Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2965▲ 27 respecto a la semana anterior
Críticas / altas1456▲ 193 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
27 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.55% | — | Netgear D7800 FirmwareNetgear Ex2700 FirmwareNetgear Ex6100 FirmwareNetgear Ex6150 Firmware+37 | 7/5/2024 | 17/6/2026 | NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the parsing of… | |
| Modificada | Alta (8) | 0.40% | — | Intel Atom X6200fe FirmwareIntel Atom X6211e FirmwareIntel Atom X6212re FirmwareIntel Atom X6413e Firmware+625 | 14/11/2023 | 17/6/2026 | Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access. | |
| Modificada | Baja (3.5) | 0.30% | — | Intel Atom X6200fe FirmwareIntel Atom X6211e FirmwareIntel Atom X6212re FirmwareIntel Atom X6413e Firmware+625 | 14/11/2023 | 17/6/2026 | Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Alta (8) | 0.35% | — | Intel Celeron J6413 FirmwareIntel Celeron N6211 FirmwareIntel Pentium J6425 FirmwareIntel Pentium N6415 Firmware+294 | 11/8/2023 | 17/6/2026 | Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via adjacent access. | |
| Modificada | Media (5.5) | 0.32% | — | Intel Pentium J4205 FirmwareIntel Pentium N4200 FirmwareIntel Pentium N4200e FirmwareIntel Celeron J3455 Firmware+330 | 18/8/2022 | 17/6/2026 | Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.8) | 0.28% | — | Intel Core I3-12100 FirmwareIntel Core I3-12100f FirmwareIntel Core I3-12100t FirmwareIntel Core I3-12300t Firmware+394 | 12/5/2022 | 17/6/2026 | Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Boot Guard and Intel(R) TXT may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.5) | 0.45% | — | Intel Atom C3308Intel Atom C3336Intel Atom C3338Intel Atom C3338r+500 | 11/3/2022 | 17/6/2026 | Non-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.5) | 0.51% | — | Intel Atom P5921bIntel Atom P5931bIntel Atom P5942bIntel Atom P5962b+454 | 11/3/2022 | 17/6/2026 | Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.4) | 0.95% | — | Intel Atom P5942b FirmwareIntel Atom P5931b FirmwareIntel Atom P5962b FirmwareIntel Atom P5921b Firmware+21 | 9/2/2022 | 17/6/2026 | Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access. | |
| Modificada | Crítica (9.8) | 0.82% | — | Netgear D7800 FirmwareNetgear Dm200 FirmwareNetgear Ex2700 FirmwareNetgear Ex6150v2 Firmware+28 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by server-side injection. This affects D7800 before 1.0.1.58, DM200 before 1.0.0.66, EX2700 before 1.0.1.56, EX6150v2 before 1.0.1.86, EX6100v2 before 1.0.1.86, EX6200v2 before 1.0.1.78, EX6250 before 1.0.0.110, EX6410 before 1.0.0.110, EX6420 before 1.0.0.110, EX6400v2 before… | |
| Modificada | Alta (7.5) | 0.78% | — | Netgear Ex6100v2 FirmwareNetgear Ex6150v2 FirmwareNetgear Ex6250 FirmwareNetgear Ex6400 Firmware+14 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EX6100v2 before 1.0.1.106, EX6150v2 before 1.0.1.106, EX6250 before 1.0.0.146, EX6400 before 1.0.2.164, EX6400v2 before 1.0.0.146, EX6410 before 1.0.0.146, EX6420 before 1.0.0.146, EX7300 before 1.0.2.164, EX7300v2 before… | |
| Modificada | Alta (7.2) | 0.94% | — | Netgear D7800 FirmwareNetgear Ex6250 FirmwareNetgear Ex7700 FirmwareNetgear Lbr20 Firmware+25 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.64, EX6250 before 1.0.0.134, EX7700 before 1.0.0.222, LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, R8900 before 1.0.5.26, R9000 before 1.0.5.26, XR450 before 2.3.2.66, XR500 before 2.3.2.66, XR700… | |
