Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
1845 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.40% | — | Versa-networks Versa Director | 19/6/2025 | 17/6/2026 | The Versa Director SD-WAN orchestration platform implements Two-Factor Authentication (2FA) using One-Time Passcodes (OTP) delivered via email or SMS. Versa Director accepts untrusted user input when dispatching 2FA codes, allowing an attacker who knows a valid username and password to redirect the OTP delivery… | |
| Aplazada | Crítica (9.8) | 0.86% | — | Cisco NCSAIVersa-networks Versa DirectorAI | 19/6/2025 | 17/6/2026 | The Versa Director SD-WAN orchestration platform which makes use of Cisco NCS application service. Active and Standby Directors communicate over TCP ports 4566 and 4570 to exchange High Availability (HA) information using a shared password. Affected versions of Versa Director bound to these ports on all interfaces. An… | |
| Analizada | Media (5.2) | 0.24% | — | Extremenetworks Extremecloud Universal Ztna | 13/6/2025 | 17/6/2026 | In ExtremeCloud Universal ZTNA, a syntax error in the 'searchKeyword' condition caused queries to bypass the owner_id filter. This issue may allow users to search data across the entire table instead of being restricted to their specific owner_id. | |
| Aplazada | Media (6) | 0.51% | — | Paloaltonetworks Pan-osAI | 13/6/2025 | 17/6/2026 | An information disclosure vulnerability in the SD-WAN feature of Palo Alto Networks PAN-OS® software enables an unauthorized user to view unencrypted data sent from the firewall through the SD-WAN interface. This requires the user to be able to intercept packets sent from the firewall. Cloud NGFW and Prisma® Access… | |
| Analizada | Baja (1) | 0.16% | — | Paloaltonetworks Globalprotect | 13/6/2025 | 17/6/2026 | An improper access control vulnerability in the Endpoint Traffic Policy Enforcement https://docs.paloaltonetworks.com/globalprotect/6-0/globalprotect-app-new-features/new-features-released-in-gp-app/endpoint-traffic-policy-enforcement feature of the Palo Alto Networks GlobalProtect™ app allows certain packets to… | |
| Analizada | Alta (8.5) | 0.44% | — | Paloaltonetworks Globalprotect | 13/6/2025 | 17/6/2026 | An improper neutralization of wildcards vulnerability in the log collection feature of Palo Alto Networks GlobalProtect™ app on macOS allows a non administrative user to escalate their privileges to root. | |
| Analizada | Alta (8.6) | 0.97% | — | Paloaltonetworks Pan-os | 13/6/2025 | 17/6/2026 | A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. The attacker must have network access to the management web interface and successfully authenticate to exploit this issue. Cloud NGFW and Prisma Access are not impacted by… | |
| Aplazada | Alta (8.4) | 0.62% | — | Paloaltonetworks Pan-osAI | 13/6/2025 | 17/6/2026 | A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to exploit this issue, the user must have access to the PAN-OS CLI. The security risk posed by this issue is significantly… | |
| Aplazada | Media (4.6) | 0.19% | — | Paloaltonetworks Cortex XDR BrokerAI | 13/6/2025 | 17/6/2026 | An incorrect privilege assignment vulnerability in Palo Alto Networks Cortex® XDR Broker VM allows an authenticated administrative user to execute certain files available within the Broker VM and escalate their privileges to root. | |
| Aplazada | Media (5.1) | 0.19% | — | Paloaltonetworks Prisma Access BrowserAI | 12/6/2025 | 17/6/2026 | An insufficient implementation of cache vulnerability in Palo Alto Networks Prisma® Access Browser enables users to bypass certain data control policies. | |
| Aplazada | Alta (7.5) | 1.0% | — | Nozominetworks GuardianAINozominetworks CMCAI | 10/6/2025 | 17/6/2026 | An OS command injection vulnerability within the update functionality may allow an authenticated administrator to execute unauthorized arbitrary OS commands. Users with administrative privileges may upload update packages to upgrade the versions of Nozomi Networks Guardian and CMC. While these updates are signed and… | |
| Aplazada | Alta (7.2) | 0.45% | — | Teltonika-networks Remote Management SystemAI | 29/5/2025 | 17/6/2026 | In Teltonika Networks Remote Management System (RMS), it is possible to perform account pre-hijacking by misusing the invite functionality. If a victim has a pending invite and registers to the platform directly, they are added to the attackers company without their knowledge. The victims account and their company can… | |
| Analizada | Alta (8.6) | 0.61% | — | Versa-networks Concerto | 21/5/2025 | 25/8/2026 | The Versa Concerto SD-WAN orchestration platform is vulnerable to an privileges escalation and container escape vulnerability caused by unsafe default mounting of host binary paths that allow the container to modify host paths. The escape can be used to trigger remote code execution or direct host access depending on… | |
