Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada hace 1 hora
22,093
Total alertas
4671
Críticas
16834
Altas
8
Ransomware
1003
Esta semana
RSS
M Crítico vulnerabilidad
07/09/2026
Inyección de comandos OS crítica en Linksys RE7000 2.0.15 permite ejecución remota
Se ha identificado una vulnerabilidad crítica (CVSS 9.9) en el repetidor inalámbrico Linksys RE7000 versión 2.0.15. Un atacante remoto puede inyectar comandos del sistema operativo manipulando parámetros de prueba ping (pingTestIp, pingTestPktSize, pingTestTimes) en el componente /cgi-bin/json.cgi?PingTest. El exploit es público y activamente explotado, afectando infraestructuras de redes corporativas y MiPyMEs en México y Latinoamérica que dependan de este dispositivo.
M Crítico vulnerabilidad
07/09/2026
Vulnerabilidad crítica en controladores Advantech WISE-6610 afecta sistemas industriales
Se identificó una vulnerabilidad crítica (CVSS 9.9) en múltiples modelos de controladores Advantech WISE-6610 (versión 1.2.1_20251110) que afecta la librería Node-RED. La vulnerabilidad permite manipulación de argumentos en la función nodered_lib_apply, comprometiendo sistemas de automación industrial en plantas, manufactura y infraestructura crítica en LATAM. Afecta aplicaciones desplegadas en entornos operacionales que dependen de estos dispositivos para monitoreo y control remoto.
M Crítico vulnerabilidad
07/09/2026
Vulnerabilidad crítica en controladores Advantech WISE-6610 permite manipulación de certificados
Se identificó una vulnerabilidad crítica (CVSS 9.9) en múltiples modelos de controladores industriales Advantech WISE-6610 (versión 1.2.1_20251110) que afecta el manejador de eliminación de certificados de estación base. Esta vulnerabilidad permite a atacantes manipular funciones críticas de autenticación en sistemas de control industrial, poniendo en riesgo infraestructuras críticas, plantas de manufactura y sistemas de energía en operación en México y Latinoamérica.
M Crítico vulnerabilidad
06/09/2026
Inyección de comandos OS crítica en Tenda HG10 (CVE-2026-86167)
Se identificó una vulnerabilidad crítica (CVSS 9.9) en el router Tenda HG10 modelo 300001138 que permite inyección de comandos del sistema operativo a través del parámetro fmgpon_loid en la función formgponConf. La vulnerabilidad es explotable remotamente y cuenta con exploits públicos disponibles. Afecta principalmente a pequeñas y medianas empresas en LATAM que utilizan estos equipos en infraestructuras de acceso a internet.
M Crítico vulnerabilidad
06/09/2026
[CVE-2026-86152] A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::T…
A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::ThreadProc of the file Functions/AutoAddWifi.cpp of the component Kylin. Executing a manipulation can lead to os command injection. The attack may be launched remotely.
M Crítico vulnerabilidad
06/09/2026
[CVE-2026-86151] A vulnerability was detected in Tenda CP3 27.5.57.101. The affected element is the function sub_2F77…
A vulnerability was detected in Tenda CP3 27.5.57.101. The affected element is the function sub_2F77E8 of the file Apis/system.c of the component Network Configuration Management. Performing a manipulation results in os command injection. The attack may be initiated remotely.
M Crítico vulnerabilidad
05/09/2026
[CVE-2026-86148] A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the functio…
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Crítico vulnerabilidad
05/09/2026
[CVE-2026-86149] A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing …
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
M Crítico vulnerabilidad
03/09/2026
[CVE-2026-85223] A vulnerability was found in D-Link DNS-340L 1.01B04. Affected by this issue is some unknown functio…
A vulnerability was found in D-Link DNS-340L 1.01B04. Affected by this issue is some unknown functionality of the file /cgi-bin/dropbox.cgi of the component CGI Handler. Performing a manipulation of the argument callback_url/sync_interval results in os command injection. The attack can be initiated remotely. The exploit has been made public and could be used.
