Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2743▼ 518 respecto a la semana anterior
Críticas / altas1293▼ 226 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

634 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4)1.4%—Oracle Enterprise Manager Grid Control21/1/201617/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 11.1.0.1, 11.2.0.4, 12.1.0.4, and 12.1.0.5 allows remote authenticated users to affect confidentiality via unknown vectors related to UI Framework.
ModificadaMedia (6.8)1.8%—Oracle Enterprise Manager Grid Control21/1/201617/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 11.1.0.1, 12.1.0.4, and 12.1.0.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to UI Framework.
ModificadaMedia (4.6)0.40%—Oracle Enterprise Manager Grid Control21/1/201617/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 11.1.0.1 and 11.2.0.4 allows local users to affect confidentiality, integrity, and availability via vectors related to Agent Next Gen.
ModificadaMedia (4.3)1.6%—Oracle Enterprise Manager Grid Control21/1/201617/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.4 allows remote attackers to affect confidentiality via vectors related to Agent Next Gen.
ModificadaMedia (4)1.4%—Cisco Connected Grid Network Management System10/11/201517/6/2026
The web GUI in Cisco Connected Grid Network Management System (CG-NMS) 3.0(0.35) and 3.0(0.54) allows remote authenticated users to bypass intended access restrictions and modify the configuration by leveraging the Monitor-Only role, aka Bug ID CSCuw42640.
ModificadaMedia (5)1.9%—Oracle Enterprise Manager Grid Control21/10/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.4 and 12.1.0.5 allows remote attackers to affect availability via unknown vectors related to Agent Next Gen.
ModificadaMedia (4.1)0.34%—Oracle Enterprise Manager Grid Control21/10/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.4 and 12.1.0.5 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Agent Next Gen.
ModificadaMedia (5.8)1.7%—Oracle Enterprise Manager Grid Control21/10/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.4 and 12.1.0.5 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Agent Next Gen.
ModificadaBaja (3.6)1.2%—Oracle Enterprise Manager Grid Control21/10/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.0.1 and 12.2.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Ops Center.
ModificadaMedia (5)2.8%—Oracle Enterprise Manager Database ControlOracle Enterprise Manager Grid Control16/7/201517/6/2026
Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform 11.1.0.1, and EM DB Control 11.2.0.3 and 11.2.0.4, allows remote attackers to affect confidentiality via vectors related to RAC Management.
ModificadaMedia (5.5)1.7%—Oracle Enterprise Manager Plugin FOR Database ControlOracle Enterprise Manager Database ControlOracle Enterprise Manager Grid Control16/7/201517/6/2026
Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform 11.1.0.1; EM Plugin for DB 12.1.0.5, 12.1.0.6, 12.1.0.7; and EM DB Control 11.1.0.7, 11.2.0.3, and 11.2.0.4 allows remote authenticated users to affect confidentiality and…
ModificadaMedia (4.3)2.0%—Oracle Enterprise Manager Database ControlOracle Enterprise Manager Grid ControlOracle Enterprise Manager Plugin FOR Database Control16/7/201517/6/2026
Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 11.1.0.1; EM Plugin for DB: 12.1.0.5, 12.1.0.6, 12.1.0.7; EM DB Control: 11.1.0.7, 11.2.0.3, and 11.2.0.4 allows remote attackers to affect integrity via unknown vectors related…
ModificadaMedia (4.3)1.4%—Oracle Enterprise Manager Grid Control16/4/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control MOS 12.1.0.5 and 12.1.0.6 allows remote attackers to affect integrity via unknown vectors related to My Oracle Support Plugin.
ModificadaMedia (5)1.3%—Oracle Enterprise Manager Grid Control21/1/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control 12.1.0.3 and 12.1.0.4 allows remote attackers to affect confidentiality via unknown vectors related to UI Framework.
ModificadaMedia (4.3)1.00%—Oracle Enterprise Manager Grid Control21/1/201517/6/2026
Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 11.1.3 and 12.1.4 allows remote attackers to affect integrity via unknown vectors related to User Interface Framework.
ModificadaMedia (6.8)1.4%—Boldgrid W3 Total Cache24/12/201417/6/2026
The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and hijack the authentication of administrators for requests that change the mobile site redirect URI via the mobile_groups[*][redirect]…
ModificadaMedia (4.3)2.1%—Boldgrid W3 Total Cache19/12/201417/6/2026
Cross-site scripting (XSS) vulnerability in the W3 Total Cache plugin before 0.9.4.1 for WordPress, when debug mode is enabled, allows remote attackers to inject arbitrary web script or HTML via the "Cache key" in the HTML-Comments, as demonstrated by the PATH_INFO to the default URI.
ModificadaMedia (4.9)0.97%—Oracle Enterprise Manager Grid Control15/10/201417/6/2026
Unspecified vulnerability in the Application Performance Management component in Oracle Enterprise Manager Grid Control before 12.1.0.6.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to End User Experience Management.
ModificadaBaja (2.1)0.98%—Oracle Enterprise Manager Grid ControlOracle Enterprise Manager Database Control15/10/201417/6/2026
Unspecified vulnerability in the Enterprise Manager for Oracle Database component in Oracle Enterprise Manager Grid Control EM Base Platform: 10.2.0.5, 11.1.0.1 EM DB Control: 11.1.0.7, 11.2.0.3, 11.2.0.4 EM Plugin for DB: 12.1.0.4, 12.1.0.5, and 12.1.0.6 allows remote authenticated users to affect integrity via…
ModificadaBaja (3.5)0.95%—JO Hasenau Gridelements4/6/201417/6/2026
Cross-site scripting (XSS) vulnerability in the layout wizard in the Grid Elements (gridelements) extension before 1.5.1 and 2.0.x before 2.0.3 for TYPO3 allows remote authenticated backend users to inject arbitrary web script or HTML via unspecified vectors.
ModificadaMedia (4.3)0.98%—Oracle Enterprise Manager Database ControlOracle Enterprise Manager Grid ControlOracle Enterprise Manager Plugin FOR Database Control16/10/201316/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.2 and 12.1.0.3 allows remote attackers to affect integrity via unknown vectors…
ModificadaMedia (4.3)0.98%—Oracle Enterprise Manager Plugin FOR Database ControlOracle Enterprise Manager Grid ControlOracle Enterprise Manager Database Control16/10/201316/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.2 allows remote attackers to affect integrity via unknown vectors related to Storage…
ModificadaMedia (4.3)0.98%—Oracle Enterprise Manager Database ControlOracle Enterprise Manager Grid ControlOracle Enterprise Manager Plugin FOR Database Control16/10/201316/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.2 and 12.1.0.3 allows remote attackers to affect integrity via unknown vectors…
ModificadaMedia (4.3)0.98%—Oracle Enterprise Manager Grid ControlOracle Enterprise Manager Plugin FOR Database ControlOracle Enterprise Manager Database Control16/10/201316/6/2026
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.2, 12.1.0.3, and 12.1.0.4 allows remote attackers to affect integrity via unknown…
ModificadaMedia (4)1.9%—IBM Websphere Extended Deployment Compute Grid28/8/201316/6/2026
IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive information, and consequently bypass intended access restrictions on jobs, via unspecified vectors.
Orbitaley — Vulnerabilidades