Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

474 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)0.67%—Mtouch Quiz Project Mtouch Quiz20/9/201917/6/2026
The mtouch-quiz plugin before 3.1.3 for WordPress has wp-admin/options-general.php CSRF.
ModificadaMedia (6.1)1.0%—Mtouch Quiz Project Mtouch Quiz20/9/201917/6/2026
The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via the quiz parameter during a Quiz Manage operation.
ModificadaAlta (7.5)0.66%—Couchbase Server10/9/201917/6/2026
In Couchbase Server 5.0.0, when an invalid Remote Cluster Certificate was entered as part of the reference creation, XDCR did not parse and check the certificate signature. It then accepted the invalid certificate and attempted to use it to establish future connections to the remote cluster. This has been fixed in…
ModificadaCrítica (9.1)1.4%—Couchbase Server10/9/201917/6/2026
In versions of Couchbase Server prior to 5.0, the bucket named "default" was a special bucket that allowed read and write access without authentication. As part of 5.0, the behavior of all buckets including "default" were changed to only allow access by authenticated users with sufficient authorization. However, users…
ModificadaCrítica (9.8)2.1%—Couchbase Server10/9/201917/6/2026
In Couchbase Server 5.1.1, the cookie used for intra-node communication was not generated securely. Couchbase Server uses erlang:now() to seed the PRNG which results in a small search space for potential random seeds that could then be used to brute force the cookie and execute code against a remote system. This has…
ModificadaAlta (7.5)1.3%—Couchbase Server10/9/201917/6/2026
In Couchbase Server 4.6.3 and 5.5.0, secondary indexing encodes the entries to be indexed using collatejson. When index entries contain certain characters like \t, <, >, it caused buffer overrun as encoded string would be much larger than accounted for, causing indexer service to crash and restart. This has been…
ModificadaMedia (5.3)1.1%—Couchbase Server10/9/201917/6/2026
In Couchbase Server 6.0.0 and 5.5.0, the eventing service exposes system diagnostic profile via an HTTP endpoint that does not require credentials on a port earmarked for internal traffic only. This has been remedied in version 6.0.1 and now requires valid credentials to access.
ModificadaMedia (5.3)1.2%—Couchbase Server10/9/201917/6/2026
An issue was discovered in Couchbase Server 5.5.x through 5.5.3 and 6.0.0. The Memcached "connections" stat block command emits a non-redacted username. The system information submitted to Couchbase as part of a bug report included the usernames for all users currently logged into the system even if the log was…
ModificadaMedia (6.1)0.85%—Couchbase Server10/9/201917/6/2026
Some enterprises require that REST API endpoints include security-related headers in REST responses. Headers such as X-Frame-Options and X-Content-Type-Options are generally advisable, however some information security professionals additionally look for X-Permitted-Cross-Domain-Policies and X-XSS-Protection, which…
ModificadaAlta (7.8)1.4%—Ezautomation EZ Touch Editor4/9/201917/6/2026
An attacker could use a specially crafted project file to overflow the buffer and execute code under the privileges of the EZ Touch Editor Versions 2.1.0 and prior.
ModificadaCrítica (9.8)12%💥 ExploitAsus Precision Touchpad4/9/201917/6/2026
AsusPTPFilter.sys on Asus Precision TouchPad 11.0.0.25 hardware has a Pool Overflow associated with the \\.\AsusTP device, leading to a DoS or potentially privilege escalation via a crafted DeviceIoControl call.
ModificadaMedia (6.5)1.2%—Lenovo Legion Y520t Z370 FirmwareLenovo Aio310-20iap FirmwareLenovo Aio510-22ish FirmwareLenovo Aio510-23ish Firmware+10429/8/201917/6/2026
There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege. The following are affected products and versions: Legion Y520T_Z370 6.0.1.8642, AIO310-20IAP 6.0.1.8642, AIO510-22ISH 6.0.1.8642, AIO510-23ISH…
ModificadaCrítica (9.8)2.7%—Couchbase Sync Gateway26/6/201917/6/2026
In Couchbase Sync Gateway 2.1.2, an attacker with access to the Sync Gateway’s public REST API was able to issue additional N1QL statements and extract sensitive data or call arbitrary N1QL functions through the parameters "startkey" and "endkey" on the "_all_docs" endpoint. By issuing nested queries with…
ModificadaBaja (3.8)0.70%—Synaptics Touchpad Driver21/3/201917/6/2026
SynTP.sys in Synaptics Touchpad drivers before 2018-06-06 allows local users to obtain sensitive information about freed kernel addresses.
