Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2633▼ 304 respecto a la semana anterior
Críticas / altas1352▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 469 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7) | 0.27% | — | Audi Universal Traffic Recorder Firmware | 12/9/2025 | 17/6/2026 | A stack overflow in the FTP service of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to cause a Denial of Service (DoS) via a crafted input. | |
| Analizada | Alta (7.5) | 0.32% | — | Audi Universal Traffic Recorder Firmware | 12/9/2025 | 17/6/2026 | An issue in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to arbitrarily overwrite files via supplying a crafted PUT request. | |
| Analizada | Media (5.4) | 0.21% | — | Audi Universal Traffic Recorder Firmware | 12/9/2025 | 17/6/2026 | Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the wifi_sta_ssid or wifi_ap_ssid parameters. | |
| Analizada | Alta (7.5) | 0.42% | — | Audi Universal Traffic Recorder Firmware | 12/9/2025 | 17/6/2026 | Incorrect access control in the web service of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to download car information without authentication. | |
| Analizada | Crítica (9.1) | 0.36% | — | Audi Universal Traffic Recorder Firmware | 12/9/2025 | 17/6/2026 | Incorrect access control in the FTP protocol of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to authenticate into the service using any combination of username and password. | |
| Aplazada | Alta (7.5) | 0.41% | — | Audi Universal Traffic RecorderAI | 25/3/2025 | 17/6/2026 | An issue was discovered on the Audi Universal Traffic Recorder 2.88. It has Susceptibility to denial of service. It uses the same default credentials for all devices and does not implement proper multi-device authentication, allowing attackers to deny the owner access by occupying the only available connection. The… | |
| Aplazada | Baja (2.1) | 0.18% | — | Audi Universal Traffic Recorder APPAI | 20/3/2025 | 17/6/2026 | A vulnerability classified as problematic has been found in Audi Universal Traffic Recorder App 2.0. Affected is an unknown function of the component FTP Credentials. The manipulation leads to use of hard-coded password. Attacking locally is a requirement. The complexity of an attack is rather high. The exploitability… |