Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1115 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.60% | — | SAP 3D Visual Enterprise Viewer | 11/10/2022 | 17/6/2026 | Due to lack of proper memory management, when a victim opens a manipulated AutoCAD (.dwg, TeighaTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible that a Remote Code Execution can be triggered when payload forces a stack-based overflow or a re-use of… | |
| Modificada | Alta (7.8) | 0.32% | — | SAP 3D Visual Enterprise Viewer | 11/10/2022 | 17/6/2026 | Due to lack of proper memory management, when a victim opens manipulated Wavefront Object (.obj, ObjTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the… | |
| Modificada | Alta (7.8) | 0.61% | — | SAP 3D Visual Enterprise Viewer | 11/10/2022 | 17/6/2026 | Due to lack of proper memory management, when a victim opens a manipulated Wavefront Object (.obj, ObjTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible that a Remote Code Execution can be triggered when payload forces a stack-based overflow or a re-use… | |
| Modificada | Alta (7.8) | 0.41% | — | SAP 3D Visual Enterprise Viewer | 11/10/2022 | 17/6/2026 | Due to lack of proper memory management, when a victim opens manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, a Remote Code Execution can be triggered when payload forces a stack-based overflow and or a re-use of dangling… | |
| Modificada | Alta (7.8) | 0.18% | — | Realvnc VNC ServerRealvnc VNC Viewer | 30/9/2022 | 17/6/2026 | RealVNC VNC Server before 6.11.0 and VNC Viewer before 6.22.826 on Windows allow local privilege escalation via MSI installer Repair mode. | |
| Modificada | Alta (8.8) | 23% | — | Exam Reviewer Management System Project Exam Reviewer Management System | 27/9/2022 | 17/6/2026 | In Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file in profile page to achieve Remote Code Execution (RCE). | |
| Modificada | Crítica (9.8) | 1.3% | — | Exam Reviewer Management System Project Exam Reviewer Management System | 27/9/2022 | 17/6/2026 | Exam Reviewer Management System 1.0 is vulnerable to SQL Injection via the ‘id’ parameter. | |
| Analizada | Alta (7.8) | 0.70% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 1.0% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 0.93% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 1.2% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 1.3% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 0.81% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 1.3% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Analizada | Alta (7.8) | 1.2% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 13.2.0.21165. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Modificada | Alta (7.8) | 1.1% | — | Nikon Nis-elements Viewer | 15/9/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Viewer 1.2100.1483.0. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of… | |
| Modificada | Crítica (9.8) | 2.8% | — | Faststone Image Viewer | 18/8/2022 | 17/6/2026 | Unsafe Parsing of a PNG tRNS chunk in FastStone Image Viewer through 7.5 results in a stack buffer overflow. | |
| Modificada | Media (6.9) | 0.64% | — | Siemens Simcenter Star-ccm+ Viewer | 10/8/2022 | 14/7/2026 | A vulnerability has been identified in Simcenter STAR-CCM+ (All versions only if the Power-on-Demand public license server is used). Affected applications expose user, host and display name of users, when the public license server is used. This could allow an attacker to retrieve this information. | |
| Modificada | Alta (7.8) | 0.54% | — | Santesoft Dicom Viewer PRO | 3/8/2022 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sante DICOM Viewer Pro 11.9.2. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of J2K files.… | |
| Modificada | Media (5.5) | 0.52% | — | SAP 3D Visual Enterprise Viewer | 12/7/2022 | 17/6/2026 | When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application. The file format details along with their CVE relevant information can be found… | |
| Modificada | Media (5.5) | 1.1% | — | Siemens Pads Viewer | 12/7/2022 | 17/6/2026 | A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-057, FG-VD-22-058, FG-VD-22-060) | |
| Modificada | Media (5.5) | 1.1% | — | Siemens Pads Viewer | 12/7/2022 | 17/6/2026 | A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-055) | |
| Modificada | Alta (7.8) | 1.4% | — | Siemens Pads Viewer | 12/7/2022 | 17/6/2026 | A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted PCB files. This could allow an attacker to execute code in the context of the current process. (FG-VD-22-054) | |
| Modificada | Media (5.5) | 1.1% | — | Siemens Pads Viewer | 12/7/2022 | 17/6/2026 | A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process.… | |
| Modificada | Media (5.5) | 1.1% | — | Siemens Pads Viewer | 12/7/2022 | 17/6/2026 | A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-052, FG-VD-22-056) |