Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3005▼ 69 respecto a la semana anterior
Críticas / altas1419▲ 52 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
61 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 90% | 💥 Exploit | Apache Log4jNetapp Oncommand API ServicesNetapp Oncommand InsightNetapp Oncommand Workflow Automation+75 | 17/4/2017 | 17/6/2026 | In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code. | |
| Modificada | Media (4.9) | 0.48% | — | HP Integrity FirmwareHP IntegrityHP Itegrity | 16/8/2012 | 16/6/2026 | Unspecified vulnerability on the HP Integrity Server BL860c i2, BL870c i2, and BL890c i2 with firmware before 26.31 and the HP Integrity Server rx2800 i2 with firmware before 26.30 allows local users to cause a denial of service via unknown vectors. | |
| Modificada | Baja (2.1) | 0.47% | — | HP OpenvmsHP Openvms FOR Integrity Servers | 2/7/2010 | 16/6/2026 | Unspecified vulnerability in the HP OpenVMS Auditing feature in OpenVMS ALPHA 7.3-2, 8.2, and 8.3; and OpenVMS for Integrity Servers 8.3 AND 8.3-1H1; allows local users to obtain sensitive information via unknown vectors. | |
| Modificada | Baja (2.1) | 0.34% | — | HP Openvms IntegrityAIHP Openvms AlphaAI | 3/11/2005 | 16/6/2026 | Unspecified vulnerability in HP OpenVMS Integrity 8.2-1 and 8.2, and OpenVMS Alpha 7.3-2 and 8.2, allows local users to cause a denial of service. | |
| Modificada | Baja (2.1) | 0.33% | — | Checkpoint Check Point Integrity ClientZonelabs ZonealarmZonelabs Zonealarm Wireless Security | 11/2/2005 | 16/6/2026 | vsdatant.sys in Zone Lab ZoneAlarm before 5.5.062.011, ZoneAlarm Wireless before 5.5.080.000, Check Point Integrity Client 4.x before 4.5.122.000 and 5.x before 5.1.556.166 do not properly verify that the ServerPortName argument to the NtConnectPort function is a valid memory address, which allows local users to cause… | |
| Modificada | Alta (10) | 8.8% | — | Zonelabs IntegrityZonelabs Zonealarm | 23/11/2004 | 16/6/2026 | Stack-based buffer overflow in the SMTP service support in vsmon.exe in Zone Labs ZoneAlarm before 4.5.538.001, ZoneLabs Integrity client 4.0 before 4.0.146.046, and 4.5 before 4.5.085, allows remote attackers to execute arbitrary code via a long RCPT TO argument. | |
| Modificada | Baja (2.1) | 0.43% | — | Pedestal Software Integrity Protection Driver | 17/8/2004 | 16/6/2026 | The ZwOpenSection function in Integrity Protection Driver (IPD) 1.4 and earlier allows local users to cause a denial of service (crash) via an invalid pointer in the "oa" argument. | |
| Modificada | Crítica (9.8) | 1.6% | — | Pedestalsoftware Integrity Protection Driver | 31/12/2003 | 16/6/2026 | Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymbolicLinkObject function to create a symbolic link to (1) \Device\PhysicalMemory or (2) to a drive letter using the subst… | |
| Modificada | Baja (2.1) | 0.33% | — | Pedestal Software Integrity Protection Driver | 31/12/2003 | 16/6/2026 | NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create and overwrite arbitrary files via a symlink attack on \winnt\system32\drivers using the subst command. | |
| Modificada | Baja (2.1) | 0.35% | — | Pedestal Software Integrity Protection Driver | 31/12/2002 | 16/6/2026 | Integrity Protection Driver (IPD) 1.2 and earlier blocks access to \Device\PhysicalMemory by its name, which could allow local privileged processes to overwrite kernel memory by accessing the device through a symlink. | |
| Modificada | Baja (2.1) | 0.43% | — | Pedestal Software Integrity Protection Driver | 31/12/2002 | 16/6/2026 | restrictEnabled in Integrity Protection Driver (IPD) 1.2 delays driver installation for 20 minutes, which allows local users to insert malicious code by setting system clock to an earlier time. |