Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
694 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 1.7% | — | Siemens Simatic HMI Comfort Panels FirmwareSiemens Simatic HMI Comfort Outdoor Panels FirmwareSiemens Simatic HMI KTP Mobile Panels Ktp400f FirmwareSiemens Simatic HMI KTP Mobile Panels Ktp700 Firmware+8 | 13/12/2018 | 17/6/2026 | A vulnerability has been identified in SIMATIC HMI Comfort Panels 4" - 22" (All versions < V15 Update 4), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (All versions < V15 Update 4), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V15 Update 4), SIMATIC WinCC Runtime Advanced… | |
| Modificada | Alta (7.5) | 3.6% | — | Siemens Simatic HMI Comfort Panels FirmwareSiemens Simatic HMI Comfort Outdoor Panels FirmwareSiemens Simatic HMI KTP Mobile Panels Ktp400f FirmwareSiemens Simatic HMI KTP Mobile Panels Ktp700 Firmware+8 | 13/12/2018 | 17/6/2026 | A vulnerability has been identified in SIMATIC HMI Comfort Panels 4" - 22" (All versions < V15 Update 4), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (All versions < V15 Update 4), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V15 Update 4), SIMATIC WinCC Runtime Advanced… | |
| Modificada | Crítica (9.8) | 12% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 29/11/2018 | 17/6/2026 | Flash Player versions 31.0.0.148 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (7.5) | 7.4% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 29/11/2018 | 17/6/2026 | Flash Player versions 31.0.0.122 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (7.5) | 7.2% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 25/9/2018 | 17/6/2026 | Adobe Flash Player versions 30.0.0.154 and earlier have a privilege escalation vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 0.94% | — | Pivotal Cloud Foundry Container Runtime | 17/9/2018 | 17/6/2026 | Cloud Foundry Container Runtime (kubo-release), versions prior to 0.14.0, may leak UAA and vCenter credentials to application logs. A malicious user with the ability to read the application logs could use these credentials to escalate privileges. | |
| Modificada | Media (5.9) | 1.2% | — | Pivotal Software Cloud Foundry Elastic Runtime | 11/9/2018 | 17/6/2026 | Pivotal Cloud Foundry Elastic Runtime version 1.4.0 through 1.4.5, 1.5.0 through 1.5.11 and 1.6.0 through 1.6.11 is vulnerable to a remote information disclosure. It was found that original mitigation configuration instructions provided as part of CVE-2016-0708 were incomplete and could leave PHP Buildpack, Staticfile… | |
| Modificada | Media (5.9) | 11% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 29/8/2018 | 17/6/2026 | Adobe Flash Player 30.0.0.134 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (7.5) | 6.7% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 20/7/2018 | 17/6/2026 | Adobe Flash Player 30.0.0.113 and earlier versions have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 18% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 20/7/2018 | 17/6/2026 | Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Analizada | Alta (7.8) | 25% | ⚠ Explotación activa | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 13% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have an Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Media (6.5) | 14% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have an Integer Overflow vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 6.7% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 9/7/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 1.2% | — | Tibco Runtime Agent | 13/6/2018 | 17/6/2026 | The TIBCO Designer component of TIBCO Software Inc.'s TIBCO Runtime Agent, and TIBCO Runtime Agent for z/Linux contains vulnerabilities wherein a malicious user could perform XML external entity expansion (XXE) attacks to disclose host machine information. Affected releases are TIBCO Software Inc.'s TIBCO Runtime… | |
| Modificada | Alta (8.8) | 26% | 💥 Exploit | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 25% | 💥 Exploit | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Heap Overflow vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 26% | 💥 Exploit | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Media (6.5) | 20% | 💥 Exploit | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Media (6.5) | 4.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 5.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Use-After-Free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Alta (8.8) | 7.6% | — | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 28.0.0.161 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Alta (8.8) | 7.4% | — | Adobe Flash Player Desktop RuntimeAdobe Flash Player | 19/5/2018 | 17/6/2026 | Adobe Flash Player versions 28.0.0.161 and earlier have an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user. | |
| Modificada | Alta (7.5) | 2.4% | — | Siemens Openpcs 7Siemens Simatic BatchSiemens Simatic NET PCSiemens Simatic PCS 7+5 | 24/4/2018 | 17/6/2026 | A vulnerability has been identified in OpenPCS 7 V7.1 and earlier (All versions), OpenPCS 7 V8.0 (All versions), OpenPCS 7 V8.1 (All versions < V8.1 Upd5), OpenPCS 7 V8.2 (All versions), OpenPCS 7 V9.0 (All versions < V9.0 Upd1), SIMATIC BATCH V7.1 and earlier (All versions), SIMATIC BATCH V8.0 (All versions < V8.0… | |
| Modificada | Crítica (9.6) | 0.87% | — | Cloudfoundry Cf-releasePivotal Software Cloud Foundry Elastic Runtime | 29/3/2018 | 17/6/2026 | Applications in cf-release before 245 can be configured and pushed with a user-provided custom buildpack using a URL pointing to the buildpack. Although it is not recommended, a user can specify a credential in the URL (basic auth or OAuth) to access the buildpack through the CLI. For example, the user could include a… |