026 | Improper authentication vulnerability in WL-WN531AX2 firmware versions prior to 2023526 allows a network-adjacent attacker to obtain a password for the wireless network. | |
| Modificada | Alta (8.1) | 0.29% | — | Wavlink Wl-wn531ax2 Firmware | 30/6/2023 | 17/6/2026 | Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a network-adjacent attacker to use functions originally available after login without logging in. |