Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2659▼ 692 respecto a la semana anterior
Críticas / altas1261▼ 300 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
–

670 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.6)0.29%—Dell Inspiron 14 Plus 7420 FirmwareDell Inspiron 14 Plus 7620 FirmwareDell Inspiron 3511 FirmwareDell Inspiron 3520 Firmware+718/3/202317/6/2026
Dell BIOS contains an Improper Authorization vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service.
ModificadaMedia (4.4)0.25%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+22316/2/202317/6/2026
Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access.
ModificadaMedia (4.4)0.22%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+4916/2/202317/6/2026
Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access.
ModificadaMedia (6.7)0.21%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+13216/2/202317/6/2026
Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)0.21%—Intel Xeon Gold 6138p FirmwareIntel Xeon Bronze 3104 FirmwareIntel Xeon Bronze 3106 FirmwareIntel Xeon Gold 5115 Firmware+17716/2/202317/6/2026
Improper initialization in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)0.21%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+4916/2/202317/6/2026
Use after free in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaAlta (7)0.22%—Intel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s FirmwareIntel Xeon Gold 5318y Firmware+22316/2/202317/6/2026
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.8)0.54%—Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+6216/2/202317/6/2026
Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.
ModificadaAlta (8.2)0.21%—Intel Xeon Gold 6342 FirmwareIntel Xeon Gold 6346 FirmwareIntel Xeon Gold 6330 FirmwareIntel Xeon Platinum 8360y Firmware+4916/2/202317/6/2026
Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaCrítica (9.8)0.47%—Qualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 FirmwareQualcomm Ar9380 Firmware+22412/2/202317/6/2026
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
ModificadaAlta (7.5)0.42%—Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8064au FirmwareQualcomm Apq8076 Firmware+29112/2/202317/6/2026
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
ModificadaAlta (7.8)0.12%—Qualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 FirmwareQualcomm Ar9380 Firmware+23912/2/202317/6/2026
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
ModificadaAlta (7.5)0.38%—Qualcomm Apq8096au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+24112/2/202317/6/2026
Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
ModificadaAlta (7.8)0.13%—Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+15812/2/202317/6/2026
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http.
ModificadaAlta (7.8)0.11%—Qualcomm Apq8096au FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar9380 FirmwareQualcomm Csr8811 Firmware+15312/2/202317/6/2026
Memory corruption due to improper access control in Qualcomm IPC.
ModificadaAlta (7.8)0.12%—Qualcomm Apq8009 FirmwareQualcomm Apq8009w FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+19712/2/202317/6/2026
Memory corruption due to configuration weakness in modem wile sending command to write protected files.
ModificadaAlta (7.8)0.12%—Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Qam8295p FirmwareQualcomm Qca6174a Firmware+10712/2/202317/6/2026
Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory.
ModificadaMedia (4.2)0.17%—Dell Alienware 13 R2 FirmwareDell Alienware 13 R3 FirmwareDell Alienware 15 R2 FirmwareDell Alienware 15 R3 Firmware+15310/2/202317/6/2026
Dell BIOS contains an information exposure vulnerability. An unauthenticated local attacker with physical access to the system and knowledge of the system configuration could potentially exploit this vulnerability to read system information via debug interfaces.
ModificadaAlta (7.2)2.8%—Zyxel Atp100 FirmwareZyxel Atp200 FirmwareZyxel Atp700 FirmwareZyxel Atp500 Firmware+217/2/202317/6/2026
A post-authentication command injection vulnerability in the CLI command of Zyxel ZyWALL/USG series firmware versions 4.20 through 4.72, VPN series firmware versions 4.30 through 5.32, USG FLEX series firmware versions 4.50 through 5.32, and ATP series firmware versions 4.32 through 5.32, which could allow an…
ModificadaAlta (8.8)0.17%—Dell Alienware M15 R6 FirmwareDell Alienware M15 R7 FirmwareDell Alienware M15 Ryzen Edition R5 FirmwareDell Alienware M17 R5 AMD Firmware+791/2/202317/6/2026
Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using an SMI to send larger than expected input to a parameter to gain arbitrary code execution in SMRAM.
ModificadaAlta (7)0.16%—Dell Alienware Area 51M R1 FirmwareDell Alienware Area 51M R2 FirmwareDell Alienware Aurora R10 FirmwareDell Alienware Aurora R11 Firmware+2351/2/202317/6/2026
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
ModificadaMedia (5.1)0.16%—Dell Alienware M15 R6 FirmwareDell Alienware M15 R7 FirmwareDell Chengming 3900 FirmwareDell G15 5510 Firmware+1851/2/202317/6/2026
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
ModificadaAlta (7.1)0.21%—Dell Alienware M15 R6 FirmwareDell Alienware M15 R7 FirmwareDell Alienware M15 Ryzen Edition R5 FirmwareDell Alienware M17 R5 AMD Firmware+791/2/202317/6/2026
Dell BIOS contains a heap buffer overflow vulnerability. A local attacker with admin privileges could potentially exploit this vulnerability to perform an arbitrary write to SMRAM during SMM.
ModificadaAlta (7.5)0.63%—Schneider-electric Modicon M340 Bmxp341000 FirmwareSchneider-electric Modicon M340 Bmxp342000 FirmwareSchneider-electric Modicon M340 Bmxp342010 FirmwareSchneider-electric Modicon M340 Bmxp3420102 Firmware+371/2/202317/6/2026
A CWE-200: Information Exposure vulnerability exists that could cause the exposure of sensitive information stored on the memory of the controller when communicating over the Modbus TCP protocol. Affected Products: Modicon M340 CPU (part numbers BMXP34*) (Versions prior to V3.30), Modicon M580 CPU (part numbers BMEP*…
ModificadaMedia (4.4)0.20%—Lenovo Ideacentre C5-14imb05 FirmwareLenovo Thinkcentre E96z FirmwareLenovo Ideacentre 3 07iab7 FirmwareLenovo Ideacentre 3-07imb05 Firmware+14330/1/202317/6/2026
An information leak vulnerability in SMI Handler used to configure platform settings over WMI in some Lenovo models may allow an attacker with local access and elevated privileges to read SMM memory.