Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
703 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.49% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS, 8.2.0 through 9.3.0, contain an User Interface Security Issue. An unauthenticated remote user could unintentionally lead an administrator to enable this vulnerability, leading to disclosure of information. | |
| Modificada | Media (6.7) | 0.64% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS, 8.2.x-9.4.x, contain a command injection vulnerability. An authenticated user having access local shell and having the privilege to gather logs from the cluster could potentially exploit this vulnerability, leading to execute arbitrary commands, denial of service, information disclosure, and… | |
| Modificada | Alta (7.8) | 0.22% | — | Nokia Asik Airscale 474021a.101 Firmware | 6/1/2023 | 17/6/2026 | The signature check in the Nokia ASIK AirScale system module version 474021A.101 can be bypassed allowing an attacker to run modified firmware. This could result in the execution of a malicious kernel, arbitrary programs, or modified Nokia programs. | |
| Modificada | Alta (7.1) | 0.22% | — | Nokia Asik Airscale 474021a.102 FirmwareNokia Asik Airscale 474021a.101 Firmware | 6/1/2023 | 17/6/2026 | The bootloader in the Nokia ASIK AirScale system module (versions 474021A.101 and 474021A.102) loads public keys for firmware verification signature. If an attacker modifies the flash contents to corrupt the keys, secure boot could be permanently disabled on a given device. | |
| Modificada | Alta (8.8) | 0.21% | — | Nokia Asik Airscale 474021a.102 FirmwareNokia Asik Airscale 474021a.101 Firmware | 6/1/2023 | 17/6/2026 | A vulnerability exists in Nokia’s ASIK AirScale system module (versions 474021A.101 and 474021A.102) that could allow an attacker to place a script on the file system accessible from Linux. A script placed in the appropriate place could allow for arbitrary code execution in the bootloader. | |
| Modificada | Media (6.8) | 0.95% | — | IBM Spectrum Scale | 19/12/2022 | 17/6/2026 | IBM Spectrum Scale 5.1 could allow users with permissions to create pod, persistent volume and persistent volume claim to access files and directories outside of the volume, including on the host filesystem. IBM X-Force ID: 235740. | |
| Modificada | Alta (7.8) | 0.29% | — | IBM Spectrum Scale Container Native Storage Access | 6/12/2022 | 17/6/2026 | IBM Spectrum Scale 5.1.0.1 through 5.1.4.1 could allow a local attacker to execute arbitrary commands in the container. IBM X-Force ID: 239437. | |
| Modificada | Crítica (9.8) | 1.4% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticated remote command execution can occur via the management portal. | |
| Modificada | Alta (8.8) | 1.5% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Authenticated remote command execution can occur via the management portal. | |
| Modificada | Alta (8.8) | 0.73% | — | Veritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0. A non-privileged user may escape a restricted shell and execute privileged commands. | |
| Modificada | Alta (8.8) | 0.61% | — | Veritas Access ApplianceVeritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. A default password is persisted after installation and may be discovered and used to escalate privileges. | |
| Modificada | Alta (8.8) | 0.61% | — | Veritas Netbackup Flex Scale Appliance | 4/12/2022 | 17/6/2026 | An issue was discovered in Veritas NetBackup Flex Scale through 3.0. An attacker with non-root privileges may escalate privileges to root by using specific commands. | |
| Modificada | Alta (8.8) | 0.55% | — | Tailscale | 23/11/2022 | 17/6/2026 | A vulnerability identified in the Tailscale client allows a malicious website to access the peer API, which can then be used to access Tailscale environment variables. In the Tailscale client, the peer API was vulnerable to DNS rebinding. This allowed an attacker-controlled website visited by the node to rebind DNS… | |
| Modificada | Crítica (9.6) | 1.8% | 💥 PoC | Tailscale | 23/11/2022 | 17/6/2026 | A vulnerability identified in the Tailscale Windows client allows a malicious website to reconfigure the Tailscale daemon `tailscaled`, which can then be used to remotely execute code. In the Tailscale Windows client, the local API was bound to a local TCP socket, and communicated with the Windows client GUI in… | |
| Modificada | Alta (7.5) | 0.93% | — | Dell EMC Powerscale Onefs | 21/10/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.0.x-9.4.0.x contain allocation of Resources Without Limits or Throttling vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service and performance issue on that node. | |
| Modificada | Media (6.7) | 0.18% | — | Dell EMC Powerscale Onefs | 21/10/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error. A local authenticated malicious user with high privileges could potentially exploit this vulnerability, leading to full system compromise. This impacts compliance mode clusters. | |
| Modificada | Media (6.7) | 0.45% | — | Dell EMC Powerscale Onefs | 21/10/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2-9.3.0, contain an OS command injection vulnerability. A privileged local malicious user could potentially exploit this vulnerability, leading to a full system compromise. This impacts compliance mode clusters. | |
| Modificada | Media (4.4) | 0.24% | — | Dell EMC Powerscale Onefs | 21/10/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, and 9.3.0.6, contain sensitive data in log files vulnerability. A privileged local user may potentially exploit this vulnerability, leading to disclosure of this sensitive data. | |
| Modificada | Alta (8.8) | 0.82% | — | Redhat 3scale API Management | 19/10/2022 | 17/6/2026 | 3scale API Management 2 does not perform adequate sanitation for user input in multiple fields. An authenticated user could use this flaw to inject scripts and possibly gain access to sensitive information or conduct further attacks. | |
| Modificada | Media (5.5) | 0.20% | — | Dell EMC Powerscale Onefs | 2/9/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3, contain a relative path traversal vulnerability. A low privileged local attacker could potentially exploit this vulnerability, leading to denial of service. | |
| Modificada | Crítica (9.8) | 0.66% | — | Dell EMC Powerscale Onefs | 2/9/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.3, contain an unprotected transport of credentials vulnerability. A malicious unprivileged network attacker could potentially exploit this vulnerability, leading to full system compromise. | |
| Modificada | Alta (7.5) | 0.65% | — | Dell EMC Powerscale Onefs | 2/9/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3 , contain an insertion of sensitive information in log files vulnerability. A remote unprivileged attacker could potentially exploit this vulnerability, leading to exposure of this sensitive data. | |
| Modificada | Media (5.3) | 0.85% | — | Dell EMC Powerscale Onefs | 22/8/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotected primary channel vulnerability. An unauthenticated network malicious attacker may potentially exploit this vulnerability, leading to a denial of filesystem services. | |
| Modificada | Media (6.5) | 0.86% | — | Dell EMC Powerscale Onefs | 22/8/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0, up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an insecure default initialization of a resource vulnerability. A remote authenticated attacker may potentially exploit this vulnerability, leading to information disclosure. | |
| Modificada | Media (5.5) | 0.18% | — | Dell EMC Powerscale Onefs | 22/8/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process invoked with sensitive information vulnerability. A CLI user may potentially exploit this vulnerability, leading to information disclosure. |