Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
30 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 2.3% | — | Clusterlabs PCSFedoraproject FedoraRedhat Enterprise Linux | 21/4/2017 | 17/6/2026 | Session fixation vulnerability in pcsd in pcs before 0.9.157. | |
| Modificada | Alta (8.8) | 1.4% | — | Clusterlabs PCSFedoraproject FedoraRedhat Enterprise Linux | 21/4/2017 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149. | |
| Modificada | Alta (7.5) | 3.3% | — | Clusterlabs PacemakerOpensuse LeapOpensuse Project LeapSuse Linux Enterprise High Availability+3 | 24/3/2017 | 17/6/2026 | Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconnection) via an unauthenticated connection. | |
| Modificada | Alta (7.5) | 3.0% | — | Redhat Enterprise Linux High AvailabilityRedhat Enterprise Linux Resilient StorageClusterlabs Pacemaker | 12/8/2015 | 17/6/2026 | Pacemaker before 1.1.13 does not properly evaluate added nodes, which allows remote read-only users to gain privileges via an acl command. | |
| Modificada | Media (4.3) | 2.6% | — | Redhat Enterprise LinuxClusterlabs Pacemaker | 23/11/2013 | 16/6/2026 | Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not limit the duration of connections to the blocking sockets, which allows remote attackers to cause a denial of service (connection blocking). |