Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2678▼ 660 respecto a la semana anterior
Críticas / altas1266▼ 293 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
706 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.9) | 34% | 💥 Exploit | Vmware Spring FrameworkOracle Application Testing SuiteOracle BIG Data DiscoveryOracle Communications Converged Application Server+24 | 6/4/2018 | 17/6/2026 | Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to configure Spring MVC to serve static resources (e.g. CSS, JS, images). When static resources are served from a file system on Windows (as opposed to the classpath, or the… | |
| Modificada | Crítica (9.8) | 77% | 💥 PoC | Vmware Spring FrameworkOracle Application Testing SuiteOracle BIG Data DiscoveryOracle Communications Converged Application Server+24 | 6/4/2018 | 17/6/2026 | Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craft a message to the broker that can… | |
| Modificada | Media (6.1) | 1.6% | — | Zohocorp Manageengine Desktop Central | 15/3/2018 | 17/6/2026 | Zoho ManageEngine Desktop Central version 9.1.0 build 91099 has multiple XSS issues that were fixed in build 92026. | |
| Modificada | Media (6.7) | 0.30% | — | F5 Big-iq Centralized Management | 8/3/2018 | 17/6/2026 | A local user on F5 BIG-IQ Centralized Management 5.1.0-5.2.0 with the Access Manager role has privileges to change the passwords of other users on the system, including the local admin account password. | |
| Modificada | Crítica (9.8) | 1.5% | — | Eq-3 Homematic Central Control Unit Ccu2 Firmware | 22/2/2018 | 17/6/2026 | eQ-3 AG HomeMatic CCU2 2.29.22 devices have an open XML-RPC port without authentication. This can be exploited by sending arbitrary XML-RPC requests to control the attached BidCos devices. | |
| Modificada | Alta (8) | 1.1% | — | Eq-3 Homematic Central Control Unit Ccu2 Firmware | 22/2/2018 | 17/6/2026 | Remote Code Execution in the addon installation process in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows authenticated attackers to create or overwrite arbitrary files or install malicious software on the device. | |
| Modificada | Alta (8.1) | 0.79% | — | Eq-3 Homematic Central Control Unit Ccu2 Firmware | 22/2/2018 | 17/6/2026 | In /usr/local/etc/config/addons/mh/loopupd.sh on eQ-3 AG HomeMatic CCU2 2.29.22 devices, software update packages are downloaded via the HTTP protocol, which does not provide any cryptographic protection of the downloaded contents. An attacker with a privileged network position (which could be obtained via DNS… | |
| Modificada | Crítica (9.8) | 64% | 💥 Exploit | Eq-3 Homematic Central Control Unit Ccu2 Firmware | 22/2/2018 | 17/6/2026 | Remote Code Execution in the TCL script interpreter in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to obtain read/write access and execute system commands on the device. This vulnerability can be exploited by unauthenticated attackers with access to the web interface. | |
| Modificada | Media (5.3) | 1.9% | — | Eq-3 Homematic Central Control Unit Ccu2 Firmware | 22/2/2018 | 17/6/2026 | Directory Traversal / Arbitrary File Read in User.getLanguage method in eQ-3 AG Homematic CCU2 2.29.2 and earlier allows remote attackers to read the first line of an arbitrary file on the CCU2's filesystem. This vulnerability can be exploited by unauthenticated attackers with access to the web interface. | |
| Modificada | Crítica (9.8) | 8.6% | — | Zohocorp Manageengine Desktop Central | 19/2/2018 | 17/6/2026 | Remote Information Disclosure and Escalation of Privileges in ManageEngine Desktop Central MSP 10.0.137 allows attackers to download unencrypted XML files containing all data for configuration policies via a predictable /client-data/<client_id>/collections/##/usermgmt.xml URL, as demonstrated by passwords and Wi-Fi… | |
| Modificada | Alta (8.8) | 2.2% | — | Cisco Unified Computing System Central Software | 8/2/2018 | 17/6/2026 | A vulnerability in an operations script of Cisco UCS Central could allow an authenticated, remote attacker to execute arbitrary shell commands with the privileges of the daemon user. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by posting a crafted request to… | |
| Modificada | Alta (7.5) | 2.3% | — | Cisco Unified Computing System Central Software | 18/1/2018 | 17/6/2026 | A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to high CPU utilization on the targeted device. The vulnerability is due to insufficient rate limiting protection for IPv6 ingress traffic.… | |