ModificadaMedia (6.1)1.1%—Bose Soundtouch21/3/201917/6/2026
An issue was discovered in the Bose Soundtouch app 18.1.4 for iOS. There is no frontend input validation of the device name. A malicious device name can execute JavaScript on the registered Bose User Account if a speaker has been connected to the app.
ModificadaCrítica (9.1)1.3%—Chuango Wifi Alarm System FirmwareChuango Wifi/cellular Smart Home System H4 Plus FirmwareChuango AWV Plus Wifi Alarm System FirmwareChuango G5W 3G Firmware+711/3/201917/6/2026
The Chuango 433 MHz burglar-alarm product line uses static codes in the RF remote control, allowing an attacker to arm, disarm, or trigger the alarm remotely via replay attacks, as demonstrated by Chuango branded products, and non-Chuango branded products such as the Eminent EM8617 OV2 Wifi Alarm System.
ModificadaAlta (7.5)14%💥 ExploitAveva Indusoft WEB StudioAveva Intouch Machine Edition 201413/2/201917/6/2026
AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a specially crafted database connection configuration file to execute an arbitrary process on the server machine.
ModificadaCrítica (9.8)17%💥 ExploitAveva Indusoft WEB StudioAveva Intouch Machine Edition 201413/2/201917/6/2026
AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. Code is executed under the program runtime privileges, which could lead to the compromise of the machine.
ModificadaAlta (7.2)3.2%—Apache Couchdb2/1/201917/6/2026
Prior to CouchDB version 2.3.0, CouchDB allowed for runtime-configuration of key components of the database. In some cases, this lead to vulnerabilities where CouchDB admin users could access the underlying operating system as the CouchDB user. Together with other vulnerabilities, it allowed full system entry for…
ModificadaCrítica (9.8)3.7%—Aveva Indusoft WEB StudioAveva EdgeAveva Intouch Machine Edition 20142/11/201817/6/2026
InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2. A remote attacker could send a carefully crafted packet to exploit a stack-based buffer overflow vulnerability during tag, alarm, or event related actions such as read and write, with…
ModificadaCrítica (9.8)4.6%—Aveva Indusoft WEB StudioAveva EdgeAveva Intouch Machine Edition 20142/11/201817/6/2026
InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2. This vulnerability could allow an unauthenticated user to remotely execute code with the same privileges as that of the InduSoft Web Studio or InTouch Edge HMI (formerly InTouch Machine…
ModificadaCrítica (9.8)1.6%—Rainmachine Mini-8 FirmwareRainmachine Touch HD 12 Firmware1/11/201817/6/2026
An authentication bypass vulnerability exists in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allowing an unauthenticated attacker to perform authenticated actions on the device via a 127.0.0.1:port value in the HTTP 'Host' header, as demonstrated by retrieving credentials.
ModificadaAlta (7.5)1.2%—Douchat29/10/201817/6/2026
An XXE issue was discovered in Douchat 4.0.4 because Data\notify.php calls simplexml_load_string. This can also be used for SSRF.
ModificadaMedia (5.9)0.53%—HP 310s-14isk FirmwareHP 320-15ikbra FirmwareHP 320-15ikbrn FirmwareHP 320-15ikbrn Touch Firmware+642/10/201817/6/2026
In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device locking mechanism is not adequately protected against, potentially allowing an attacker with administrator access to alter the contents of BIOS.
ModificadaAlta (7.8)0.56%—Apache Couchdb21/9/201817/6/2026
CouchDB in Vectra Networks Cognito Brain and Sensor before 4.3 contains a local code execution vulnerability.
Orbitaley — Vulnerabilidades