Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

37 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7616/3/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (5.5)0.14%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause a denial of service during SMM.
ModificadaCrítica (9.8)14%—Lexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+12423/1/202317/6/2026
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
ModificadaAlta (7.5)28%💥 PoCLexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+12423/1/202317/6/2026
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
ModificadaAlta (8.1)1.0%—Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms331 FirmwareLexmark Ms431 Firmware+11326/8/202217/6/2026
Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots.
ModificadaAlta (8.8)1.4%—Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+23020/1/202217/6/2026
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
ModificadaCrítica (9.8)7.0%—Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+11420/1/202217/6/2026
Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
ModificadaCrítica (9.8)6.2%—Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+23020/1/202217/6/2026
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
ModificadaCrítica (9.8)3.3%—Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+23020/1/202217/6/2026
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
ModificadaMedia (6.7)0.35%—Dell Poweredge R640 FirmwareDell Poweredge R740 FirmwareDell Poweredge R740xd FirmwareDell Poweredge R940 Firmware+2714/6/202117/6/2026
Dell PowerEdge Server BIOS and select Dell Precision Rack BIOS contain an out-of-bounds array access vulnerability. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of service, arbitrary code execution, or information disclosure in System Management Mode.
Orbitaley — Vulnerabilidades