Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 69 respecto a la semana anterior
Críticas / altas1419▲ 52 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
54 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.9) | 1.6% | — | Intel Active Management Technology Firmware | 15/6/2020 | 17/6/2026 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow a privileged user to potentially enable denial of service via network access. | |
| Modificada | Media (5.3) | 1.6% | — | Intel Active Management Technology Firmware | 15/6/2020 | 17/6/2026 | Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access. | |
| Modificada | Alta (7.1) | 0.67% | — | Intel Active Management Technology Firmware | 15/6/2020 | 17/6/2026 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access. | |
| Modificada | Media (6.5) | 1.4% | — | Intel Active Management Technology Firmware | 15/6/2020 | 17/6/2026 | Improper input validation in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an authenticated user to potentially enable information disclosure via network access. | |
| Modificada | Alta (8.4) | 1.3% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Cross site scripting in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow a privileged user to potentially enable escalation of privilege via network access. | |
| Modificada | Crítica (9.8) | 1.8% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access. | |
| Modificada | Crítica (9.8) | 1.6% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access. | |
| Modificada | Media (4.6) | 0.36% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via physical access. | |
| Modificada | Alta (8.8) | 0.61% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access. | |
| Modificada | Media (6.8) | 0.35% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |
| Modificada | Alta (7.5) | 1.4% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access. | |
| Modificada | Alta (8.1) | 0.59% | — | Intel Active Management Technology Firmware | 18/12/2019 | 17/6/2026 | Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access. | |
| Modificada | Media (4.9) | 1.2% | — | Intel Active Management Technology Firmware | 17/5/2019 | 17/6/2026 | Insufficient input validation vulnerability in subsystem for Intel(R) AMT before version 12.0.35 may allow a privileged user to potentially enable denial of service via network access. | |
| Modificada | Alta (8) | 0.49% | — | Intel Active Management Technology Firmware | 17/5/2019 | 17/6/2026 | Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an authenticated user to potentially enable escalation of privilege via adjacent network access. | |
| Modificada | Media (4.3) | 0.45% | — | Intel Active Management Technology Firmware | 17/5/2019 | 17/6/2026 | Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable denial of service via adjacent network access. | |
| Modificada | Media (6.8) | 0.38% | — | Intel Active Management Technology Firmware | 17/5/2019 | 17/6/2026 | Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |
| Modificada | Alta (7.5) | 1.1% | — | Intel Active Management Technology Firmware | 14/3/2019 | 17/6/2026 | Insufficient input validation in Intel(R) Active Management Technology (Intel(R) AMT) before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially cause a denial of service via network access. | |
| Modificada | Media (5.3) | 3.3% | — | Siemens Simatic Field PG M5 FirmwareSiemens Simatic Ipc427e FirmwareSiemens Simatic Ipc477e FirmwareSiemens Simatic Ipc547e Firmware+10 | 12/9/2018 | 17/6/2026 | Multiple memory leaks in Intel AMT in Intel CSME firmware versions before 12.0.5 may allow an unauthenticated user with Intel AMT provisioned to potentially cause a partial denial of service via network access. | |
| Modificada | Media (6.7) | 0.59% | — | Siemens Simatic Field PG M5 FirmwareSiemens Simatic Ipc427e FirmwareSiemens Simatic Ipc477e FirmwareSiemens Simatic Ipc547e Firmware+10 | 12/9/2018 | 17/6/2026 | Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access. | |
| Modificada | Media (5.9) | 2.4% | — | Intel Converged Security Management Engine FirmwareIntel Active Management Technology FirmwareIntel Manageability Engine FirmwareSiemens Simatic Field PG M5 Firmware+10 | 12/9/2018 | 17/6/2026 | Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.5 may allow an unauthenticated user to potentially obtain the TLS session key via the network. | |
| Modificada | Media (6.7) | 0.39% | — | Intel Active Management Technology Firmware | 10/7/2018 | 17/6/2026 | Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / 7.x / 8.x / 9.x / 10.x / 11.0 / 11.5 / 11.6 / 11.7 / 11.10 / 11.20 could be triggered by an attacker with local administrator permission on the system. | |
| Modificada | Media (6.5) | 0.98% | — | Intel Active Management Technology Firmware | 10/7/2018 | 17/6/2026 | Buffer overflow in event handler in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 3.x, 4.x, 5.x, 6.x, 7.x, 8.x, 9.x, 10.x, and 11.x may allow an attacker to cause a denial of service via the same subnet. | |
| Modificada | Alta (8.8) | 1.4% | — | Intel Active Management Technology Firmware | 10/7/2018 | 17/6/2026 | Buffer overflow in HTTP handler in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 3.x, 4.x, 5.x, 6.x, 7.x, 8.x, 9.x, 10.x, and 11.x may allow an attacker to execute arbitrary code via the same subnet. | |
| Modificada | Alta (7.4) | 1.3% | — | Intel Dual Band Wireless-ac 3160Intel Dual Band Wireless-ac 7260Intel Dual Band Wireless-n 7260Intel Wireless-n 7260+12 | 21/11/2017 | 17/6/2026 | Frame replay vulnerability in Wi-Fi subsystem in Intel Dual-Band and Tri-Band Wireless-AC Products allows remote attacker to replay frames via channel-based man-in-the-middle. | |
| Modificada | Alta (7.2) | 4.4% | — | Intel Manageability Engine FirmwareIntel Active Management Technology FirmwareAsus Z170-premium FirmwareAsus Z170-deluxe Firmware+194 | 21/11/2017 | 17/6/2026 | Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows attacker with remote Admin access to the system to execute arbitrary code with AMT execution privilege. |