| Modificada | Crítica (9.8) | 2.5% | — | Netgear Ex6250 FirmwareNetgear Ex7700 FirmwareNetgear Ex8000 FirmwareNetgear Lbr1020 Firmware+38 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects EX6200v2 before 1.0.1.86, EX6250 before 1.0.0.134, EX7700 before 1.0.0.216, EX8000 before 1.0.1.232, LBR1020 before 2.6.3.58, LBR20 before 2.6.3.50, R7800 before 1.0.2.80, R8900 before 1.0.5.26, R9000 before… | |
| Modificada | Crítica (9.8) | 2.0% | — | Netgear D7800 FirmwareNetgear Ex6200v2 FirmwareNetgear Ex6250 FirmwareNetgear Ex7700 Firmware+32 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7800 before 1.0.1.64, EX6200v2 before 1.0.1.86, EX6250 before 1.0.0.134, EX7700 before 1.0.0.216, EX8000 before 1.0.1.232, LBR20 before 2.6.3.50, R7800 before 1.0.2.80, R8900 before 1.0.5.26, R9000 before 1.0.5.26,… | |
| Modificada | Alta (8.8) | 0.95% | — | Netgear D7800 FirmwareNetgear Dm200 FirmwareNetgear Ex2700 FirmwareNetgear Ex6150v2 Firmware+24 | 26/12/2021 | 17/6/2026 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.60, DM200 before 1.0.0.66, EX2700 before 1.0.1.56, EX6150v2 before 1.0.1.86, EX6200v2 before 1.0.1.86, EX6250 before 1.0.0.128, EX6400 before 1.0.2.144, EX6400v2 before 1.0.0.128, EX6410 before… | |
| Modificada | Crítica (9.8) | 1.7% | — | Netgear Cbr40 FirmwareNetgear Ex6100 FirmwareNetgear Ex6150 FirmwareNetgear Ex6250 Firmware+30 | 11/8/2021 | 17/6/2026 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.14, EX6100v2 before 1.0.1.98, EX6150v2 before 1.0.1.98, EX6250 before 1.0.0.132, EX6400 before 1.0.2.158, EX6400v2 before 1.0.0.132, EX6410 before 1.0.0.132, EX6420 before 1.0.0.132, EX7300 before… | |
| Modificada | Media (6.5) | 0.47% | — | Intel Atom C3308Intel Atom C3336Intel Atom C3338Intel Atom C3338r+64 | 9/6/2021 | 17/6/2026 | Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Alta (8.8) | 1.1% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 14/4/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the handling of the rc_service… | |
| Modificada | Alta (8.8) | 1.1% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 14/4/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the vendor_specific DHCP opcode. The issue results from the… | |
| Modificada | Alta (8.8) | 0.73% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 14/4/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800. Authentication is not required to exploit this vulnerability The specific flaw exists within handling of firmware updates. The issue results from a fallback to a insecure protocol to… | |
| Modificada | Media (6.5) | 0.32% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 5/3/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit this vulnerability. The specific flaw exists within the downloading of files via FTP. The issue… | |
| Modificada | Alta (8.8) | 0.96% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 5/3/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the handling of… | |
| Modificada | Alta (8.8) | 1.4% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 5/3/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit this vulnerability. The specific flaw exists within the refresh_status.aspx endpoint. The issue results from a lack of authentication… | |
| Modificada | Alta (8.8) | 0.52% | — | Netgear Br200 FirmwareNetgear Br500 FirmwareNetgear D7800 FirmwareNetgear Ex6100v2 Firmware+39 | 5/3/2021 | 17/6/2026 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7800. Authentication is not required to exploit this vulnerability. The specific flaw exists within the apply_save.cgi endpoint. This issue results from the use of hard-coded encryption key. An attacker… | |
| Modificada | Alta (7.5) | 1.1% | — | Lexmark X950 FirmwareLexmark X952 FirmwareLexmark X954 FirmwareLexmark X940e Firmware+80 | 9/3/2020 | 16/6/2026 | Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut. |