Vulnerabilities

Summary — last 7 days

New vulnerabilities2,987▼ 96 vs. last week
Critical / high1,458▲ 101 vs. last week
New active exploitation (KEV)4▼ 5 vs. last week
Unscored (no CVSS)350▼ 160 vs. last week
–

3 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
DeferredMedium (5.3)1.2%—Netcore Nbr1005gpev2AINetcore Nbr200v2AINetcore B6v2AI5/25/20256/17/2026
A vulnerability was found in Netcore NBR1005GPEV2, NBR200V2 and B6V2 up to 20250508 and classified as critical. This issue affects the function tools_ping of the file /usr/bin/network_tools. The manipulation of the argument url leads to command injection. The attack may be initiated remotely. The exploit has been…
DeferredMedium (5.3)1.2%—Netcore Nbr1005gpev2AINetcore B6v2AINetcore Cover5AINetcore Nap830AI+35/25/20256/17/2026
A vulnerability has been found in Netcore NBR1005GPEV2, B6V2, COVER5, NAP830, NAP930, NBR100V2 and NBR200V2 up to 20250508 and classified as critical. This vulnerability affects the function passwd_set of the file /usr/bin/routerd of the component HTTP Header Handler. The manipulation of the argument pwd leads to…
DeferredLow (2.1)1.2%—Netcore Nbr1005gpev2AINetcore B6v2AINetcore Cover5AINetcore Nap830AI+45/25/20256/17/2026
A vulnerability, which was classified as critical, was found in Netcore NBR1005GPEV2, B6V2, COVER5, NAP830, NAP930, NBR100V2, NBR200V2 and POWER13 up to 20250508. This affects an unknown part of the file /www/cgi-bin/ of the component Query String Handler. The manipulation leads to command injection. It is possible to…
Orbitaley — Vulnerabilities