Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.0% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 28.1 allows remote attackers to trigger a software abort via G.719. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27 before 28.0 allows remote attackers to trigger excessive resource consumption and termination because of registrar resource mishandling. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger excessive resource consumption via H.264. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via H.323. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP. | |
| Modificada | Alta (8.2) | 1.1% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. | |
| Modificada | Alta (7.5) | 1.1% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol. | |
| Modificada | Media (5.9) | 0.97% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via single-sign-on if a random Universally Unique Identifier is guessed. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join. | |
| Modificada | Alta (8.2) | 1.1% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via One Touch Join. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a software abort via a gateway call into Teams. | |
| Modificada | Alta (7.5) | 1.2% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP. | |
| Modificada | Media (5.3) | 0.66% | — | Pexip Infinity | 17/7/2022 | 17/6/2026 | Pexip Infinity 27.x before 27.2 has Improper Access Control. An attacker can sometimes join a conference (call join) if it has a lock but not a PIN. | |
| Modificada | Alta (7.5) | 1.3% | — | Pexip Infinity | 18/2/2022 | 17/6/2026 | Pexip Infinity before 27.0 has improper WebRTC input validation. An unauthenticated remote attacker can use excessive resources, temporarily causing denial of service. | |
| Modificada | Alta (7.5) | 1.3% | — | Pexip Infinity | 7/7/2021 | 17/6/2026 | Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the administrative web interface. | |
| Modificada | Alta (7.5) | 1.3% | — | Pexip Infinity | 7/7/2021 | 17/6/2026 | Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup. An unauthenticated remote attacker can trigger a software abort (temporary loss of service). | |
| Modificada | Media (5.3) | 1.0% | — | Pexip Infinity | 25/9/2020 | 17/6/2026 | Pexip Infinity before 24.1 has Improper Input Validation, leading to temporary denial of service via SIP. | |
| Modificada | Alta (7.5) | 1.1% | — | Pexip Infinity | 25/9/2020 | 17/6/2026 | Pexip Infinity before 23.4 has a lack of input validation, leading to temporary denial of service via H.323. | |
| Modificada | Alta (7.5) | 1.1% | — | Pexip Infinity | 25/9/2020 | 17/6/2026 | Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP. | |
| Modificada | Crítica (9.8) | 1.4% | — | Pexip InfinityPexip Reverse Proxy AND Turn Server | 25/9/2020 | 17/6/2026 | Pexip Reverse Proxy and TURN Server before 6.1.0 has Incorrect UDP Access Control via TURN. | |
| Modificada | Alta (7.2) | 1.5% | — | Pexip Infinity | 25/9/2020 | 17/6/2026 | Pexip Infinity before 20.1 allows privilege escalation by restoring a system backup. |