Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
37 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.4) | 0.21% | — | Lenovo Power Management Driver | 13/4/2021 | 17/6/2026 | A null pointer dereference vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could cause systems to experience a blue screen error. | |
| Modificada | Alta (7.8) | 0.20% | — | Lenovo Power Management Driver | 13/4/2021 | 17/6/2026 | A privilege escalation vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could allow unauthorized access to the driver's device object. | |
| Modificada | Media (4.4) | 1.7% | 💥 Exploit | Lenovo Power Management Driver | 10/12/2019 | 17/6/2026 | A potential vulnerability has been reported in Lenovo Power Management Driver versions prior to 1.67.17.48 leading to a buffer overflow which could cause a denial of service. | |
| Modificada | Media (5.4) | 0.66% | — | Cisco Firepower Management Center Firmware | 16/10/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied… | |
| Modificada | Media (4.8) | 0.62% | — | Cisco Firepower Management Center 2600 FirmwareCisco Firepower Appliance 7030 FirmwareCisco Firepower Appliance 7110 FirmwareCisco Firepower Appliance 7115 Firmware+30 | 16/10/2019 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. These vulnerabilities are due to insufficient validation of… | |
| Modificada | Media (4.8) | 0.80% | — | Cisco Firepower Management Center 2600 FirmwareCisco Firepower Appliance 7030 FirmwareCisco Firepower Appliance 7110 FirmwareCisco Firepower Appliance 7115 Firmware+30 | 16/10/2019 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. These vulnerabilities are due to insufficient validation of… | |
| Modificada | Alta (8.8) | 0.94% | — | Cisco Secure Firewall Management CenterCisco Firepower Appliance 8360 FirmwareCisco Firepower Management Center 2500 FirmwareCisco Firepower Appliance 8120 Firmware+28 | 21/6/2018 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the… | |
| Modificada | Baja (3.3) | 0.26% | — | Lenovo Power Management | 4/6/2017 | 17/6/2026 | In the Lenovo Power Management driver before 1.67.12.24, a local user may alter the trackpoint's firmware and stop the trackpoint from functioning correctly. This issue only affects ThinkPad X1 Carbon 5th generation. | |
| Modificada | Media (6.8) | 0.89% | — | HP Insight Control Power Management | 28/10/2010 | 16/6/2026 | Cross-site request forgery (CSRF) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | |
| Modificada | Media (4.3) | 1.5% | — | HP Insight Control Power Management | 28/10/2010 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (6.4) | 1.5% | — | Compaq Insight Management AgentCompaq Power Management | 1/6/1999 | 16/6/2026 | Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301. | |
| Modificada | Media (5) | 6.2% | 💥 Exploit | Compaq Insight Management AgentCompaq Power Management | 26/5/1999 | 16/6/2026 | The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack. |