Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
63 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.1) | 0.59% | — | Citeum Opencti | 12/12/2024 | 17/6/2026 | OpenCTI is an open-source cyber threat intelligence platform. In versions below 6.2.18, because the function to limit the rate of OTP does not exist, an attacker with valid credentials or a malicious user who commits internal fraud can break through the two-factor authentication and hijack the account. This is because… | |
| Analizada | Alta (8.2) | 0.46% | — | Citeum Opencti | 18/11/2024 | 17/6/2026 | OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Prior to version 6.1.9, the regex validation used to prevent Introspection queries can be bypassed by removing the extra whitespace, carriage return, and line feed characters from the query.… | |
| Modificada | Media (6.1) | 0.33% | — | Honeywell Iq3xcite Firmware | 27/9/2024 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in the component /test/ of iq3xcite v2.31 to v3.05 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. | |
| Modificada | Crítica (9.3) | 0.47% | — | Markoni-d (compact) FirmwareMarkoni-dh (exciter+amplifiers) Firmware | 27/6/2024 | 17/6/2026 | TELSAT marKoni FM Transmitters are vulnerable to users gaining unauthorized access to sensitive information or performing actions beyond their designated permissions. | |
| Modificada | Crítica (9.3) | 0.57% | — | Markoni-d (compact) FirmwareMarkoni-dh (exciter+amplifiers) Firmware | 27/6/2024 | 17/6/2026 | TELSAT marKoni FM Transmitters are vulnerable to an attacker bypassing authentication and gaining administrator privileges. | |
| Modificada | Crítica (9.3) | 0.52% | — | Markoni-d (compact) FirmwareMarkoni-dh (exciter+amplifiers) Firmware | 27/6/2024 | 17/6/2026 | TELSAT marKoni FM Transmitters are vulnerable to an attacker exploiting a hidden admin account that can be accessed through the use of hard-coded credentials. | |
| Modificada | Crítica (9.3) | 1.2% | — | Markoni-d (compact) FirmwareMarkoni-dh (exciter+amplifiers) Firmware | 27/6/2024 | 17/6/2026 | TELSAT marKoni FM Transmitters are vulnerable to a command injection vulnerability through the manipulation of settings and could allow an attacker to gain unauthorized access to the system with administrative privileges. | |
| Analizada | Alta (8.1) | 0.40% | — | Citeum Opencti | 23/5/2024 | 17/6/2026 | OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Due to lack of certain security controls on the profile edit functionality, an authenticated attacker with low privileges can gain administrative privileges on the web application. | |
| Modificada | Crítica (9.8) | 1.2% | — | Variscite Matrix-gui | 8/3/2023 | 17/6/2026 | SQL injection vulnerability found in Varisicte matrix-gui v.2 allows a remote attacker to execute arbitrary code via the shell_exect parameter to the \www\pages\matrix-gui-2.0 endpoint. | |
| Modificada | Media (6.1) | 0.37% | — | Asosegitim Bookcites | 3/3/2023 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ASOS Information Technologies Book Cites allows Cross-Site Scripting (XSS). This issue affects Book Cites: before 23.01.05. | |
| Modificada | Crítica (9.8) | 2.2% | — | Apache Calcite | 11/9/2022 | 17/6/2026 | Apache Calcite 1.22.0 introduced the SQL operators EXISTS_NODE, EXTRACT_XML, XML_TRANSFORM and EXTRACT_VALUE do not restrict XML External Entity references in their configuration, making them vulnerable to a potential XML External Entity (XXE) attack. Therefore any client exposing these operators, typically by using… | |
| Modificada | Alta (8.8) | 3.2% | — | Apache Calcite Avatica | 28/7/2022 | 17/6/2026 | Apache Calcite Avatica JDBC driver creates HTTP client instances based on class names provided via `httpclient_impl` connection property; however, the driver does not verify if the class implements the expected interface before instantiating it, which can lead to code execution loaded via arbitrary classes and in rare… | |
| Modificada | Alta (7.5) | 0.98% | — | Citeum Opencti | 5/7/2022 | 17/6/2026 | In OpenCTI through 5.2.4, a broken access control vulnerability has been identified in the profile endpoint. An attacker can abuse the identified vulnerability in order to arbitrarily change their registered e-mail address as well as their API key, even though such action is not possible through the interface,… | |
| Modificada | Media (5.4) | 0.52% | — | Citeum Opencti | 5/7/2022 | 17/6/2026 | A stored Cross-site Scripting (XSS) vulnerability was identified in the Data Import functionality of OpenCTI through 5.2.4. An attacker can abuse the vulnerability to upload a malicious file that will then be executed by a victim when they open the file location. | |
