Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
–

337 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.33%—Adobe Premiere Elements11/8/202217/6/2026
Adobe Premiere Elements version 2020v20 (and earlier) is affected by an Uncontrolled Search Path Element which could lead to Privilege Escalation. An attacker could leverage this vulnerability to obtain admin using an existing low-privileged user. Exploitation of this issue does not require user interaction.
ModificadaAlta (7.5)0.48%—F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+410/8/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.48%—F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+45/8/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.46%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+322/7/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning engine.
ModificadaAlta (7.5)0.45%—F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+322/7/202217/6/2026
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning engine.
ModificadaMedia (6.7)0.43%—F-secure Elements Endpoint Protection21/7/202217/6/2026
This vulnerability allows local user to delete arbitrary file in the system and bypassing security protection which can be abused for local privilege escalation on affected F-Secure & WithSecure windows endpoint products. An attacker must have code execution rights on the victim machine prior to successful…
ModificadaAlta (7.5)0.47%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+214/7/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaMedia (5.4)0.48%—Grid Elements Project Grid Elements12/7/202217/6/2026
The gridelements (aka Grid Elements) extension through 7.6.1, 8.x through 8.7.0, 9.x through 9.7.0, and 10.x through 10.2.0 extension for TYPO3 allows XSS.
ModificadaMedia (6.5)0.54%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+325/5/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaAlta (7.5)0.61%—F-secure AtlantF-secure Elements Endpoint ProtectionF-secure Linux SecurityWithsecure Cloud Protection FOR Salesforce+123/5/202217/6/2026
Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and heap buffer overflow which eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker.
ModificadaCrítica (9.8)6.9%💥 ExploitDevbunch Master Elements25/4/202217/6/2026
The Master Elements WordPress plugin through 8.0 does not validate and escape the meta_ids parameter of its remove_post_meta_condition AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an unauthenticated SQL Injection
ModificadaAlta (7.8)1.7%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
ModificadaAlta (7.8)1.6%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
ModificadaMedia (5.5)1.1%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this…
ModificadaMedia (5.5)1.1%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this…
ModificadaAlta (7.8)1.7%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
ModificadaAlta (7.8)1.7%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
ModificadaMedia (5.5)1.1%—Adobe Premiere Elements16/3/202217/6/2026
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this…
ModificadaAlta (7.3)0.74%—F-secure Client SecurityF-secure CounterceptF-secure ElementsF-secure Email AND Server Security+110/3/202217/6/2026
An arbitrary code execution vulnerability was found in the F-Secure Support Tool. A standard user can craft a special configuration file, which when run by administrator can execute any commands.
ModificadaMedia (6.5)0.63%—F-secure AtlantF-secure Elements Endpoint ProtectionF-secure Internet GatekeeperF-secure Linux Security+11/3/202217/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine.
ModificadaMedia (5.3)0.66%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Security Cloud+29/2/202217/6/2026
A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (5.4)1.6%💥 ExploitPremio Mystickyelements7/2/202217/6/2026
The All-in-one Floating Contact Form, Call, Chat, and 50+ Social Icon Tabs WordPress plugin before 2.0.4 was vulnerable to reflected XSS on the my-sticky-elements-leads admin page.
ModificadaMedia (5.5)0.46%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+222/12/202117/6/2026
A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (5.5)0.41%—F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+126/11/202117/6/2026
A vulnerability affecting F-Secure antivirus engine was discovered whereby unpacking UPX file can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine.
ModificadaMedia (6.5)0.56%—F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements FOR Microsoft 365F-secure Internet Gatekeeper+38/10/202117/6/2026
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVRDL unpacking module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the…