Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
659 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 2.1% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 2.1% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 2.0% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 2.0% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33+1 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 1.9% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 31Cisco Webex Business Suite 33 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 2.1% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33 | 5/10/2018 | 17/6/2026 | A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.3) | 1.1% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Business Suite 32Cisco Webex Business Suite 33+1 | 5/10/2018 | 17/6/2026 | A vulnerability in the folder permissions of Cisco Webex Meetings client for Windows could allow an authenticated, local attacker to modify locally stored files and execute code on a targeted device with the privilege level of the user. The vulnerability is due to folder permissions that grant a user the permission to… | |
| Modificada | Alta (7.8) | 1.8% | — | Cisco Webex Meetings OnlineCisco Webex Business SuiteCisco Webex Meeting Server | 18/7/2018 | 17/6/2026 | Multiple vulnerabilities exist in the Cisco Webex Network Recording Player for Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit these vulnerabilities by providing a user with a malicious .arf or .wrf file via email or URL and convincing the user to launch the file in… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 18/7/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Attachments / File Upload). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object… | |
| Modificada | Crítica (9.6) | 3.1% | — | Cisco Webex Business Suite 31Cisco Webex Business Suite 32Cisco Webex Meeting ServerCisco Webex Meetings | 2/5/2018 | 17/6/2026 | A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an unauthenticated, remote attacker to execute arbitrary code on the system of a targeted user. An attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious… | |
| Modificada | Crítica (9) | 2.6% | — | Cisco Webex Meetings ServerCisco Webex MeetingsCisco Webex Business Suite 31Cisco Webex Business Suite 32 | 19/4/2018 | 17/6/2026 | A vulnerability in Cisco WebEx Business Suite clients, Cisco WebEx Meetings, and Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute arbitrary code on a targeted system. The vulnerability is due to insufficient input validation by the Cisco WebEx clients. An attacker could exploit this… | |
| Modificada | Media (4.3) | 0.49% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Logging). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows physical access to compromise Oracle Application Object Library. Successful attacks require human interaction… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Diagnostics). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Consolidation Hierarchy Viewer). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Consolidation Hierarchy Viewer). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network… | |
| Modificada | Media (5.3) | 1.9% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Diagnostics). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to… | |
| Modificada | Alta (7.4) | 2.0% | — | Oracle E-business Suite | 19/4/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: DB Privileges). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to… | |
| Modificada | Media (4.9) | 1.5% | — | Oracle E-business Suite | 18/1/2018 | 17/6/2026 | Vulnerability in the Oracle User Management component of Oracle E-Business Suite (subcomponent: Registration Process). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise… | |
| Modificada | Crítica (9.1) | 1.9% | — | Oracle E-business Suite | 18/1/2018 | 17/6/2026 | Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Data Manager Server). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP… | |
| Modificada | Media (4.8) | 1.1% | — | Oracle E-business Suite | 18/1/2018 | 17/6/2026 | Vulnerability in the Oracle Application Object Library component of Oracle E-Business Suite (subcomponent: Login). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise… | |
| Modificada | Crítica (9.6) | 3.8% | — | Cisco Webex Business SuiteCisco Webex MeetingsCisco Webex Meetings ServerCisco Webex Network Recording Player | 4/1/2018 | 17/6/2026 | A vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a remote attacker to execute arbitrary code on the system of a targeted user. The attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and… | |
| Modificada | Alta (7.8) | 1.7% | — | Cisco Webex Business SuiteCisco Webex MeetingsCisco Webex Meetings ServerCisco Webex Network Recording Player | 4/1/2018 | 17/6/2026 | A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to execute arbitrary code on the system of a user. The attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and… | |
| Modificada | Media (5.3) | 2.0% | — | Oracle E-business Suite Technology Stack | 19/10/2017 | 17/6/2026 | Vulnerability in the Oracle Applications Technology Stack component of Oracle E-Business Suite (subcomponent: Oracle Forms). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to… |