Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
2526 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.33% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | |
| Modificada | Alta (7) | 0.27% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | |
| Modificada | Alta (7.8) | 0.33% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | |
| Modificada | Alta (7) | 0.27% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way. | |
| Modificada | Alta (7.8) | 0.33% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | |
| Modificada | Alta (7.8) | 0.33% | — | K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+1 | 16/1/2018 | 17/6/2026 | K7 Antivirus Premium before 15.1.0.53 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a specific set of IOCTL calls. | |
| Modificada | Alta (7.5) | 12% | — | Microsoft ChakracoreMicrosoft Internet ExplorerMicrosoft Edge | 4/1/2018 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the… | |
| Modificada | Alta (7.5) | 12% | — | Microsoft ChakracoreMicrosoft EdgeMicrosoft Internet Explorer | 4/1/2018 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the… | |
| Modificada | Media (6.1) | 0.94% | — | Samsung Internet Browser | 27/12/2017 | 17/6/2026 | Samsung Internet Browser 6.2.01.12 allows remote attackers to bypass the Same Origin Policy, and conduct UXSS attacks to obtain sensitive information, via vectors involving an IFRAME element inside XSLT data in one part of an MHTML file. Specifically, JavaScript code in another part of this MHTML file does not have a… | |
| Modificada | Alta (7.5) | 79% | 💥 Exploit | Samsung Internet Browser | 21/12/2017 | 17/6/2026 | Samsung Internet Browser 5.4.02.3 allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that redirects to a child tab and rewrites the innerHTML property. | |
| Modificada | Alta (8.8) | 3.7% | — | Bitdefender Internet Security 2018 | 21/12/2017 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within emulator 0x102 in… | |
| Modificada | Alta (8.8) | 3.9% | — | Bitdefender Internet Security 2018 | 21/12/2017 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within emulator 0x10A in… | |
| Modificada | Alta (8.8) | 6.5% | — | Bitdefender Internet Security 2018 | 21/12/2017 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within cevakrnl.xmd. The… | |
| Modificada | Alta (7.5) | 8.6% | — | Microsoft ChakracoreMicrosoft Internet Explorer | 12/12/2017 | 17/6/2026 | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting… | |
| Modificada | Media (5.3) | 6.4% | — | Microsoft ChakracoreMicrosoft Internet ExplorerMicrosoft Edge | 12/12/2017 | 17/6/2026 | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, and Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016, and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker… | |
| Modificada | Alta (7.5) | 8.6% | — | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to how Internet Explorer… | |
| Modificada | Alta (7.5) | 8.5% | — | Microsoft ChakracoreMicrosoft EdgeMicrosoft Internet Explorer | 12/12/2017 | 17/6/2026 | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as the… | |
| Modificada | Alta (7.5) | 65% | 💥 Exploit | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as the current user, due to how Internet Explorer handles objects in… | |
| Modificada | Media (5.3) | 25% | 💥 Exploit | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to obtain information to further compromise the user's system, due to how Internet Explorer… | |
| Modificada | Alta (7.5) | 47% | 💥 Exploit | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as the current user, due to how Internet Explorer handles objects in… | |
| Modificada | Alta (7.5) | 7.9% | — | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as the current user, due to how Internet Explorer handles objects in… | |
| Modificada | Alta (7.5) | 8.5% | — | Microsoft ChakracoreMicrosoft Internet ExplorerMicrosoft Edge | 12/12/2017 | 17/6/2026 | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as the current… | |
| Modificada | Alta (7.5) | 8.5% | — | Microsoft ChakracoreMicrosoft Internet ExplorerMicrosoft Edge | 12/12/2017 | 17/6/2026 | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and and Internet Explorer adn Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to gain the same user rights as… | |
| Modificada | Alta (7.5) | 50% | 💥 Exploit | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow an attacker to execute arbitrary code in the context of the current user, due to how Internet Explorer handles objects in memory,… | |
| Modificada | Media (5.3) | 6.4% | — | Microsoft Internet Explorer | 12/12/2017 | 17/6/2026 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to obtain information to further compromise the user's system, due to how Internet… |