Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
104 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.59% | — | F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+3 | 23/8/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl unpack function crashes. This can lead to a possible scanning engine crash. The exploit can be triggered remotely by an attacker. | |
| Modificada | Alta (7.5) | 0.44% | — | F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+3 | 23/8/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker. | |
| Modificada | Alta (7.5) | 0.48% | — | F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+4 | 10/8/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads to scanning engine crash. The exploit can be triggered remotely by an attacker. | |
| Modificada | Alta (7.5) | 0.48% | — | F-secure Elements Endpoint Detection AND ResponseF-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR Salesforce+4 | 5/8/2022 | 17/6/2026 | A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker. | |
| Modificada | Alta (7.5) | 1.2% | — | Runatlantis Atlantis | 29/7/2022 | 17/6/2026 | The package github.com/runatlantis/atlantis/server/controllers/events before 0.19.7 are vulnerable to Timing Attack in the webhook event validator code, which does not use a constant-time comparison function to validate the webhook secret. It can allow an attacker to recover this secret as an attacker and then forge… | |
| Modificada | Alta (7.5) | 0.46% | — | F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+3 | 22/7/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning engine. | |
| Modificada | Alta (7.5) | 0.45% | — | F-secure Elements Endpoint ProtectionF-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration Protection+3 | 22/7/2022 | 17/6/2026 | A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning engine. | |
| Modificada | Alta (7.5) | 0.47% | — | F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+2 | 14/7/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker. | |
| Modificada | Media (6.5) | 1.9% | 💥 PoC | Solutions-atlantic Regulatory Reporting System | 2/6/2022 | 17/6/2026 | Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to Local File Inclusion (LFI). Any authenticated user has the ability to reference internal system files within requests made to the RRSWeb/maint/ShowDocument/ShowDocument.aspx page. The server will successfully respond with the file contents of… | |
| Modificada | Media (6.1) | 0.81% | 💥 PoC | Solutions-atlantic Regulatory Reporting System | 2/6/2022 | 17/6/2026 | Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to an reflected Cross-Site Scripting (XSS) vulnerability via RRSWeb/maint/ShowDocument/ShowDocument.aspx . | |
| Modificada | Media (6.5) | 0.54% | — | F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements Collaboration ProtectionF-secure Internet Gatekeeper+3 | 25/5/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker. | |
| Modificada | Alta (7.5) | 0.61% | — | F-secure AtlantF-secure Elements Endpoint ProtectionF-secure Linux SecurityWithsecure Cloud Protection FOR Salesforce+1 | 23/5/2022 | 17/6/2026 | Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and heap buffer overflow which eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker. | |
| Modificada | Media (4.8) | 56% | 💥 Exploit | Code-atlantic Popup Maker | 9/5/2022 | 17/6/2026 | The Popup Maker WordPress plugin before 1.16.5 does not sanitise and escape some of its Popup settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed | |
| Modificada | Alta (7.5) | 0.56% | — | F-secure Atlant | 25/4/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the fsicapd component used in certain F-Secure products while scanning larger packages/fuzzed files consume too much memory eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker. | |
| Modificada | Media (6.5) | 0.63% | — | F-secure AtlantF-secure Elements Endpoint ProtectionF-secure Internet GatekeeperF-secure Linux Security+1 | 1/3/2022 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine. | |
| Modificada | Media (5.3) | 0.66% | — | F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Security Cloud+2 | 9/2/2022 | 17/6/2026 | A vulnerability affecting F-Secure antivirus engine before Capricorn update 2022-02-01_01 was discovered whereby decompression of ACE file causes the scanner service to stop. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine. | |
| Modificada | Media (5.5) | 0.46% | — | F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+2 | 22/12/2021 | 17/6/2026 | A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine. | |
| Modificada | Media (5.5) | 0.41% | — | F-secure AtlantF-secure Internet GatekeeperF-secure Linux SecurityF-secure Linux Security 64+1 | 26/11/2021 | 17/6/2026 | A vulnerability affecting F-Secure antivirus engine was discovered whereby unpacking UPX file can lead to denial-of-service. The vulnerability can be exploited remotely by an attacker. A successful attack will result in denial-of-service of the antivirus engine. | |
| Modificada | Media (6.5) | 0.56% | — | F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements FOR Microsoft 365F-secure Internet Gatekeeper+3 | 8/10/2021 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVRDL unpacking module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the… | |
| Modificada | Media (6.5) | 0.56% | — | F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Elements FOR Microsoft 365F-secure Internet Gatekeeper+3 | 8/10/2021 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVPACK module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus… | |
| Modificada | Media (5.3) | 0.60% | — | F-secure AtlantF-secure Cloud ProtectionF-secure Internet GatekeeperF-secure Linux Security | 6/10/2021 | 17/6/2026 | A vulnerability affecting the F-Secure Antivirus engine was discovered when the engine tries to unpack a zip archive (LZW decompression method), and this can crash the scanning engine. The vulnerability can be exploited remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus… | |
| Modificada | Media (5.5) | 0.41% | — | F-secure AtlantF-secure Cloud Protection FOR SalesforceF-secure Linux SecurityF-secure Elements Endpoint Protection | 7/9/2021 | 17/6/2026 | A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-of-service (infinite loop and freezes AV engine scanner). The vulnerability can be exploit remotely by an attacker. A successful attack will result in Denial-of-Service of the Anti-Virus engine. | |
| Modificada | Media (6.5) | 0.74% | — | F-secure AtlantF-secure Linux SecurityF-secure Elements Endpoint Protection | 23/8/2021 | 17/6/2026 | A Denial-of-Service (DoS) vulnerability was discovered in all versions of F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the… | |
| Modificada | Alta (7.8) | 1.5% | — | Atlantiswordprocessor Atlantis Word Processor | 31/10/2019 | 17/6/2026 | An exploitable uninitialized pointer vulnerability exists in the Word document parser of the the Atlantis Word Processor. A specially crafted document can cause an array fetch to return an uninitialized pointer and then performs some arithmetic before writing a value to the result. Usage of this uninitialized pointer… | |
| Modificada | Crítica (9.1) | 9.4% | 💥 Exploit | Code-atlantic Popup Maker | 14/10/2019 | 17/6/2026 | An issue was discovered in the Popup Maker plugin before 1.8.13 for WordPress. An unauthenticated attacker can partially control the arguments of the do_action function to invoke certain popmake_ or pum_ methods, as demonstrated by controlling content and delivery of popmake-system-info.txt (aka the "support debug… |