Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
1734 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 14% | ⚠ Explotación activa💥 PoC | Microsoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+9 | 12/11/2024 | 4/8/2026 | Windows Task Scheduler Elevation of Privilege Vulnerability | |
| Analizada | Media (6.5) | 84% | ⚠ Explotación activa💥 PoC | Microsoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+11 | 12/11/2024 | 17/6/2026 | NTLM Hash Disclosure Spoofing Vulnerability | |
| Analizada | Crítica (9.8) | 87% | ⚠ Explotación activa💥 Exploit | Cyberpanel | 29/10/2024 | 4/8/2026 | upgrademysqlstatus in databases/views.py in CyberPanel (aka Cyber Panel) before 5b08cd6 allows remote attackers to bypass authentication and execute arbitrary commands via /dataBases/upgrademysqlstatus by bypassing secMiddleware (which is only for a POST request) and using shell metacharacters in the statusfile… | |
| Analizada | Crítica (9.8) | 95% | ⚠ Explotación activa💥 Exploit | Cyberpanel | 29/10/2024 | 5/8/2026 | getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers to bypass authentication and execute arbitrary commands via /dns/getresetstatus or /ftp/getresetstatus by bypassing secMiddleware (which is only for a POST request) and using shell metacharacters in… | |
| En análisis | Crítica (9.8) | 99% | ⚠ Explotación activa💥 Exploit | Cleo HarmonyCleo LexicomCleo Vltrader | 27/10/2024 | 7/10/2026 | In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file upload and download that could lead to remote code execution. | |
| Analizada | Media (5.8) | 16% | ⚠ Explotación activa | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 23/10/2024 | 11/8/2026 | A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the RAVPN service. This vulnerability is due to resource exhaustion. An… | |
| Analizada | Crítica (9.8) | 95% | ⚠ Explotación activa💥 Exploit | Fortinet FortimanagerFortinet Fortimanager Cloud | 23/10/2024 | 17/6/2026 | A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2.0 through 7.2.7, FortiManager 7.0.0 through 7.0.12, FortiManager 6.4.0 through 6.4.14, FortiManager 6.2.0 through 6.2.12, Fortinet FortiManager Cloud 7.4.1 through 7.4.4, FortiManager Cloud 7.2.1… | |
| Analizada | Crítica (9.1) | 98% | ⚠ Explotación activa💥 Exploit | Mitel Micollab | 21/10/2024 | 4/8/2026 | A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct a path traversal attack, due to insufficient input validation. A successful exploit could allow unauthorized access, enabling the attacker to view,… | |
| Analizada | Crítica (9.3) | 3.8% | ⚠ Explotación activa | Sciencelogic SL1 | 18/10/2024 | 17/6/2026 | ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an unspecified third-party component packaged with SL1. The vulnerability is addressed in SL1 versions 12.1.3+, 12.2.3+, and 12.3+. Remediations have been made available for all SL1 versions back to version lines 10.1.x, 10.2.x,… | |
| Analizada | Crítica (9.2) | 100% | ⚠ Explotación activa💥 Exploit | Paloaltonetworks Expedition | 9/10/2024 | 17/6/2026 | An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create and read arbitrary files on the Expedition system. | |
| Analizada | Crítica (9.9) | 99% | ⚠ Explotación activa💥 Exploit | Paloaltonetworks Expedition | 9/10/2024 | 17/6/2026 | An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of PAN-OS firewalls. | |
| Analizada | Crítica (9.8) | 23% | ⚠ Explotación activa💥 PoC | Mozilla FirefoxMozilla ThunderbirdDebian Linux | 9/10/2024 | 4/8/2026 | An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1,… | |
| Analizada | Alta (8.1) | 46% | ⚠ Explotación activa | Microsoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+10 | 8/10/2024 | 17/6/2026 | Windows MSHTML Platform Spoofing Vulnerability | |
| Analizada | Alta (7.8) | 67% | ⚠ Explotación activa | Microsoft Windows 10 1507Microsoft Windows 10 1607Microsoft Windows 10 1809Microsoft Windows 10 21h2+11 | 8/10/2024 | 17/6/2026 | Microsoft Management Console Remote Code Execution Vulnerability | |
| Analizada | Crítica (9.8) | 81% | ⚠ Explotación activa💥 PoC | Microsoft Configuration Manager 2403Microsoft Configuration Manager 2409Microsoft Configuration Manager 2503 | 8/10/2024 | 17/6/2026 | Microsoft Configuration Manager Remote Code Execution Vulnerability | |
| Analizada | Alta (7.2) | 60% | ⚠ Explotación activa | Ivanti Endpoint Manager Cloud Services Appliance | 8/10/2024 | 17/6/2026 | An OS command injection vulnerability in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to obtain remote code execution. | |
| Analizada | Alta (7.2) | 44% | ⚠ Explotación activa | Ivanti Endpoint Manager Cloud Services Appliance | 8/10/2024 | 1/10/2026 | SQL injection in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to run arbitrary SQL statements. | |
| Analizada | Alta (7.8) | 0.67% | ⚠ Explotación activa | Qualcomm Fastconnect 6700 FirmwareQualcomm Fastconnect 6800 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+60 | 7/10/2024 | 17/6/2026 | Memory corruption while maintaining memory maps of HLOS memory. | |
| Analizada | Crítica (9.8) | 100% | ⚠ Explotación activa💥 Exploit | Synacor Zimbra Collaboration Suite | 2/10/2024 | 17/6/2026 | The postjournal service in Zimbra Collaboration (ZCS) before 8.8.15 Patch 46, 9 before 9.0.0 Patch 41, 10 before 10.0.9, and 10.1 before 10.1.1 sometimes allows unauthenticated users to execute commands. | |
| Analizada | Crítica (9.1) | 99% | ⚠ Explotación activa💥 Exploit | Ivanti Endpoint Manager Cloud Services Appliance | 19/9/2024 | 17/6/2026 | Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality. | |
| Analizada | Alta (7.2) | 80% | ⚠ Explotación activa | Ptzoptics Pt30x-sdi FirmwarePtzoptics Pt30x-ndi-xx-g2 Firmware | 17/9/2024 | 17/6/2026 | PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not sufficiently validate the ntp_addr configuration value which may lead to arbitrary command execution when ntp_client is started. When chained with CVE-2024-8956, a remote and unauthenticated attacker… | |
| Analizada | Crítica (9.1) | 59% | ⚠ Explotación activa | Ptzoptics Pt30x-sdi FirmwarePtzoptics Pt30x-ndi-xx-g2 Firmware | 17/9/2024 | 17/6/2026 | PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does not properly enforce authentication to /cgi-bin/param.cgi when requests are sent without an HTTP Authorization header. The result is a remote and unauthenticated attacker can leak sensitive data… | |
| Analizada | Crítica (9.8) | 17% | ⚠ Explotación activa | Vmware Cloud FoundationVmware Vcenter Server | 17/9/2024 | 17/6/2026 | The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted network packet. | |
| Analizada | Crítica (9.8) | 55% | ⚠ Explotación activa | Vmware Cloud FoundationVmware Vcenter Server | 17/9/2024 | 17/6/2026 | The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted network packet potentially leading to remote code execution. | |
| Analizada | Alta (7.2) | 89% | ⚠ Explotación activa💥 PoC | Ivanti Cloud Services Appliance | 10/9/2024 | 17/6/2026 | An OS command injection vulnerability in Ivanti Cloud Services Appliance versions 4.6 Patch 518 and before allows a remote authenticated attacker to obtain remote code execution. The attacker must have admin level privileges to exploit this vulnerability. |