Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
409 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.16% | — | HPE Intelligent Provisioning | 18/7/2023 | 17/6/2026 | The vulnerability could be locally exploited to allow escalation of privilege. | |
| Modificada | Alta (7.8) | 0.17% | — | HPE SGI UV 300 RMC FirmwareHPE Integrity Mc990 X Server RMC Firmware | 16/6/2023 | 17/6/2026 | The MC990 X and UV300 RMC component has and inadequate default configuration that could be exploited to obtain enhanced privilege. | |
| Modificada | Media (5.5) | 0.16% | — | HPE Insight Remote Support | 16/6/2023 | 17/6/2026 | A security vulnerability in HPE Insight Remote Support may result in the local disclosure of privileged LDAP information. | |
| Modificada | Media (5.5) | 0.19% | — | HP OneviewHPE Oneview Global Dashboard | 25/4/2023 | 17/6/2026 | HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens | |
| Modificada | Media (5.5) | 0.18% | — | HPE Oneview Global Dashboard | 14/4/2023 | 17/6/2026 | An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials | |
| Modificada | Alta (8.8) | 1.1% | — | HPE Arubaos-cx | 22/3/2023 | 17/6/2026 | — | |
| Modificada | Media (6.1) | 0.33% | — | HPE Flexfabric 5700 40xg 2qsfp+ FirmwareHPE Flexfabric 5700 48G 4XG 2qsfp+ Firmware | 22/3/2023 | 17/6/2026 | Potential security vulnerabilities have been identified in the HPE FlexFabric 5700 Switch Series. These vulnerabilities could be remotely exploited to allow host header injection and URL redirection. HPE has made the following software to resolve the vulnerability in HPE FlexFabric 5700 Switch Series version R2432P61… | |
| Modificada | Media (5.5) | 0.19% | — | HPE Superdome Flex 280 Server FirmwareHPE Superdome Flex Server Firmware | 10/3/2023 | 17/6/2026 | A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has made the following software to resolve the vulnerability in HPE Superdome Flex Servers v3.65.8 and Superdome Flex 280… | |
| Modificada | Crítica (9.8) | 0.62% | — | HPE Serviceguard FOR Linux | 1/3/2023 | 17/6/2026 | Unauthenticated server side request forgery in HPE Serviceguard Manager | |
| Modificada | Crítica (9.8) | 0.71% | — | HPE Serviceguard FOR Linux | 1/3/2023 | 17/6/2026 | Pre-auth memory corruption in HPE Serviceguard | |
| Modificada | Crítica (9.8) | 0.79% | — | HPE Serviceguard FOR Linux | 1/3/2023 | 17/6/2026 | Unauthenticated Java deserialization vulnerability in Serviceguard Manager | |
| Modificada | Alta (7.5) | 0.66% | — | IBM MQ FOR HPE Nonstop | 27/2/2023 | 17/6/2026 | IBM MQ for HPE NonStop 8.1.0 is vulnerable to a denial of service attack due to an error within the CCDT and channel synchronization logic. IBM X-Force ID: 235727. | |
| Modificada | Alta (7.5) | 1.8% | — | HP Officeconnect 1820 24G Poe+ (185w) Switch J9983a FirmwareHP Officeconnect 1820 48G Poe+ (370w) Switch J9984a FirmwareHP Officeconnect 1820 8G Poe+ (65w) Switch J9982a FirmwareHP Officeconnect 1820 8G Switch J9979a Firmware+6 | 5/1/2023 | 17/6/2026 | A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploited to allow remote directory traversal in HPE OfficeConnect 1820 switch series version PT.02.17 and below, HPE OfficeConnect 1850 switch series version PC.01.23 and… | |
| Modificada | Alta (7.8) | 0.27% | — | HPE Superdome Flex 280 FirmwareHPE Superdome Flex Firmware | 5/1/2023 | 17/6/2026 | A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be exploited to allow local unauthorized data injection. HPE has made the following software updates to resolve the vulnerability in HPE Superdome Flex firmware 3.60.50 and below and… | |
| Modificada | Crítica (9.8) | 2.8% | 💥 Exploit | HPE Officeconnect 1820 J9979a FirmwareHPE Officeconnect 1820 J9982a FirmwareHPE Officeconnect 1820 J9980a FirmwareHPE Officeconnect 1820 J9983a Firmware+15 | 12/12/2022 | 17/6/2026 | — | |
| Modificada | Media (5.5) | 0.17% | — | HPE Sf100 FirmwareHPE Sf300 FirmwareHPE Hf60c FirmwareHPE Hf40c Firmware+5 | 12/12/2022 | 17/6/2026 | A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays and HPE Nimble Storage Secondary Flash Arrays which could potentially allow local disclosure of sensitive information. | |
| Modificada | Media (5.5) | 0.15% | — | HPE Sf100 FirmwareHPE Sf300 FirmwareHPE Hf60c FirmwareHPE Hf40c Firmware+5 | 12/12/2022 | 17/6/2026 | Improper Privilege Management vulnerability in Hewlett Packard Enterprise Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays. | |
| Modificada | Media (6.5) | 0.30% | — | HPE Sf100 FirmwareHPE Sf300 FirmwareHPE Hf60c FirmwareHPE Hf40c Firmware+5 | 12/12/2022 | 17/6/2026 | Insufficient Verification of Data Authenticity vulnerability in Hewlett Packard Enterprise HPE Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays. | |
| Modificada | Media (6.1) | 0.38% | — | HPE Oneview Global Dashboard | 12/12/2022 | 17/6/2026 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Hewlett Packard Enterprise HPE OneView Global Dashboard (OVGD). | |
| Modificada | Alta (8.8) | 0.54% | — | HPE Integrated Lights-out 5 Firmware | 20/9/2022 | 17/6/2026 | A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO… | |
| Modificada | Alta (8.8) | 0.58% | — | HPE Integrated Lights-out 5 Firmware | 20/9/2022 | 17/6/2026 | A remote potential adjacent denial of service (DoS) and potential adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided… | |
| Modificada | Alta (7.8) | 0.27% | — | HPE Integrated Lights-out 5 Firmware | 20/9/2022 | 17/6/2026 | An isolated local disclosure of information and potential isolated local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated… | |
| Modificada | Alta (7.8) | 0.27% | — | HPE Integrated Lights-out 5 Firmware | 20/9/2022 | 17/6/2026 | A local Denial of Service (DoS) and local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated… | |
| Modificada | Alta (7.4) | 0.19% | — | HPE Integrated Lights-out 5 Firmware | 12/8/2022 | 17/6/2026 | A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to potentially execute arbitrary code in an… | |
| Modificada | Alta (7.4) | 0.19% | — | HPE Integrated Lights-out 5 Firmware | 12/8/2022 | 17/6/2026 | A potential local arbitrary code execution and a local denial of service (DoS) vulnerability within an isolated process were discovered in HPE Integrated Lights-Out 5 (iLO 5) firmware version(s): Prior to 2.71. An unprivileged user could locally exploit this vulnerability to potentially execute arbitrary code in an… |