Vulnerabilities
Summary — last 7 days
New vulnerabilities3,241▲ 698 vs. last week
Critical / high1,519▲ 132 vs. last week
New active exploitation (KEV)5▼ 1 vs. last week
Unscored (no CVSS)235▲ 221 vs. last week
4 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (5.9) | 0.57% | — | Huawei Oceanstor 5800 V3 FirmwareHuawei Oceanstor 6900 V3 Firmware | 11/22/2017 | 6/17/2026 | OceanStor 5800 V3 with software V300R002C00 and V300R002C10, OceanStor 6900 V3 V300R001C00 has an information leakage vulnerability. Products use TLS1.0 to encrypt. Attackers can exploit TLS1.0's vulnerabilities to decrypt data to obtain sensitive information. | |
| Modified | Medium (6.5) | 0.62% | — | Huawei Oceanstor 5800 V3 Firmware | 4/2/2017 | 6/17/2026 | The Huawei OceanStor 5800 V300R003C00 has an integer overflow vulnerability. An authenticated attacker may send massive abnormal Network File System (NFS) packets, causing an anomaly in specific disk arrays. | |
| Modified | High (7.5) | 2.5% | — | Huawei Oceanstor 5800 V3 | 1/27/2017 | 6/17/2026 | Huawei Oceanstor 5800 before V300R002C10SPC100 allows remote attackers to cause a denial of service (CPU consumption) via a large number of crafted HTTP packets. | |
| Analyzed | High (8.1) | 96% | ⚠ Active exploitation💥 Exploit | Huawei Agile Controller-campus FirmwareHuawei AnyofficeHuawei LogcenterHuawei Firehunter6000 Firmware+16 | 4/26/2016 | 10/9/2026 | Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions. |