Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

62 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)1.9%—Intel Standard ManageabilityIntel Active Management Technology FirmwareNetapp Steelstore Cloud Integrated Storage10/9/202017/6/2026
Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to potentially enable escalation of privilege via network access. On un-provisioned systems, an authenticated user may…
ModificadaMedia (5.3)1.8%—Intel Active Management Technology FirmwareIntel Service Manager15/6/202017/6/2026
Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaAlta (7.5)3.0%—Intel Software ManagerIntel Active Management Technology Firmware15/6/202017/6/2026
Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 14.0.33 may allow an unauthenticated user to potentially enable denial of service via network access.
ModificadaAlta (7.5)2.2%—Intel Active Management Technology FirmwareIntel Service Manager15/6/202017/6/2026
Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaCrítica (9.8)3.4%—Intel Active Management Technology FirmwareIntel Service Manager15/6/202017/6/2026
Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
ModificadaCrítica (9.8)3.5%—Intel Active Management Technology FirmwareIntel Service Manager15/6/202017/6/2026
Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
ModificadaAlta (7.5)2.0%—Intel Active Management Technology Firmware15/6/202017/6/2026
Insufficiently protected credentials in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaAlta (7.5)2.3%—Intel Active Management Technology Firmware15/6/202017/6/2026
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable denial of service via network access.
ModificadaMedia (4.9)1.6%—Intel Active Management Technology Firmware15/6/202017/6/2026
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow a privileged user to potentially enable denial of service via network access.
ModificadaMedia (5.3)1.6%—Intel Active Management Technology Firmware15/6/202017/6/2026
Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaAlta (7.1)0.67%—Intel Active Management Technology Firmware15/6/202017/6/2026
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access.
ModificadaMedia (6.5)1.4%—Intel Active Management Technology Firmware15/6/202017/6/2026
Improper input validation in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an authenticated user to potentially enable information disclosure via network access.
ModificadaAlta (8.4)1.3%—Intel Active Management Technology Firmware18/12/201917/6/2026
Cross site scripting in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow a privileged user to potentially enable escalation of privilege via network access.
ModificadaCrítica (9.8)1.8%—Intel Active Management Technology Firmware18/12/201917/6/2026
Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
ModificadaCrítica (9.8)1.6%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
ModificadaMedia (4.6)0.36%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via physical access.
ModificadaAlta (8.8)0.61%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
ModificadaMedia (6.8)0.35%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
ModificadaAlta (7.5)1.4%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaAlta (8.1)0.59%—Intel Active Management Technology Firmware18/12/201917/6/2026
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access.
ModificadaMedia (4.9)1.2%—Intel Active Management Technology Firmware17/5/201917/6/2026
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before version 12.0.35 may allow a privileged user to potentially enable denial of service via network access.
ModificadaAlta (8)0.49%—Intel Active Management Technology Firmware17/5/201917/6/2026
Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an authenticated user to potentially enable escalation of privilege via adjacent network access.
ModificadaMedia (4.3)0.45%—Intel Active Management Technology Firmware17/5/201917/6/2026
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable denial of service via adjacent network access.
ModificadaMedia (6.8)0.38%—Intel Active Management Technology Firmware17/5/201917/6/2026
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
ModificadaAlta (7.5)1.1%—Intel Active Management Technology Firmware14/3/201917/6/2026
Insufficient input validation in Intel(R) Active Management Technology (Intel(R) AMT) before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially cause a denial of service via network access.
Orbitaley — Vulnerabilidades