| Analizada | Crítica (10) | 45% | 💥 Exploit | Versa-networks Concerto | 21/5/2025 | 25/8/2026 | The Versa Concerto SD-WAN orchestration platform is vulnerable to an authentication bypass in the Traefik reverse proxy configuration, allowing at attacker to access administrative endpoints. The Spack upload endpoint can be leveraged for a Time-of-Check to Time-of-Use (TOCTOU) write in combination with a race… | |
| Analizada | Crítica (9.2) | 82% | ⚠ Explotación activa💥 Exploit | Versa-networks Concerto | 21/5/2025 | 17/6/2026 | The Versa Concerto SD-WAN orchestration platform is vulnerable to an authentication bypass in the Traefik reverse proxy configuration, allowing at attacker to access administrative endpoints. The internal Actuator endpoint can be leveraged for access to heap dumps and trace logs.This issue is known to affect Concerto… | |
| Aplazada | Baja (2) | 0.35% | — | Paloaltonetworks Prisma Cloud Compute EditionAI | 14/5/2025 | 17/6/2026 | Web sessions in the web interface of Palo Alto Networks Prisma® Cloud Compute Edition do not expire when users are deleted, which makes Prisma Cloud Compute Edition susceptible to unauthorized access. Compute in Prisma Cloud Enterprise Edition is not affected by this issue. | |
| Aplazada | Media (4.8) | 0.40% | — | Paloaltonetworks Pan-osAI | 14/5/2025 | 17/6/2026 | An improper input neutralization vulnerability in the management web interface of the Palo Alto Networks PAN-OS® software enables a malicious authenticated read-write administrator to impersonate another legitimate authenticated PAN-OS administrator. The attacker must have network access to the management web… | |
| Aplazada | Media (5.3) | 0.16% | — | Paloaltonetworks Pan-osAIPaloaltonetworks Pa-7500AIPaloaltonetworks Pa-5400AIPaloaltonetworks Pa-5400fAI+4 | 14/5/2025 | 17/6/2026 | Using the AES-128-CCM algorithm for IPSec on certain Palo Alto Networks PAN-OS® firewalls (PA-7500, PA-5400, PA-5400f, PA-3400, PA-1600, PA-1400, and PA-400 Series) leads to unencrypted data transfer to devices that are connected to the PAN-OS firewall through IPSec. This issue does not affect Cloud NGFWs, Prisma®… | |
| Analizada | Media (5.2) | 0.13% | — | Paloaltonetworks Globalprotect | 14/5/2025 | 17/6/2026 | An incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect™ App on macOS devices enables a locally authenticated non administrative user to disable the app. The GlobalProtect app on Windows, Linux, iOS, Android, Chrome OS and GlobalProtect UWP app are not affected. | |
| Aplazada | Media (6.5) | 0.49% | — | Paloaltonetworks Cortex XDR Broker VMAI | 14/5/2025 | 17/6/2026 | A code injection vulnerability in the Palo Alto Networks Cortex XDR® Broker VM allows an authenticated user to execute arbitrary code with root privileges on the host operating system running Broker VM. | |
| Aplazada | Baja (2.7) | 45% | 💥 Exploit | Paloaltonetworks Pan-osAI | 14/5/2025 | 17/6/2026 | A reflected cross-site scripting (XSS) vulnerability in the GlobalProtect™ gateway and portal features of Palo Alto Networks PAN-OS® software enables execution of malicious JavaScript in the context of an authenticated Captive Portal user's browser when they click on a specially crafted link. The primary risk is… | |
| Aplazada | Media (6.9) | 0.44% | — | Paloaltonetworks Cortex XDR Broker VMAI | 14/5/2025 | 17/6/2026 | A missing authentication vulnerability in Palo Alto Networks Cortex XDR® Broker VM allows an unauthenticated user to disable certain internal services on the Broker VM. The attacker must have network access to the Broker VM to exploit this issue. | |
| Aplazada | Alta (7.1) | 0.15% | — | Opswat Metadefender Endpoint Security SDKAIPaloaltonetworks GlobalprotectAI | 14/5/2025 | 17/6/2026 | An incorrect privilege management vulnerability in the OPSWAT MetaDefender Endpoint Security SDK used by the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. However, execution requires that the… | |
| Modificada | Alta (8.2) | 0.42% | — | Paloaltonetworks Pan-os | 14/5/2025 | 17/6/2026 | A missing exception check in Palo Alto Networks PAN-OS® software with the web proxy feature enabled allows an unauthenticated attacker to send a burst of maliciously crafted packets that causes the firewall to become unresponsive and eventually reboot. Repeated successful attempts to trigger this condition will cause… | |
| Aplazada | Crítica (9.3) | 0.74% | — | Optigo Networks ONS Nc600AI | 6/5/2025 | 17/6/2026 | In Optigo Networks ONS NC600 versions 4.2.1-084 through 4.7.2-330, an attacker could connect with the device's ssh server and utilize the system's components to perform OS command executions. |