Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1046 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.24% | — | Dell Supportassist FOR Home PCS | 22/12/2023 | 17/6/2026 | Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the installer. A local low privileged authenticated attacker may potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with elevated privileges. | |
| Modificada | Alta (7.2) | 0.73% | — | Wpvibes Redirect 404 Error Page TO Homepage OR Custom Page With Logs | 18/12/2023 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPVibes Redirect 404 Error Page to Homepage or Custom Page with Logs allows SQL Injection.This issue affects Redirect 404 Error Page to Homepage or Custom Page with Logs: from n/a through 1.8.7. | |
| Modificada | Alta (7.5) | 0.50% | — | HP System Management Homepage | 17/12/2023 | 17/6/2026 | A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability could be exploited locally or remotely to disclose information. | |
| Modificada | Media (4.3) | 0.91% | — | Home-assistant | 15/12/2023 | 17/6/2026 | Home Assistant is open source home automation software. Prior to version 2023.12.3, the login page discloses all active user accounts to any unauthenticated browsing request originating on the Local Area Network. Version 2023.12.3 contains a patch for this issue. When starting the Home Assistant 2023.12 release, the… | |
| Modificada | Alta (7.8) | 0.25% | — | Acronis Cyber Protect Home Office | 12/12/2023 | 17/6/2026 | Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40901, Acronis Cyber Protect Cloud Agent (Windows) before build 39378, Acronis Cyber Protect 16 (Windows) before build 39938, Acronis True Image OEM (Windows)… | |
| Modificada | Alta (7.8) | 0.20% | — | Samsung Gamehomecn | 5/12/2023 | 17/6/2026 | Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrary activity in GameHomeCN. | |
| Modificada | Alta (7.5) | 0.47% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+259 | 5/12/2023 | 17/6/2026 | Transient DOS while parsing WPA IES, when it is passed with length more than expected size. | |
| Modificada | Alta (7.5) | 0.47% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Fastconnect 6900 FirmwareQualcomm Fastconnect 7800 Firmware+118 | 5/12/2023 | 17/6/2026 | Transient DOS in WLAN Firmware while processing a FTMR frame. | |
| Modificada | Alta (7.5) | 0.47% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Ar9380 Firmware+224 | 5/12/2023 | 17/6/2026 | Transient DOS when processing a NULL buffer while parsing WLAN vdev. | |
| Modificada | Alta (7.8) | 0.16% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 FirmwareQualcomm Ar8035 Firmware+302 | 5/12/2023 | 17/6/2026 | Memory corruption when processing cmd parameters while parsing vdev. | |
| Modificada | Crítica (9.8) | 0.61% | — | Qualcomm Ar8035 FirmwareQualcomm Ar9380 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn685x-5 Firmware+111 | 5/12/2023 | 17/6/2026 | Memory corruption in WLAN Host while processing RRM beacon on the AP. | |
| Modificada | Crítica (9.8) | 0.53% | — | Qualcomm Ar8035 FirmwareQualcomm Ar9380 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn685x-5 Firmware+111 | 5/12/2023 | 17/6/2026 | Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE. | |
| Modificada | Alta (7.5) | 0.47% | — | Qualcomm Aqt1000 FirmwareQualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn3991 Firmware+145 | 5/12/2023 | 17/6/2026 | Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast. | |
| Modificada | Alta (7.5) | 0.34% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8064au Firmware+362 | 5/12/2023 | 17/6/2026 | Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. | |
| Analizada | Alta (7.8) | 0.67% | ⚠ Explotación activa | Qualcomm 315 5G IOT Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+277 | 5/12/2023 | 17/6/2026 | Memory corruption in DSP Services during a remote call from HLOS to DSP. | |
| Modificada | Alta (7.8) | 0.14% | — | Qualcomm Csr8811 FirmwareQualcomm Wcn6750 FirmwareQualcomm Wcn685x-5 FirmwareQualcomm Wcn685x-1 Firmware+113 | 5/12/2023 | 17/6/2026 | Memory corruption in Kernel while parsing metadata. | |
| Modificada | Alta (7.5) | 0.47% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn685x-5 FirmwareQualcomm Wcn685x-1 Firmware+123 | 5/12/2023 | 17/6/2026 | Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids. | |
| Modificada | Media (6.5) | 0.14% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+309 | 5/12/2023 | 17/6/2026 | Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. | |
| Modificada | Alta (8.8) | 0.14% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Aqt1000 FirmwareQualcomm Ar8031 Firmware+277 | 5/12/2023 | 17/6/2026 | Memory corruption while loading an ELF segment in TEE Kernel. | |
| Modificada | Alta (7.8) | 0.12% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm 9206 LTE Modem FirmwareQualcomm 9207 LTE Modem Firmware+331 | 5/12/2023 | 17/6/2026 | Memory corruption in MPP performance while accessing DSM watermark using external memory address. | |
| Modificada | Alta (7.8) | 0.11% | — | Qualcomm 315 5G IOT Modem FirmwareQualcomm 9205 LTE Modem FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8037 Firmware+276 | 5/12/2023 | 17/6/2026 | Memory Corruption in SPS Application while exporting public key in sorter TA. | |
| Modificada | Media (6.1) | 0.47% | — | Bell Home HUB 3000 Firmware | 17/11/2023 | 17/6/2026 | An issue was discovered on Bell HomeHub 3000 SG48222070 devices. There is XSS related to the email field and the login page. | |
| Modificada | Media (4.3) | 0.65% | — | Bell Home HUB 3000 Firmware | 17/11/2023 | 17/6/2026 | An issue was discovered on Bell HomeHub 3000 SG48222070 devices. Remote authenticated users can retrieve the serial number via cgi/json-req - this is an information leak because the serial number is intended to prove an actor's physical access to the device. | |
| Modificada | Alta (7.5) | 0.43% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn685x-5 FirmwareQualcomm Wcn685x-1 Firmware+111 | 7/11/2023 | 17/6/2026 | Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. | |
| Modificada | Alta (7.5) | 0.43% | — | Qualcomm Ar8035 FirmwareQualcomm Csr8811 FirmwareQualcomm Wcn685x-5 FirmwareQualcomm Wcn685x-1 Firmware+112 | 7/11/2023 | 17/6/2026 | Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE. |