Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
1271 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.8) | 0.41% | — | Nvidia GPU Display Driver FOR WindowsAI | 26/10/2024 | 17/6/2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Media (6.5) | 0.40% | 💥 PoC | Realtek SD Card Reader DriverAI | 23/10/2024 | 17/6/2026 | A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SFFDISK_DEVICE_COMMAND control of the SD card reader driver allows a privileged attacker to crash the OS. | |
| Aplazada | Alta (8.8) | 1.3% | 💥 PoC | Realtek SD Card Reader DriverAI | 23/10/2024 | 17/6/2026 | A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SCSI_PASS_THROUGH control of the SD card reader driver allows an attacker to write to predictable kernel memory locations, even as a low-privileged user. | |
| Modificada | Media (5) | 1.5% | 💥 PoC | Microsoft High Definition Audio BUS Driver | 12/9/2024 | 17/6/2026 | A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious… | |
| Analizada | Alta (7.5) | 0.37% | — | Netiq Identity Manager Rest Driver | 12/9/2024 | 17/6/2026 | Possible Insertion of Sensitive Information into Log File Vulnerability in Identity Manager has been discovered in OpenText™ Identity Manager REST Driver. This impact version before 1.1.2.0200. | |
| Analizada | Media (5.5) | 0.14% | — | Opentext Identity Manager Azuread Driver | 12/9/2024 | 17/6/2026 | A vulnerability identified in OpenText™ Identity Manager AzureAD Driver that allows logging of sensitive information into log file. This impacts all versions before 5.1.4.0 | |
| Analizada | Alta (7.8) | 0.15% | — | Samsung Universal Print Driver | 11/9/2024 | 17/6/2026 | The Samsung Universal Print Driver for Windows is potentially vulnerable to escalation of privilege allowing the creation of a reverse shell in the tool. This is only applicable for products in the application released or manufactured before 2018. | |
| Analizada | Alta (7.8) | 0.17% | — | ARM 5TH GEN GPU Architecture Kernel DriverARM Bifrost GPU Kernel DriverARM Valhall GPU Kernel Driver | 3/9/2024 | 17/6/2026 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel… | |
| Analizada | Media (5.4) | 0.12% | — | Intel HID Event Filter DriverIntel NUC M15 Laptop KIT Lapbc510 FirmwareIntel NUC M15 Laptop KIT Lapbc710 FirmwareIntel NUC M15 Laptop KIT Laprc510 Firmware+6 | 14/8/2024 | 17/6/2026 | Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Crítica (9.3) | 0.16% | — | Intel Ethernet 800 Series Controllers Driver | 14/8/2024 | 17/6/2026 | Improper access control in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Crítica (9.3) | 0.18% | — | Intel Ethernet 800 Series Controllers Driver | 14/8/2024 | 17/6/2026 | Wrap-around error in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Alta (7) | 0.53% | — | Intel Ethernet 800 Series Controllers Driver | 14/8/2024 | 17/6/2026 | Protection mechanism failure in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 28.3 may allow an unauthenticated user to potentially enable denial of service via network access. | |
| Analizada | Crítica (9.3) | 0.18% | — | Intel Ethernet 800 Series Controllers Driver | 14/8/2024 | 17/6/2026 | Out-of-bounds write in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.4) | 0.15% | — | Intel Ethernet Adapter Driver PackAI | 14/8/2024 | 17/6/2026 | Uncontrolled search path element in some installation software for Intel(R) Ethernet Adapter Driver Pack before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.46% | — | Nvidia GPU Display DriverNvidia Virtual GPUNvidia Cloud Gaming | 8/8/2024 | 17/6/2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.26% | — | MongodbMongodb C DriverMongodb PHP Driver | 7/8/2024 | 17/6/2026 | Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing arbitrary behaviour determined by the contents of untrusted files. This issue affects MongoDB Server v5.0 versions… | |
| Analizada | Alta (7.8) | 0.18% | — | ARM 5TH GEN GPU Architecture Kernel DriverARM Bifrost GPU Kernel DriverARM Valhall GPU Kernel Driver | 5/8/2024 | 17/6/2026 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel… | |
| Analizada | Alta (7.8) | 0.22% | — | ARM 5TH GEN GPU Architecture Kernel DriverARM Bifrost GPU Kernel DriverARM Valhall GPU Kernel Driver | 5/8/2024 | 17/6/2026 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel… | |
| Analizada | Alta (7.8) | 0.17% | — | Lenovo Drivers Management | 31/7/2024 | 17/6/2026 | A path hijacking vulnerability was reported in Lenovo Driver Manager prior to version 3.1.1307.1308 that could allow a local user to execute code with elevated privileges. | |
| Analizada | Alta (8.5) | 0.23% | — | Iobit Driver Booster | 31/7/2024 | 17/6/2026 | A vulnerability was found in IObit Driver Booster 11.0.0.0. It has been rated as critical. Affected by this issue is some unknown functionality in the library VCL120.BPL of the component BPL Handler. The manipulation leads to uncontrolled search path. Attacking locally is a requirement. The identifier of this… | |
| Aplazada | Alta (8.4) | 0.59% | 💥 PoC | Entrustdatacard XPS Card Printer DriverAI | 22/7/2024 | 17/6/2026 | Insecure permissions in Entrust Datacard XPS Card Printer Driver 8.5 and earlier without the dxp1-patch-E24-004 patch allows unauthenticated attackers to execute arbitrary code as SYSTEM via a crafted DLL payload. | |
| Aplazada | Media (6.5) | 0.12% | — | HP Application Enabling Software DriverAIHP Display ControlAI | 19/7/2024 | 17/6/2026 | Potential vulnerabilities have been identified in the HP Display Control software component within the HP Application Enabling Software Driver which might allow escalation of privilege. | |
| Aplazada | Media (6.5) | 0.12% | — | HP Display ControlAIHP Application Enabling Software DriverAI | 19/7/2024 | 17/6/2026 | Potential vulnerabilities have been identified in the HP Display Control software component within the HP Application Enabling Software Driver which might allow escalation of privilege. | |
| Modificada | Alta (8.8) | 1.6% | — | Microsoft OLE DB Driver FOR SQL ServerMicrosoft SQL Server 2019Microsoft SQL Server 2022 | 9/7/2024 | 17/6/2026 | Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | |
| Aplazada | Media (5.3) | 0.63% | — | Mongodb C DriverAIMongodb LibbsonAI | 3/7/2024 | 17/6/2026 | The bson_string_append function in MongoDB C Driver may be vulnerable to a buffer overflow where the function might attempt to allocate too small of buffer and may lead to memory corruption of neighbouring heap memory. This issue affects libbson versions prior to 1.27.1 |