Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

1280 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.84%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context…
ModificadaAlta (7.8)0.82%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to memory corruption condition while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the…
ModificadaAlta (7.8)0.65%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak…
ModificadaAlta (7.8)0.84%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the…
ModificadaAlta (7.8)0.84%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the…
ModificadaBaja (3.3)0.55%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak…
ModificadaAlta (7.8)0.90%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to stack based buffer overflow while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the…
ModificadaAlta (7.8)0.84%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the…
ModificadaAlta (7.8)0.88%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains a use after free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in…
ModificadaAlta (7.8)0.90%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to stack based buffer overflow while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the…
ModificadaBaja (3.3)0.55%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak…
ModificadaAlta (7.8)0.84%—Siemens JT Open ToolkitSiemens JT Utilities14/12/202117/6/2026
A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the…
ModificadaAlta (7.8)1.6%—Siemens JT Open ToolkitSiemens JT UtilitiesSiemens Jt2goSiemens Solid Edge+114/12/202117/6/2026
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains a use-after-free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability…
ModificadaAlta (7.8)1.6%—Siemens JT Open ToolkitSiemens JT UtilitiesSiemens Jt2goSiemens Solid Edge+114/12/202117/6/2026
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute…
ModificadaCrítica (9.8)0.87%—Utils.js Project Utils.js8/12/202117/6/2026
utils.js is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
ModificadaAlta (7.8)0.88%—GNU BinutilsGNU GCC18/11/202117/6/2026
GCC c++filt v2.26 was discovered to contain a use-after-free vulnerability via the component cplus-dem.c.
ModificadaCrítica (9.8)4.3%💥 PoCCron-utils Project Cron-utils15/11/202117/6/2026
cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote Code Execution (RCE)…
ModificadaAlta (7.8)0.28%—Realtek Rtsupx USB Utility Driver2/11/202117/6/2026
RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve an arbitrary read or write operation from/to physical memory (leading to Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO…
ModificadaAlta (7.8)0.21%—Realtek Rtsupx USB Utility Driver2/11/202117/6/2026
RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve a pool overflow (leading to Escalation of Privileges, Denial of Service, and Code Execution) via a crafted Device IO Control packet to a device.
ModificadaAlta (7.8)0.28%—Realtek Rtsupx USB Utility Driver2/11/202117/6/2026
RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve unauthorized access to USB device privileged IN and OUT instructions (leading to Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted…
ModificadaAlta (7.8)0.28%—Realtek Rtsupx USB Utility Driver2/11/202117/6/2026
RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve unauthorized access to USB devices (Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO Control packet to a device.
ModificadaMedia (6.5)2.1%—SambaDebian LinuxNetapp Management Services FOR Element SoftwareManagement Services FOR Netapp HCI+112/10/202117/6/2026
A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.
ModificadaAlta (7.8)0.56%—Micron Ballistix Memory Overview Display Utility4/10/202117/6/2026
Ballistix MOD Utility through 2.0.2.5 is vulnerable to privilege escalation in the MODAPI.sys driver component. The vulnerability is triggered by sending a specific IOCTL request that allows low-privileged users to directly interact with physical memory via the MmMapIoSpace function call (mapping physical memory into…
ModificadaCrítica (9.8)3.5%—Apache Ddlutils30/9/202117/6/2026
Apache DB DdlUtils 1.0 included a BinaryObjectsHelper that was intended for use when migrating database data with a SQL data type of BINARY, VARBINARY, LONGVARBINARY, or BLOB between databases using the ddlutils features. The BinaryObjectsHelper class was insecure and used ObjectInputStream.readObject without…
ModificadaAlta (7)2.5%💥 PoCOpenbsd OpensshFedoraproject FedoraNetapp Active IQ Unified ManagerNetapp Clustered Data Ontap+826/9/202114/7/2026
sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups are not initialized as expected. Helper programs for AuthorizedKeysCommand and AuthorizedPrincipalsCommand may run with privileges associated with group memberships of…
Orbitaley — Vulnerabilidades