Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
386 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 14% | — | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. To exploit these vulnerabilities, an attacker would need… | |
| Modificada | Alta (7.2) | 50% | — | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the REST and SOAP API endpoints and the Application Framework feature of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. To exploit these vulnerabilities, an attacker would need… | |
| Modificada | Alta (7.2) | 3.3% | — | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the REST and SOAP API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker with administrative privileges on the DCNM application to inject arbitrary commands on the underlying operating system (OS). For more information about these… | |
| Modificada | Alta (7.2) | 37% | 💥 Exploit | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the REST and SOAP API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker with administrative privileges on the DCNM application to inject arbitrary commands on the underlying operating system (OS). For more information about these… | |
| Modificada | Alta (7.5) | 38% | 💥 Exploit | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the authentication mechanisms of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected device. For more information about these vulnerabilities, see the… | |
| Modificada | Crítica (9.8) | 93% | 💥 Exploit | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the authentication mechanisms of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected device. For more information about these vulnerabilities, see the… | |
| Modificada | Crítica (9.8) | 96% | 💥 Exploit | Cisco Data Center Network Manager | 6/1/2020 | 17/6/2026 | Multiple vulnerabilities in the authentication mechanisms of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected device. For more information about these vulnerabilities, see the… | |
| Modificada | Alta (7.2) | 11% | — | Atlassian Jira ServerAtlassian Jira Data Center | 19/9/2019 | 17/6/2026 | The Jira Importers Plugin in Atlassian Jira Server and Data Cente from version with 7.0.10 before 7.6.16, from 7.7.0 before 7.13.8, from 8.0.0 before 8.1.3, from 8.2.0 before 8.2.5, from 8.3.0 before 8.3.4 and from 8.4.0 before 8.4.1 allows remote attackers with Administrator permissions to gain remote code execution… | |
| Modificada | Media (5.3) | 79% | 💥 Exploit | Cisco Data Center Network Manager | 27/6/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to retrieve sensitive information from an affected device. The vulnerability is due to improper access controls for certain URLs on affected DCNM software. An attacker could… | |
| Modificada | Alta (7.5) | 30% | — | Cisco Data Center Network Manager | 27/6/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to gain access to sensitive files on an affected device. The vulnerability is due to incorrect permissions settings on affected DCNM software. An attacker could exploit this… | |
| Modificada | Crítica (9.8) | 84% | 💥 Exploit | Cisco Data Center Network Manager | 27/6/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to upload arbitrary files on an affected device. The vulnerability is due to incorrect permission settings in affected DCNM software. An attacker could exploit this… | |
| Modificada | Crítica (9.8) | 83% | 💥 Exploit | Cisco Data Center Network Manager | 27/6/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected device. The vulnerability is due to improper session management on… | |
| Modificada | Media (5.5) | 0.39% | — | Intel Software Guard ExtensionsIntel Software Guard Extensions Data Center Attestation Primitives | 13/6/2019 | 17/6/2026 | Insufficient input validation in the Intel(R) SGX driver for Linux may allow an authenticated user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.4) | 3.3% | — | Atlassian Application LinksAtlassian Confluence Data CenterAtlassian Confluence ServerAtlassian Crowd+4 | 30/4/2019 | 17/6/2026 | Application Links before version 5.0.11, from version 5.1.0 before 5.2.10, from version 5.3.0 before 5.3.6, from version 5.4.0 before 5.4.12, and from version 6.0.0 before 6.0.4 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the applinkStartingUrl… | |
| Modificada | Media (4.4) | 0.45% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Improper flow control in crypto routines for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable a denial of service via local access. | |
| Modificada | Media (5.5) | 0.41% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.46% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient key management for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.46% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Improper folder permissions in Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.41% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable disclosure of information via local access. | |
| Modificada | Media (6.7) | 0.47% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient user prompt in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.7) | 0.47% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient run protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.40% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient file permissions checking in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.46% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient file protection in uninstall routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.46% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient file protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Alta (8.8) | 1.3% | — | Intel Data Center Manager | 18/2/2019 | 17/6/2026 | Insufficient session authentication in web server for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access. |