Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3005▼ 85 respecto a la semana anterior
Críticas / altas1403▲ 41 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

3798 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (7.4)0.32%—Oracle Application Object LibraryAI15/9/202617/9/2026
Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Core). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Application Object Library.…
AplazadaAlta (7.1)0.14%—Oracle Applications ManagerAIOracle E-business SuiteAI15/9/202617/9/2026
Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Command Line - RapidClone). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Applications Manager…
AplazadaAlta (7)0.13%—Oracle Application Testing SuiteAI15/9/202617/9/2026
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Application Testing Suite executes to compromise Oracle Application Testing Suite. Successful attacks…
AplazadaAlta (8.8)0.42%—Oracle Application Testing SuiteAI15/9/202617/9/2026
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows low privileged attacker having Test Manager for Web Apps privilege with network access via HTTP to compromise Oracle Application Testing Suite. Successful attacks of this…
Pendiente de análisisAlta (7.7)0.34%—Oracle WEB Applications Desktop IntegratorAIOracle E-business SuiteAI15/9/202616/9/2026
Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: File download). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Web Applications…
AplazadaAlta (7.8)0.14%—Oracle E-business SuiteAIOracle Applications DBAAI15/9/202617/9/2026
Vulnerability in the Applications DBA product of Oracle E-Business Suite (component: AD Utilities). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Applications DBA executes to compromise Applications DBA.…
AplazadaAlta (7.2)0.46%—Oracle E-business SuiteAIOracle Applications DBAAI15/9/202617/9/2026
Vulnerability in the Applications DBA product of Oracle E-Business Suite (component: AD Utilities). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Applications DBA. Successful attacks of this…
AplazadaAlta (8.2)0.28%—Oracle Siebel CRM Cloud ApplicationsAI15/9/202617/9/2026
Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). Supported versions that are affected are 22.3-26.7. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Cloud Applications. While the…
AplazadaAlta (8.8)0.42%—Oracle Siebel CRM Cloud ApplicationsAI15/9/202617/9/2026
Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). Supported versions that are affected are 22.3-26.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Cloud Applications. Successful…
AplazadaAlta (7.9)0.16%—Oracle Siebel CRM Cloud ApplicationsAI15/9/202617/9/2026
Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). Supported versions that are affected are 22.3-26.7. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Siebel CRM Cloud Applications executes to…
Pendiente de análisisMedia (6.5)0.34%—Oracle WEB Applications Desktop IntegratorAIOracle E-business SuiteAI15/9/202616/9/2026
Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: File download). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Web Applications…
Pendiente de análisisAlta (8.2)0.31%—Oracle Mobile Application ServerAIOracle E-business SuiteAI15/9/202621/9/2026
Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Mobile Application…
Pendiente de análisisAlta (8.2)0.42%—Oracle Mobile Application ServerAI15/9/202621/9/2026
Vulnerability in the Oracle Mobile Application Server product of Oracle E-Business Suite (component: MWA Terminal Server). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Mobile Application…
AplazadaAlta (7.5)0.39%—Oracle Applications ManagerAIOracle E-business SuiteAI15/9/202621/9/2026
Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Command Line - RapidClone). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Manager.…
AplazadaAlta (7.1)0.29%—Oracle Applications FrameworkAI15/9/202621/9/2026
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Personalization). Supported versions that are affected are 12.2.9-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Framework.…
AplazadaAlta (7.5)0.42%—Oracle Application Object LibraryAIOracle E-business SuiteAI15/9/202621/9/2026
Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Core). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful…
AplazadaCrítica (9.1)0.31%—Oracle Application Testing SuiteAI15/9/202621/9/2026
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows low privileged attacker having Test Manager for Web Apps privilege with network access via HTTP to compromise Oracle Application Testing Suite. While the vulnerability is in…
AplazadaAlta (7.5)0.39%—Oracle Applications ManagerAIOracle E-business SuiteAI15/9/202622/9/2026
Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: Command Line - RapidClone). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Manager.…
Pendiente de análisisMedia (5.9)0.31%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 is affected by an authentication bypass vulnerability when using XD or Intelligent-Management features.
Pendiente de análisisBaja (3.1)0.16%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 is affected by an authorization bypass vulnerability.
Pendiente de análisisMedia (4.8)0.22%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to inject forged log entries into the server's administrative log.
Pendiente de análisisMedia (5.3)0.27%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to inject forged log entries into the server's administrative log.
Pendiente de análisisMedia (6.5)0.25%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication and obtain sensitive information by sending a crafted unauthenticated request.
Pendiente de análisisMedia (5.4)0.18%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 is affected by a reflected cross-site scripting vulnerability.
Pendiente de análisisMedia (6.4)0.20%—IBM Websphere Application ServerAI14/9/202616/9/2026
IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication on an admin console servlet.