Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
714 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.22% | — | Broadcom Fabric Operating System | 25/10/2022 | 17/6/2026 | A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5 could allow a local authenticated attacker to export out sensitive files with “seccryptocfg”, “configupload”. | |
| Modificada | Alta (8.8) | 0.19% | — | Broadcom Fabric Operating System | 25/10/2022 | 17/6/2026 | A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, and 7.4.2j could allow a local authenticated user to break out of restricted shells with “set context” and escalate privileges. | |
| Modificada | Alta (7.2) | 1.4% | — | Broadcom Fabric Operating System | 25/10/2022 | 17/6/2026 | A vulnerability in the radius authentication system of Brocade Fabric OS before Brocade Fabric OS 9.0 could allow a remote attacker to execute arbitrary code on the Brocade switch. | |
| Modificada | Media (6.5) | 0.21% | — | Broadcom Fabric Operating System | 25/10/2022 | 17/6/2026 | Brocade Fabric OS Web Application services before Brocade Fabric v9.1.0, v9.0.1e, v8.2.3c, v7.4.2j store server and user passwords in the debug statements. This could allow a local user to extract the passwords from a debug file. | |
| Modificada | Alta (8.8) | 0.77% | — | Broadcom Fabric Operating System | 25/10/2022 | 17/6/2026 | Brocade Webtools in Brocade Fabric OS versions before Brocade Fabric OS versions v9.1.1, v9.0.1e, and v8.2.3c could allow a low privilege webtools, user, to gain elevated admin rights, or privileges, beyond what is intended or entitled for that user. By exploiting this vulnerability, a user whose role is not an admin… | |
| Modificada | Media (4.3) | 0.32% | — | Blazzdev Rate MY Post - WP Rating System | 23/9/2022 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Rate my Post – WP Rating System plugin <= 3.3.4 at WordPress. | |
| Modificada | Baja (3.1) | 0.45% | — | Blazzdev Rate MY Post - WP Rating System | 23/9/2022 | 17/6/2026 | Authenticated (subscriber+) Race Condition vulnerability in Rate my Post – WP Rating System plugin <= 3.3.4 at WordPress allows attackers to increase/decrease votes. | |
| Modificada | Baja (3.1) | 0.47% | — | Wp-postratings Project Wp-postratings | 9/9/2022 | 17/6/2026 | Rating increase/decrease via race condition in Lester 'GaMerZ' Chan WP-PostRatings plugin <= 1.89 at WordPress. | |
| Modificada | Alta (7.8) | 0.98% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 0.88% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 0.83% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 0.83% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Media (5.5) | 0.93% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Information Disclosure Vulnerability | |
| Modificada | Media (5.5) | 0.93% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Information Disclosure Vulnerability | |
| Modificada | Alta (7.8) | 1.00% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 1.2% | — | Microsoft Azure Real Time Operating System Guix Studio | 9/8/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Media (5.5) | 0.23% | — | Broadcom Fabric Operating System | 5/8/2022 | 17/6/2026 | A vulnerability in Brocade Fabric OS versions 7.4.1b and 7.3.1d could allow local users to conduct privileged directory transversal. Brocade Fabric OS versions 7.4.1.x and 7.3.x have reached end of life. Brocade Fabric OS Users should upgrade to supported versions as described in the Product End-of-Life published… | |
| Modificada | Media (6.5) | 1.2% | — | Bestwebsoft Rating | 20/6/2022 | 17/6/2026 | The Rating by BestWebSoft WordPress plugin before 1.6 does not validate the submitted rating, allowing submission of long integer, causing a Denial of Service on the post/page when a user submit such rating | |
| Modificada | Alta (7.8) | 2.2% | — | Microsoft Azure Real Time Operating System Guix Studio | 15/6/2022 | 17/6/2026 | Azure RTOS GUIX Studio Information Disclosure Vulnerability | |
| Modificada | Alta (7.8) | 2.5% | — | Microsoft Azure Real Time Operating System Guix Studio | 15/6/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 2.2% | — | Microsoft Azure Real Time Operating System Guix Studio | 15/6/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Alta (7.8) | 2.2% | — | Microsoft Azure Real Time Operating System Guix Studio | 15/6/2022 | 17/6/2026 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | |
| Modificada | Crítica (9.8) | 0.94% | — | 17ido Topidp3000 Topsec Operating System | 14/6/2022 | 17/6/2026 | An issue in TopIDP3000 Topsec Operating System tos_3.3.005.665b.15_smpidp allows attackers to perform a brute-force attack via a crafted session_id cookie. | |
| Modificada | Media (6.5) | 0.80% | — | Likebtn Like Button Rating | 13/6/2022 | 17/6/2026 | The Like Button Rating WordPress plugin before 2.6.45 allows any logged-in user, such as subscriber, to send arbitrary e-mails to any recipient, with any subject and body | |
| Modificada | Media (6.7) | 0.19% | — | Dell Unity Operating EnvironmentDell Unity XT Operating EnvironmentDell Unityvsa Operating Environment | 2/6/2022 | 17/6/2026 | Dell Unity, Dell UnityVSA, and Dell Unity XT versions prior to 5.2.0.0.5.173 contain a plain-text password storage vulnerability when certain off-array tools are run on the system. The credentials of a user with high privileges are stored in plain text. A local malicious user with high privileges may use the exposed… |