Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
371 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 0.73% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | An improper input validation vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found. | |
| Modificada | Media (4.3) | 0.73% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A clickjacking vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found. | |
| Modificada | Media (4.3) | 0.73% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A clickjacking vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found. | |
| Modificada | Media (5.3) | 3.2% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote unauthenticated disclosure of information vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found. | |
| Modificada | Media (6.5) | 1.4% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote information disclosure vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Media (6.5) | 0.98% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A missing HSTS Header vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Media (5.3) | 1.5% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote clickjacking vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Media (5.4) | 0.95% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A missing HSTS Header vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Alta (8.8) | 0.73% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A CSRF vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Media (6.5) | 1.6% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote clickjacking vulnerability in HPE Matrix Operating Environment version v7.6 was found. | |
| Modificada | Baja (3.5) | 0.60% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote HTTP parameter Pollution vulnerability in HPE Matrix Operating Environment version 7.6 was found. | |
| Modificada | Alta (8.8) | 1.2% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote privilege elevation vulnerability in HPE Matrix Operating Environment version 7.6 was found. | |
| Modificada | Alta (8.8) | 1.6% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote priviledge escalation vulnerability in HPE Matrix Operating Environment version 7.6 was found. | |
| Modificada | Media (5.4) | 0.54% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A cross site scripting vulnerability in HPE Matrix Operating Environment version 7.6 was found. | |
| Modificada | Media (5.3) | 1.9% | — | HP Matrix Operating Environment | 15/2/2018 | 17/6/2026 | A remote information disclosure vulnerability in HPE Matrix Operating Environment version 7.6 was found. | |
| Modificada | Media (5.3) | 0.65% | — | Matrixssl | 22/1/2018 | 17/6/2026 | MatrixSSL version 3.7.2 adopts a collision-prone OID comparison logic resulting in possible spoofing of OIDs (e.g. in ExtKeyUsage extension) on X.509 certificates. | |
| Modificada | Media (5.9) | 0.48% | — | Matrixssl | 9/1/2018 | 17/6/2026 | MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (delayed) by 100 years. | |
| Modificada | Crítica (9.8) | 2.2% | 💥 Exploit | MLM Forced Matrix Project MLM Forced Matrix | 13/12/2017 | 17/6/2026 | MLM Forced Matrix 2.0.9 has SQL Injection via the news-detail.php newid parameter. | |
| Modificada | Alta (8.8) | 1.8% | — | Squiz Matrix | 30/11/2017 | 17/6/2026 | An issue was discovered in Squiz Matrix before 5.3.6.1 and 5.4.x before 5.4.1.3. Authenticated users with permissions to edit design assets can cause Remote Code Execution (RCE) via a maliciously crafted time_format tag. | |
| Modificada | Media (6.1) | 0.60% | — | Squiz Matrix | 30/11/2017 | 17/6/2026 | An issue was discovered in Squiz Matrix before 5.3.6.1 and 5.4.x before 5.4.1.3. There are multiple reflected Cross-Site Scripting (XSS) issues in Matrix WYSIWYG plugins. | |
| Modificada | Alta (7.5) | 2.2% | — | Squiz Matrix | 30/11/2017 | 17/6/2026 | An issue was discovered in Squiz Matrix from 5.3 through to 5.3.6.1 and 5.4.1.3. An information disclosure caused by a Path Traversal issue in the 'File Bridge' plugin allowed the existence of files outside of the bridged path to be confirmed. | |
| Modificada | Media (5.9) | 0.75% | — | Twistedmatrix Txaws | 17/7/2017 | 17/6/2026 | txAWS (all current versions) fail to perform complete certificate verification resulting in vulnerability to MitM attacks and information disclosure. | |
| Modificada | Media (6.5) | 1.3% | — | Tibco Jasperreports Library Community EditionTibco Jasperreports Library FOR Activematrix BPMTibco Jasperreports ProfessionalTibco Jasperreports Server+5 | 29/6/2017 | 17/6/2026 | JasperReports library components contain an information disclosure vulnerability. This vulnerability includes the theoretical disclosure of any accessible information from the host file system. Affects TIBCO JasperReports Library Community Edition (versions 6.4.0 and below), TIBCO JasperReports Library for… | |
| Modificada | Crítica (9.1) | 1.0% | — | Matrixssl | 22/6/2017 | 17/6/2026 | An integer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a length counter to overflow, leading to a controlled out of bounds copy operation. To trigger this vulnerability, a specially crafted x509 certificate… | |
| Modificada | Crítica (9.8) | 2.3% | — | Matrixssl | 22/6/2017 | 17/6/2026 | An exploitable heap buffer overflow vulnerability exists in the X509 certificate parsing functionality of InsideSecure MatrixSSL 3.8.7b. A specially crafted x509 certificate can cause a buffer overflow on the heap resulting in remote code execution. To trigger this vulnerability, a specially crafted x509 certificate… |