Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
982 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 11% | — | Apache ActivemqApache ArtemisNetapp Oncommand Workflow AutomationDebian Linux+4 | 27/1/2021 | 17/6/2026 | The optional ActiveMQ LDAP login module can be configured to use anonymous access to the LDAP server. In this case, for Apache ActiveMQ Artemis prior to version 2.16.0 and Apache ActiveMQ prior to versions 5.16.1 and 5.15.14, the anonymous context is used to verify a valid users password in error, resulting in no… | |
| Modificada | Media (5.4) | 0.66% | — | IBM Collaborative Lifecycle ManagementIBM Engineering InsightsIBM Engineering Lifecycle ManagementIBM Engineering Requirements Management Doors Next+7 | 27/1/2021 | 17/6/2026 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194963. | |
| Modificada | Media (5.4) | 0.66% | — | IBM Collaborative Lifecycle ManagementIBM Engineering InsightsIBM Engineering Lifecycle ManagementIBM Engineering Requirements Management Doors Next+7 | 27/1/2021 | 17/6/2026 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190741. | |
| Modificada | Media (5.4) | 0.66% | — | IBM Collaborative Lifecycle ManagementIBM Engineering InsightsIBM Engineering Lifecycle ManagementIBM Engineering Requirements Management Doors Next+7 | 27/1/2021 | 17/6/2026 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190457. | |
| Modificada | Media (5.4) | 0.82% | — | IBM Collaborative Lifecycle ManagementIBM Engineering InsightsIBM Engineering Lifecycle ManagementIBM Engineering Requirements Management Doors Next+7 | 27/1/2021 | 17/6/2026 | IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID:… | |
| Modificada | Media (5.4) | 0.66% | — | IBM Collaborative Lifecycle ManagementIBM Engineering InsightsIBM Engineering Lifecycle ManagementIBM Engineering Requirements Management Doors Next+7 | 27/1/2021 | 17/6/2026 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 182434. | |
| Modificada | Media (4.9) | 2.1% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability… | |
| Modificada | Media (4.4) | 0.47% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of… | |
| Modificada | Media (4.4) | 0.47% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of… | |
| Modificada | Media (4.9) | 1.8% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.4) | 1.7% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.50 and prior, 5.7.32 and prior and 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Locking). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.4) | 1.7% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (5) | 1.7% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability… | |
| Modificada | Media (6.8) | 2.3% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. While the vulnerability is… | |
| Modificada | Baja (2.3) | 0.45% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.4) | 1.7% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of… | |
| Modificada | Media (4.9) | 2.2% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this… | |
| Modificada | Media (4.3) | 1.6% | — | Oracle MysqlNetapp Oncommand InsightNetapp Oncommand Workflow AutomationNetapp Snapcenter+1 | 20/1/2021 | 17/6/2026 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Information Schema). Supported versions that are affected are 5.7.32 and prior and 8.0.22 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful… |