Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
38 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.73% | — | HP Oneview | 17/5/2022 | 17/6/2026 | A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Media (5.5) | 0.29% | — | HP Oneview | 4/4/2022 | 17/6/2026 | A local unauthorized read access to files vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Alta (7.8) | 0.29% | — | HP Oneview | 4/4/2022 | 17/6/2026 | A local authentication restriction bypass vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Alta (7.5) | 1.4% | — | HP Oneview | 4/4/2022 | 17/6/2026 | A remote unauthenticated disclosure of information vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Media (6.1) | 0.73% | — | HP Oneview | 4/4/2022 | 17/6/2026 | A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Media (6.1) | 0.73% | — | HPE Oneview Global Dashboard | 24/2/2022 | 17/6/2026 | A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has provided a software update to resolve this vulnerability in HPE OneView Global Dashboard. | |
| Modificada | Media (6.1) | 0.56% | — | HPE Oneview Global Dashboard | 24/2/2022 | 17/6/2026 | A remote cross-site scripting vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has provided a software update to resolve this vulnerability in HPE OneView Global Dashboard. | |
| Modificada | Media (5.5) | 0.23% | — | HPE Oneview Global Dashboard | 24/6/2021 | 17/6/2026 | A potential vulnerability has been identified in HPE OneView Global Dashboard release 2.31 which could lead to a local disclosure of privileged information. HPE has provided an update to OneView Global Dashboard. The issue is resolved in 2.32. | |
| Modificada | Media (6.1) | 0.77% | — | HP Oneview FOR Vmware Vcenter | 3/6/2021 | 17/6/2026 | A security vulnerability in HPE OneView for VMware vCenter (OV4VC) could be exploited remotely to allow Cross-Site Scripting. HPE has released the following software update to resolve the vulnerability in HPE OneView for VMware vCenter (OV4VC). | |
| Modificada | Alta (8.8) | 2.1% | — | HP OneviewHP Synergy ComposerHP Synergy Composer 2 | 6/11/2020 | 17/6/2026 | There is a remote escalation of privilege possible for a malicious user that has a OneView account in OneView and Synergy Composer. HPE has provided updates to Oneview and Synergy Composer: Update to version 5.5 of OneView, Composer, or Composer2. | |
| Modificada | Alta (7.5) | 2.2% | — | HP Oneview Global Dashboard | 4/3/2020 | 17/6/2026 | HPE OneView Global Dashboard (OVGD) 1.9 has a remote information disclosure vulnerability. HPE OneView Global Dashboard - After Upgrade or Install of OVGD Version 1.9, Appliance Firewall May Leave Ports Open. This is resolved in OVGD 1.91 or later. | |
| Modificada | Media (6.1) | 1.0% | — | HP Oneview FOR Vmware Vcenter | 18/12/2019 | 17/6/2026 | A security vulnerability in HPE OneView for VMware vCenter 9.5 could be exploited remotely to allow Cross-Site Scripting. | |
| Modificada | Media (6.5) | 2.0% | — | HP Oneview | 8/5/2014 | 17/6/2026 | Unspecified vulnerability in HP OneView 1.0 and 1.01 allows remote authenticated users to gain privileges via unknown vectors. |