| Modificada | Crítica (9.8) | 1.8% | — | Siemens Biograph Horizon Pet/ct Systems FirmwareSiemens Magnetom Numaris X FirmwareSiemens Mammomat Revelation FirmwareSiemens Naeotom Alpha Firmware+14 | 1/6/2022 | 17/6/2026 | A vulnerability has been identified in Biograph Horizon PET/CT Systems (All VJ30 versions < VJ30C-UD01), MAGNETOM Family (NUMARIS X: VA12M, VA12S, VA10B, VA20A, VA30A, VA31A), MAMMOMAT Revelation (All VC20 versions < VC20D), NAEOTOM Alpha (All VA40 versions < VA40 SP2), SOMATOM X.cite (All versions < VA30 SP5 or VA40… | |
| Modificada | Media (5.9) | 2.1% | — | Apache Calcite | 9/10/2020 | 17/6/2026 | HttpUtils#getURLConnection method disables explicitly hostname verification for HTTPS connections making clients vulnerable to man-in-the-middle attacks. Calcite uses internally this method to connect with Druid and Splunk so information leakage may happen when using the respective Calcite adapters. The method itself… | |
| Modificada | Alta (7.8) | 0.38% | — | Schneider-electric CitectscadaSchneider-electric Scada Expert Vijeo Citect | 31/5/2019 | 17/6/2026 | In Vijeo Citect 7.30 and 7.40, and CitectSCADA 7.30 and 7.40, a vulnerability has been identified that may allow an authenticated local user access to Citect user credentials. | |
| Modificada | Media (5.5) | 0.46% | — | Schneider-electric Powerscada AnywhereSchneider-electric Citect Anywhere | 26/9/2017 | 17/6/2026 | A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to escape out of remote PowerSCADA Anywhere applications and launch other processes. | |
| Modificada | Media (6.5) | 0.78% | — | Schneider-electric Powerscada AnywhereSchneider-electric Citect Anywhere | 26/9/2017 | 17/6/2026 | A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the use of outdated cipher suites and improper verification of peer SSL Certificate. | |
| Modificada | Media (6.5) | 0.56% | — | Schneider-electric Powerscada AnywhereSchneider-electric Citect Anywhere | 26/9/2017 | 17/6/2026 | A vulnerability exists in Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 that allows the ability to specify Arbitrary Server Target Nodes in connection requests to the Secure Gateway and Server components. | |
| Modificada | Alta (8.8) | 0.63% | — | Schneider-electric Powerscada AnywhereSchneider-electric Citect Anywhere | 26/9/2017 | 17/6/2026 | A cross-site request forgery vulnerability exists on the Secure Gateway component of Schneider Electric's PowerSCADA Anywhere v1.0 redistributed with PowerSCADA Expert v8.1 and PowerSCADA Expert v8.2 and Citect Anywhere version 1.0 for multiple state-changing requests. This type of attack requires some level of social… | |
| Modificada | Alta (7.8) | 1.8% | — | Schneider-electric CitectscadaSchneider-electric Powerlogic ScadaSchneider-electric Struxureware Powerscada ExpertSchneider-electric Struxureware Scada Expert Vijeo Citect | 26/2/2014 | 16/6/2026 | Schneider Electric StruxureWare SCADA Expert Vijeo Citect 7.40, Vijeo Citect 7.20 through 7.30SP1, CitectSCADA 7.20 through 7.30SP1, StruxureWare PowerSCADA Expert 7.30 through 7.30SR1, and PowerLogic SCADA 7.20 through 7.20SR1 do not properly handle exceptions, which allows remote attackers to cause a denial of… | |
| Modificada | Media (6.9) | 0.73% | — | Schneider-electric CitectscadaSchneider-electric Powerlogic ScadaSchneider-electric Vijeo Citect | 9/8/2013 | 16/6/2026 | Schneider Electric Vijeo Citect 7.20 and earlier, CitectSCADA 7.20 and earlier, and PowerLogic SCADA 7.20 and earlier allow remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML document containing an external entity… | |
| Modificada | Alta (10) | 11% | 💥 Exploit | Mitsubishi-automation Mitsubishi MX ComponentSchneider-electric CitectfacilitiesSchneider-electric Citectscada | 19/4/2013 | 16/6/2026 | Multiple buffer overflows in ActUWzd.dll 1.0.0.1 in Mitsubishi MX Component 3, as distributed in Citect CitectFacilities 7.10 and CitectScada 7.10r1, allow remote attackers to execute arbitrary code via a long string, as demonstrated by a long WzTitle property value to a certain ActiveX control. | |
| Modificada | Media (4.6) | 0.47% | — | Mitsubishi-automation MX4 ScadaSchneider-electric Citectscada | 15/9/2012 | 16/6/2026 | Buffer overflow in an unspecified third-party component in the Batch module for Schneider Electric CitectSCADA before 7.20 and Mitsubishi MX4 SCADA before 7.20 allows local users to execute arbitrary code via a long string in a login sequence. |