Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
39 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.4) | — | — | Dell Csi-powerflexAIDell Csi-powermaxAIDell Csi-powerstoreAI | 6/10/2026 | 6/10/2026 | Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability in the csi-powerflex; csi-powermax; csi-powerstore. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure. | |
| Pendiente de análisis | Alta (7.3) | 0.17% | — | Dell AppsyncAIDell Metro NodeAIDell UCC EdgeAIDell VxrailAI+5 | 18/8/2026 | 20/8/2026 | Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, Dell Unity Version 5.4, Dell PowerFlex Manager Version 4.5.4, Dell PowerFlex Intelligent Catalog Versions 46.377.00 and 46.382.00 and Dell PowerFlex Rack version 4.5.4… | |
| Analizada | Media (5.3) | 0.30% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Analizada | Alta (8.8) | 0.86% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a Deserialization of Untrusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. | |
| Analizada | Media (6.5) | 0.45% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a path traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to read arbitrary files. | |
| Pendiente de análisis | Alta (8) | 1.3% | — | Dell Csi-powerstoreAIDell Csi-unityAIDell Csi-powerflexAIDell Csi-powermaxAI | 26/6/2026 | 26/6/2026 | Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-powermax v2.16.0, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially… | |
| Analizada | Alta (7.5) | 0.25% | — | Dell Unisphere FOR Powermax Virtual Appliance | 22/5/2026 | 23/7/2026 | Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the Unisphere for VMAX application running in vApp | |
| Analizada | Alta (8.1) | 0.53% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized modification of critical system files. | |
| Analizada | Media (6.5) | 0.40% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure. | |
| Analizada | Alta (8.1) | 0.46% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to delete arbitrary files. | |
| Analizada | Alta (8.8) | 0.51% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the ability to overwrite arbitrary files. | |
| Analizada | Alta (8.8) | 0.43% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Missing Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Aplazada | Media (5.4) | 0.29% | — | Dell Unisphere FOR PowermaxAI | 17/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript code in… | |
| Aplazada | Media (5.4) | 0.17% | — | Dell Unisphere FOR Powermax VappAI | 17/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript… | |
| Modificada | Alta (8.8) | 0.65% | — | Dell Unisphere FOR PowermaxDell Unisphere FOR Powermax Virtual Appliance | 22/1/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution. | |
| Analizada | Alta (7.1) | 0.28% | — | Dell Unisphere FOR PowermaxDell Unisphere FOR Powermax Virtual Appliance | 6/1/2026 | 30/9/2026 | Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control. | |
| Analizada | Alta (7.2) | 0.65% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 27/6/2025 | 17/6/2026 | Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution. | |
| Analizada | Media (4.7) | 0.29% | — | Dell Unisphere FOR Powermax | 7/4/2025 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) prior to 10.2.0.9 and PowerMax version(s) prior to PowerMax 9.2.4.15, contain an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability,… | |
| Analizada | Alta (8.8) | 1.4% | — | Dell Powermax EEMDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 28/3/2024 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity. | |
| Analizada | Alta (8.8) | 1.4% | — | Dell Powermax EEMDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 28/3/2024 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity. | |
| Modificada | Alta (7.5) | 0.76% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability. A remote attacker could potentially exploit this vulnerability leading to obtain sensitive information that may aid in further attacks. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. |