M Crítico vulnerabilidad
03/09/2026
[CVE-2026-85224] A vulnerability was determined in D-Link DNS-320 ShareCenter 2.06B01. This affects an unknown part o…
A vulnerability was determined in D-Link DNS-320 ShareCenter 2.06B01. This affects an unknown part of the file /cgi/file_sharing.cgi of the component File Sharing. Executing a manipulation of the argument fileurl can lead to os command injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
M Crítico vulnerabilidad
03/09/2026
[CVE-2026-85222] A vulnerability has been found in D-Link DNS-340L 1.01B04. Affected by this vulnerability is an unkn…
A vulnerability has been found in D-Link DNS-340L 1.01B04. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/addon_center.cgi of the component Add-On Center. Such manipulation of the argument f_name/f_url/f_flag/f_login_user leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
M Crítico vulnerabilidad
01/09/2026
[CVE-2026-83772] A vulnerability was detected in Cobham SATCOM VSAT7090 Maritime Satellite Router up to 20260704. Thi…
A vulnerability was detected in Cobham SATCOM VSAT7090 Maritime Satellite Router up to 20260704. This issue affects the function c_set_reports_decode of the file mail-report.sh of the component JSON Parsing. The manipulation of the argument sender/recipients results in command injection. It is possible to launch the attack remotely. The exploit is now public and may be used. The vendor was contact…
M Crítico vulnerabilidad
31/08/2026
[CVE-2026-82971] A vulnerability was determined in QVidium Opera11 3.3.2a26-Ax4x-opera11. This affects an unknown par…
A vulnerability was determined in QVidium Opera11 3.3.2a26-Ax4x-opera11. This affects an unknown part of the file /cgi-bin/net_tr.cgi of the component CGI Script. This manipulation of the argument ipaddr causes command injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor explains: "QVidium has now closed its doors and no longer wi…
M Crítico vulnerabilidad
31/08/2026
[CVE-2026-83524] A security vulnerability has been detected in RedPort Optimizer wXa-203, Optimizer wXa-213 and Optim…
A security vulnerability has been detected in RedPort Optimizer wXa-203, Optimizer wXa-213 and Optimizer wXa-223 up to 20260704. This impacts the function exec of the file /xgatev1/system/datetime.php of the component System Clock. The manipulation leads to command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted ear…
M Crítico vulnerabilidad
31/08/2026
[CVE-2026-82692] A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an unknown par…
A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an unknown part of the file /cgi-bin/iscsi_mgr.cgi. Performing a manipulation of the argument alias/username/password/volume_location results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Crítico vulnerabilidad
31/08/2026
Inyección de comandos OS crítica en NAS D-Link DNS-320L, DNS-327L, DNS-340L y DNS-345
Se ha identificado una vulnerabilidad crítica (CVSS 9.1) en dispositivos NAS D-Link que permite inyección de comandos del sistema operativo a través del parámetro f_ups_ip en el manejador CGI /cgi-bin/usb_device.cgi. La explotación es remota, sin autenticación requerida, y el exploit público ya circula. Afecta modelos hasta la versión 20260717, comprometiendo la integridad de servidores de almacenamiento en infraestructuras PYME y empresariales de LATAM.
M Crítico vulnerabilidad
31/08/2026
Vulnerabilidad crítica en dispositivos D-Link DNS (320L, 327L, 340L, 345) permite inyección de comandos
Se detectó una vulnerabilidad crítica (CVSS 9.9) en los manejadores ISO de dispositivos de almacenamiento en red D-Link afectados hasta la versión 20260717. Un atacante remoto puede ejecutar comandos del sistema operativo a través del parámetro upIsoRootPath en /cgi-bin/isomount_mgr.cgi, comprometiendo completamente la integridad y confidencialidad de datos almacenados. El exploit está públicamente disponible y es explotable sin autenticación.
M Crítico vulnerabilidad
31/08/2026
Inyección de comandos OS crítica en dispositivos D-Link DNS-327L y DNS-340L (CVE-2026-82690)
Se ha identificado una vulnerabilidad de inyección de comandos del sistema operativo en routers D-Link DNS-327L y DNS-340L hasta la versión 20260717, accesible remotamente a través del parámetro f_dev en /cgi-bin/ve_mgr.cgi. Con puntuación CVSS de 9.1, este defecto permite a atacantes ejecutar comandos arbitrarios sin autenticación. El exploit público amplifica el riesgo para empresas y proveedores de conectividad en Latinoamérica que utilizan estos dispositivos en sus infraestructuras de red.
M Crítico vulnerabilidad
31/08/2026
Vulnerabilidad crítica de inyección de comandos en almacenamiento NAS D-Link DNS-340L/345
Se ha detectado una vulnerabilidad crítica (CVSS 9.1) en los dispositivos NAS D-Link DNS-340L y DNS-345 que permite inyección de comandos del sistema operativo a través del componente Virtual Volume Handler (/cgi-bin/virtual_vol.cgi). Un atacante remoto puede manipular los parámetros f_sharename, f_target o f_name para ejecutar comandos arbitrarios. Esta vulnerabilidad afecta las versiones 1.01B04, 1.03B06, 1.04B02 y 1.05b04, representando riesgo crítico para infraestructuras de almacenamiento en empresas mexicanas y latinoamericanas.
M Crítico vulnerabilidad
21/08/2026
Inyección de comandos crítica en Comfast CF-N1-S 2.6.0.1 (CVE-2026-77683)
Se ha descubierto una vulnerabilidad crítica (CVSS 9.9) en el router Comfast CF-N1-S versión 2.6.0.1 que permite inyección de comandos remotos a través del parámetro timestr en la función /cgi-bin/mbox-config. Un atacante puede ejecutar comandos del sistema sin autenticación. El exploit está disponible públicamente, incrementando el riesgo de explotación inmediata en infraestructuras de pequeña y mediana empresa en LATAM que utilizan este equipo.