Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

2395 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.34%—Vmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
The installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse setup64.exe file in the installation directory.
ModificadaAlta (7.8)0.42%—Vmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
Untrusted search path vulnerability in the installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.
ModificadaAlta (7.8)1.5%💥 ExploitVmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
tpview.dll in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via a JPEG 2000 image.
ModificadaAlta (7.8)1.5%💥 ExploitVmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via TrueType fonts embedded in EMFSPOOL.
ModificadaAlta (7.8)0.38%—Vmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via an EMF file.
ModificadaAlta (7.8)0.52%—Vmware Workstation PlayerVmware Workstation PRO29/12/201617/6/2026
Multiple heap-based buffer overflows in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS via unspecified vectors.
AnalizadaAlta (8.8)19%⚠ Explotación activaAdobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the TextField class. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)4.6%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have security bypass vulnerability in the implementation of the same origin policy.
ModificadaAlta (8.8)5.9%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class when handling conversion to an object. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)5.9%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability when setting the length property of an array object. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)7.7%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the NetConnection class when handling an attached script object. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)7.9%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the PSDK's MediaPlayer class. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)5.9%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the Action Message Format serialization (AFM0). Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)5.0%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the Clipboard class related to data handling functionality. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)8.3%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable integer overflow vulnerability in the BitmapData class. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)5.0%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the NetConnection class when handling the proxy types. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)5.0%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the PSDK class related to ad policy functionality method. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)7.7%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class related to objects at multiple presentation levels. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)6.7%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the Worker class. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)11%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class for specific search strategies. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)11%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to backtrack search functionality. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)11%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to alternation functionality. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)11%—Adobe Flash Player Desktop RuntimeAdobe Flash Player15/12/201617/6/2026
Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to bookmarking in searches. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)7.2%—Adobe Flash PlayerAdobe Flash Player FOR LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+18/11/201617/6/2026
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
ModificadaAlta (8.8)7.0%—Adobe Flash PlayerAdobe Flash Player FOR LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+18/11/201617/6/2026
Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution.