Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
37 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.7) | 0.17% | — | Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+76 | 16/3/2023 | 17/6/2026 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | |
| Modificada | Media (6.7) | 0.17% | — | Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+76 | 16/3/2023 | 17/6/2026 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | |
| Modificada | Media (6.7) | 0.17% | — | Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+76 | 10/2/2023 | 17/6/2026 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | |
| Modificada | Media (5.5) | 0.14% | — | Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+76 | 10/2/2023 | 17/6/2026 | Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause a denial of service during SMM. | |
| Modificada | Crítica (9.8) | 14% | — | Lexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+124 | 23/1/2023 | 17/6/2026 | In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation. | |
| Modificada | Alta (7.5) | 28% | 💥 PoC | Lexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+124 | 23/1/2023 | 17/6/2026 | Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency. | |
| Modificada | Alta (8.1) | 1.0% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms331 FirmwareLexmark Ms431 Firmware+113 | 26/8/2022 | 17/6/2026 | Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots. | |
| Modificada | Alta (8.8) | 1.4% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files. | |
| Modificada | Crítica (9.8) | 7.0% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+114 | 20/1/2022 | 17/6/2026 | Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07. | |
| Modificada | Crítica (9.8) | 6.2% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device. | |
| Modificada | Crítica (9.8) | 3.3% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter. | |
| Modificada | Media (6.7) | 0.35% | — | Dell Poweredge R640 FirmwareDell Poweredge R740 FirmwareDell Poweredge R740xd FirmwareDell Poweredge R940 Firmware+27 | 14/6/2021 | 17/6/2026 | Dell PowerEdge Server BIOS and select Dell Precision Rack BIOS contain an out-of-bounds array access vulnerability. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of service, arbitrary code execution, or information disclosure in System Management Mode. |