Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

1734 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.8)14%⚠ Explotación activa💥 PoCMicrosoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+912/11/20244/8/2026
Windows Task Scheduler Elevation of Privilege Vulnerability
AnalizadaMedia (6.5)84%⚠ Explotación activa💥 PoCMicrosoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+1112/11/202417/6/2026
NTLM Hash Disclosure Spoofing Vulnerability
AnalizadaCrítica (9.8)87%⚠ Explotación activa💥 ExploitCyberpanel29/10/20244/8/2026
upgrademysqlstatus in databases/views.py in CyberPanel (aka Cyber Panel) before 5b08cd6 allows remote attackers to bypass authentication and execute arbitrary commands via /dataBases/upgrademysqlstatus by bypassing secMiddleware (which is only for a POST request) and using shell metacharacters in the statusfile…
AnalizadaCrítica (9.8)95%⚠ Explotación activa💥 ExploitCyberpanel29/10/20245/8/2026
getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers to bypass authentication and execute arbitrary commands via /dns/getresetstatus or /ftp/getresetstatus by bypassing secMiddleware (which is only for a POST request) and using shell metacharacters in…
En análisisCrítica (9.8)99%⚠ Explotación activa💥 ExploitCleo HarmonyCleo LexicomCleo Vltrader27/10/20247/10/2026
In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file upload and download that could lead to remote code execution.
AnalizadaMedia (5.8)16%⚠ Explotación activaCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software23/10/202411/8/2026
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the RAVPN service. This vulnerability is due to resource exhaustion. An…
AnalizadaCrítica (9.8)95%⚠ Explotación activa💥 ExploitFortinet FortimanagerFortinet Fortimanager Cloud23/10/202417/6/2026
A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2.0 through 7.2.7, FortiManager 7.0.0 through 7.0.12, FortiManager 6.4.0 through 6.4.14, FortiManager 6.2.0 through 6.2.12, Fortinet FortiManager Cloud 7.4.1 through 7.4.4, FortiManager Cloud 7.2.1…
AnalizadaCrítica (9.1)98%⚠ Explotación activa💥 ExploitMitel Micollab21/10/20244/8/2026
A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a path traversal attack, due to insufficient input validation. A successful exploit could allow unauthorized access, enabling the attacker to view,…
AnalizadaCrítica (9.3)3.8%⚠ Explotación activaSciencelogic SL118/10/202417/6/2026
ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an unspecified third-party component packaged with SL1. The vulnerability is addressed in SL1 versions 12.1.3+, 12.2.3+, and 12.3+. Remediations have been made available for all SL1 versions back to version lines 10.1.x, 10.2.x,…
AnalizadaCrítica (9.2)100%⚠ Explotación activa💥 ExploitPaloaltonetworks Expedition9/10/202417/6/2026
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create and read arbitrary files on the Expedition system.
AnalizadaCrítica (9.9)99%⚠ Explotación activa💥 ExploitPaloaltonetworks Expedition9/10/202417/6/2026
An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of PAN-OS firewalls.
AnalizadaCrítica (9.8)23%⚠ Explotación activa💥 PoCMozilla FirefoxMozilla ThunderbirdDebian Linux9/10/20244/8/2026
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1,…
AnalizadaAlta (8.1)46%⚠ Explotación activaMicrosoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+108/10/202417/6/2026
Windows MSHTML Platform Spoofing Vulnerability
AnalizadaAlta (7.8)67%⚠ Explotación activaMicrosoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+118/10/202417/6/2026
Microsoft Management Console Remote Code Execution Vulnerability
AnalizadaCrítica (9.8)81%⚠ Explotación activa💥 PoCMicrosoft Configuration Manager 2403Microsoft Configuration Manager 2409Microsoft Configuration Manager 25038/10/202417/6/2026
Microsoft Configuration Manager Remote Code Execution Vulnerability
AnalizadaAlta (7.2)60%⚠ Explotación activaIvanti Endpoint Manager Cloud Services Appliance8/10/202417/6/2026
An OS command injection vulnerability in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to obtain remote code execution.
AnalizadaAlta (7.2)44%⚠ Explotación activaIvanti Endpoint Manager Cloud Services Appliance8/10/20241/10/2026
SQL injection in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to run arbitrary SQL statements.
AnalizadaAlta (7.8)0.67%⚠ Explotación activaQualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+607/10/202417/6/2026
Memory corruption while maintaining memory maps of HLOS memory.
AnalizadaCrítica (9.8)100%⚠ Explotación activa💥 ExploitSynacor Zimbra Collaboration Suite2/10/202417/6/2026
The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands.
AnalizadaCrítica (9.1)99%⚠ Explotación activa💥 ExploitIvanti Endpoint Manager Cloud Services Appliance19/9/202417/6/2026
Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality.
AnalizadaAlta (7.2)80%⚠ Explotación activaPtzoptics Pt30x-sdi FirmwarePtzoptics Pt30x-ndi-xx-g2 Firmware17/9/202417/6/2026
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not sufficiently validate the ntp_addr configuration value which may lead to arbitrary command execution when ntp_client is started. When chained with CVE-2024-8956, a remote and unauthenticated attacker…
AnalizadaCrítica (9.1)59%⚠ Explotación activaPtzoptics Pt30x-sdi FirmwarePtzoptics Pt30x-ndi-xx-g2 Firmware17/9/202417/6/2026
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does not properly enforce authentication to /cgi-bin/param.cgi when requests are sent without an HTTP Authorization header. The result is a remote and unauthenticated attacker can leak sensitive data…
AnalizadaCrítica (9.8)17%⚠ Explotación activaVmware Cloud FoundationVmware Vcenter Server17/9/202417/6/2026
The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted network packet.
AnalizadaCrítica (9.8)55%⚠ Explotación activaVmware Cloud FoundationVmware Vcenter Server17/9/202417/6/2026
The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted network packet potentially leading to remote code execution.
AnalizadaAlta (7.2)89%⚠ Explotación activa💥 PoCIvanti Cloud Services Appliance10/9/202417/6/2026
An OS command injection vulnerability in Ivanti Cloud Services Appliance versions 4.6 Patch 518 and before allows a remote authenticated attacker to obtain remote code execution. The attacker must have admin level privileges to exploit this vulnerability.