Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
–

60 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)0.90%—Pulsesecure Pulse Secure Desktop Client29/11/201817/6/2026
Pulse Secure Desktop Client 5.3 up to and including R6.0 build 1769 on Windows has Insecure Permissions.
ModificadaMedia (6.8)0.20%—Pulsesecure Pulse Secure Desktop Client6/9/201817/6/2026
In Pulse Secure Pulse Desktop Client 5.3RX before 5.3R5 and 9.0R1, there is a Privilege Escalation Vulnerability with Dynamic Certificate Trust.
ModificadaAlta (7.8)0.32%—Pulsesecure Pulse Secure Desktop Client6/9/201817/6/2026
The Pulse Secure Desktop (macOS) has a Privilege Escalation Vulnerability.
ModificadaMedia (5.5)0.32%—Pulsesecure Pulse Secure Desktop Client6/9/201817/6/2026
The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Format String Vulnerability.
ModificadaMedia (5.3)0.33%—Pulsesecure Pulse Secure Desktop Client6/9/201817/6/2026
The Pulse Secure Desktop (macOS) 5.3RX before 5.3R5 and 9.0R1 has a Privilege Escalation Vulnerability.
ModificadaAlta (8.4)0.53%—Owncloud Desktop Client23/1/201717/6/2026
ownCloud Desktop before 2.2.3 allows local users to execute arbitrary code and possibly gain privileges via a Trojan library in a "special path" in the C: drive.
ModificadaMedia (5.1)0.67%—Owncloud Desktop ClientQT26/10/201517/6/2026
ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE:…
ModificadaBaja (2.6)0.83%—Owncloud Desktop Client26/10/201517/6/2026
ownCloud Desktop Client before 1.8.2 does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which allows man-in-the-middle attackers to bypass the user's certificate distrust decision and obtain sensitive information by leveraging a self-signed certificate and a connection to a server…
ModificadaAlta (7.5)2.2%—Centrinity Firstclass Desktop Client2/5/200516/6/2026
OpenText FirstClass 8.0 client does not properly sanitize strings before passing them to the Windows ShellExecute API, which allows remote attackers to execute arbitrary commands via a UNC path in a bookmark.
ModificadaAlta (7.5)2.2%—Opentext Firstclass Desktop Client20/1/200416/6/2026
FirstClass Desktop Client 7.1 allows remote attackers to execute arbitrary commands via hyperlinks in FirstClass RTF messages.
Orbitaley — Vulnerabilidades