Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
22,082
Total alertas
4667
Críticas
16827
Altas
8
Ransomware
1014
Esta semana
RSS
M Crítico vulnerabilidad
Hace 2 días
[CVE-2026-76501] A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (…
A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM and SR…
M Crítico vulnerabilidad
Hace 2 días
[CVE-2026-76485] A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS…
A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM feature is enabled. An attacker c…
M Crítico vulnerabilidad
Hace 2 días
[CVE-2026-76486] A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS…
A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper input validation of IP traffic when the NGOAM feature is enabled. An attacker c…
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-105778] A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unkno…
A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of the file /goform/setWifi of the component Wifi Handler. Such manipulation of the argument wifiPwd leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
M Crítico vulnerabilidad
Hace 4 días
Vulnerabilidad crítica de desbordamiento de búfer en Totolik A3002MU 1.0.0-B20230403.1455
Se ha identificado una vulnerabilidad de desbordamiento de búfer basado en pila (CVSS 10.0) en el manejador de reglas QoS del router Totolik A3002MU. La vulnerabilidad afecta el componente /boafrm/formIpQoS y puede ser explotada remotamente manipulando parámetros como addQos/comment/entry_name. El exploit ha sido divulgado públicamente, elevando el riesgo para infraestructuras críticas que utilizan este dispositivo en México y Latinoamérica.
M Crítico vulnerabilidad
02/10/2026
[CVE-2026-104610] A security vulnerability has been detected in Tenda HG7, HG9 and HG10 300001138_en_xpon. This impact…
A security vulnerability has been detected in Tenda HG7, HG9 and HG10 300001138_en_xpon. This impacts the function boaGetVar of the file /boaform/formLoopBack of the component Boa Web Server. Such manipulation of the argument Ethtype leads to stack-based buffer overflow. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.
M Crítico vulnerabilidad
02/10/2026
[CVE-2026-104611] A vulnerability was detected in Tenda AC9 15.03.02.13. Affected is an unknown function of the file /…
A vulnerability was detected in Tenda AC9 15.03.02.13. Affected is an unknown function of the file /goform/fast_setting_internet_set of the component POST Request Handler. Performing a manipulation of the argument netWanType results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Crítico vulnerabilidad
01/10/2026
[CVE-2026-12627] Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability …
Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with network access to the autoregistration service may be able to trigger memory corruption during client response processing.