| Modificada | Crítica (9.8) | 81% | 💥 Exploit | Zohocorp Desktop Central | 4/1/2018 | 17/6/2026 | The DCPluginServelet servlet in ManageEngine Desktop Central and Desktop Central MSP before build 90109 allows remote attackers to create administrator accounts via an addPlugInUser action. | |
| Modificada | Media (5.4) | 0.89% | — | Cisco Unified Computing System Central Software | 30/11/2017 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote attacker to conduct a cross-site scripting (XSS) attack against a user of the affected interface or hijack a valid session ID from a user of the affected interface. Cisco Bug IDs: CSCvf71978, CSCvf71986. | |
| Modificada | Media (5.4) | 0.89% | — | Cisco Unified Computing System Central Software | 30/11/2017 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote attacker to conduct a cross-site scripting (XSS) attack against a user of the affected interface or hijack a valid session ID from a user of the affected interface. Cisco Bug IDs: CSCvf71978, CSCvf71986. | |
| Modificada | Crítica (9.8) | 1.2% | — | Kabona Webdatorcentral | 7/11/2017 | 17/6/2026 | A Plaintext Storage of a Password issue was discovered in Kabona AB WebDatorCentral (WDC) versions prior to Version 3.4.0. WDC stores password credentials in plaintext. | |
| Analizada | Alta (8.1) | 100% | ⚠ Explotación activa💥 Exploit | Apache TomcatCanonical Ubuntu LinuxOracle Agile Product Lifecycle ManagementOracle Communications Instant Messaging Server+54 | 4/10/2017 | 25/8/2026 | When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default servlet to false) it was possible to upload a JSP file to the server via a specially crafted request. This JSP… | |
| Modificada | Crítica (9.8) | 74% | 💥 Exploit | Manageengine Desktop Central | 28/9/2017 | 17/6/2026 | The FileUploadServlet class in ManageEngine Desktop Central 9 before build 91093 allows remote attackers to upload and execute arbitrary files via the ConnectionId parameter. | |
| Modificada | Alta (7.5) | 1.5% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. An attacker can change the plant time even when not authenticated in any way. This changes the system time, possibly affecting lockout policies and random-number generators based on timestamps, and makes timestamps for data analysis unreliable. NOTE: the vendor… | |
| Modificada | Alta (8.8) | 0.70% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+36 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. If a user simultaneously has Sunny Explorer running and visits a malicious host, cross-site request forgery can be used to change settings in the inverters (for example, issuing a POST request to change the user password). All Sunny Explorer settings available… | |
| Modificada | Crítica (9.8) | 1.4% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. The SIP implementation does not properly use authentication with encryption: it is vulnerable to replay attacks, packet injection attacks, and man in the middle attacks. An attacker is able to successfully use SIP to communicate with the device from anywhere… | |
| Modificada | Crítica (9.8) | 2.2% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. An attacker can use Sunny Explorer or the SMAdata2+ network protocol to update the device firmware without ever having to authenticate. If an attacker is able to create a custom firmware version that is accepted by the inverter, the inverter is compromised… | |
| Modificada | Crítica (9.8) | 1.1% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. The inverters make use of a weak hashing algorithm to encrypt the password for REGISTER requests. This hashing algorithm can be cracked relatively easily. An attacker will likely be able to crack the password using offline crackers. This cracked password can… | |
| Modificada | Alta (7.5) | 2.1% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. By sending crafted packets to an inverter and observing the response, active and inactive user accounts can be determined. This aids in further attacks (such as a brute force attack) as one now knows exactly which users exist and which do not. NOTE: the… | |
| Modificada | Alta (8.1) | 0.69% | — | SMA Sunny BOY 3600 FirmwareSMA Sunny BOY 5000 FirmwareSMA Sunny Tripower Core1 FirmwareSMA Sunny Tripower 15000tl Firmware+35 | 5/8/2017 | 17/6/2026 | An issue was discovered in SMA Solar Technology products. The SMAdata2+ communication protocol does not properly use authentication with encryption: it is vulnerable to man in the middle, packet injection, and replay attacks. Any setting change, authentication packet, scouting packet, etc. can be replayed, injected,… |