Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

103 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.4)0.25%—Intel Atom C3308Intel Atom C3336Intel Atom C3338Intel Atom C3338r+6779/2/202217/6/2026
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
ModificadaAlta (7.8)0.33%—Intel Atom C3308Intel Atom C3336Intel Atom C3338Intel Atom C3338r+6779/2/202217/6/2026
Improper access control in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable an escalation of privilege via local access.
ModificadaAlta (7.5)1.7%—Plutinosoft Platinum21/1/202217/6/2026
Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.
ModificadaMedia (6.7)0.33%—Intel SGX SDKIntel Xeon Gold 6342 FirmwareIntel Xeon Gold 6346 FirmwareIntel Xeon Gold 6330 Firmware+17917/11/202117/6/2026
Improper input validation in the Intel(R) SGX SDK applications compiled for SGX2 enabled processors may allow a privileged user to potentially escalation of privilege via local access.
ModificadaMedia (6.7)3.0%—Intel Celeron N2805Intel Celeron N2806Intel Celeron N2807Intel Celeron N2808+48017/11/202117/6/2026
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)3.1%—Intel Celeron N2805Intel Celeron N2806Intel Celeron N2807Intel Celeron N2808+48017/11/202117/6/2026
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.5)0.56%—Genexis Platinum 4410 Firmware10/11/202117/6/2026
Cross site request forgery (CSRF) in Genexis Platinum 4410 V2-1.28, allows attackers to cause a denial of service by continuously restarting the router.
ModificadaMedia (6.7)0.27%—Intel Atom C3000Intel Atom C3308Intel Atom C3336Intel Atom C3338+106016/8/202117/6/2026
Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaMedia (6.7)0.33%—Intel Atom C3000Intel Atom C3308Intel Atom C3336Intel Atom C3338+106014/7/202117/6/2026
Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to potentially enable an escalation of privilege via local access.
ModificadaCrítica (9.8)45%💥 ExploitGenexis Platinum 4410 Firmware13/4/202117/6/2026
Genexis PLATINUM 4410 2.1 P4410-V2-1.28 devices allow remote attackers to execute arbitrary code via shell metacharacters to sys_config_valid.xgi, as demonstrated by the sys_config_valid.xgi?exeshell=%60telnetd%20%26%60 URI.
ModificadaMedia (6.5)3.1%💥 ExploitGenexis Platinum 4410 Firmware17/11/202017/6/2026
UPNP Service listening on port 5555 in Genexis Platinum 4410 Router V2.1 (P4410-V2–1.34H) has an action 'X_GetAccess' which leaks the credentials of 'admin', provided that the attacker is network adjacent.
ModificadaAlta (7.8)0.42%—Intel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r FirmwareIntel Xeon Gold 5220r FirmwareIntel Xeon Gold 6208u Firmware+13312/11/202017/6/2026
Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
ModificadaMedia (5.4)0.76%—Genexis Platinum-4410 Firmware28/10/202017/6/2026
Genexis Platinum-4410 P4410-V2-1.28 devices allow stored XSS in the WLAN SSID parameter. This could allow an attacker to perform malicious actions in which the XSS popup will affect all privileged users.
ModificadaMedia (6.5)3.1%💥 ExploitGenexis Platinum 4410 Firmware16/9/202017/6/2026
A specific router allows changing the Wi-Fi password remotely. Genexis Platinum 4410 V2-1.28, a compact router generally used at homes and offices was found to be vulnerable to Broken Access Control and CSRF which could be combined to remotely change the WIFI access point’s password.
ModificadaMedia (5.6)1.1%💥 PoCIntel Atom C2308Intel Atom C2316Intel Atom C2338Intel Atom C2350+131712/3/202017/6/2026
Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334:…
ModificadaCrítica (9.8)7.3%💥 ExploitGenexis Platinum-4410 Firmware8/1/202017/6/2026
An authentication bypass vulnerability on Genexis Platinum-4410 v2.1 P4410-V2 1.28 devices allows attackers to obtain cleartext credentials from the HTML source code of the cgi-bin/index2.asp URI.
ModificadaMedia (5.3)0.34%—Intel Xeon Platinum 9282 FirmwareIntel Xeon Platinum 9242 FirmwareIntel Xeon Platinum 9222 FirmwareIntel Xeon Platinum 9221 Firmware+37416/12/201917/6/2026
Improper conditions check in multiple Intel® Processors may allow an authenticated user to potentially enable partial escalation of privilege, denial of service and/or information disclosure via local access.
ModificadaMedia (6.7)0.39%—Intel Xeon Platinum 8253 FirmwareIntel Xeon Platinum 8256 FirmwareIntel Xeon Platinum 8260 FirmwareIntel Xeon Platinum 8276 Firmware+12614/11/201917/6/2026
Insufficient memory protection in System Management Mode (SMM) and Intel(R) TXT for certain Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)0.39%—Intel Xeon E-2276m FirmwareIntel Xeon E-2286m FirmwareIntel Core I5-9500 FirmwareIntel Core I5-9600 Firmware+44014/11/201917/6/2026
Insufficient memory protection in Intel(R) TXT for certain Intel(R) Core Processors and Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.5)0.92%—Intel Core I3-10110u FirmwareIntel Core I3-10110y FirmwareIntel Core I3-1005g1 FirmwareIntel Core I3-9300t Firmware+77414/11/201917/6/2026
Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.
ModificadaAlta (8.2)0.38%—Intel Xeon Platinum 8253 FirmwareIntel Xeon Platinum 8256 FirmwareIntel Xeon Platinum 8260 FirmwareIntel Xeon Platinum 8276 Firmware+28014/11/201917/6/2026
Insufficient input validation in system firmware for Intel(R) Xeon(R) Scalable Processors, Intel(R) Xeon(R) Processors D Family, Intel(R) Xeon(R) Processors E5 v4 Family, Intel(R) Xeon(R) Processors E7 v4 Family and Intel(R) Atom(R) processor C Series may allow a privileged user to potentially enable escalation of…
ModificadaMedia (6.7)0.38%—Intel Xeon Platinum 8253 FirmwareIntel Xeon Platinum 8256 FirmwareIntel Xeon Platinum 8260 FirmwareIntel Xeon Platinum 8276 Firmware+28014/11/201917/6/2026
Insufficient access control in system firmware for Intel(R) Xeon(R) Scalable Processors, 2nd Generation Intel(R) Xeon(R) Scalable Processors and Intel(R) Xeon(R) Processors D Family may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local…
ModificadaMedia (5.3)1.9%—Plutinosoft Platinum26/9/201917/6/2026
Platinum UPnP SDK 1.2.0 allows Directory Traversal in Core/PltHttpServer.cpp because it checks for /.. where it should be checking for ../ instead.
ModificadaMedia (6.7)0.40%—Intel Xeon D-1649n FirmwareIntel Xeon D-1633n FirmwareIntel Xeon D-1637 FirmwareIntel Xeon D-1627 Firmware+4417/5/201917/6/2026
Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
ModificadaMedia (6.7)0.43%—Intel Xeon D-1649n FirmwareIntel Xeon D-1633n FirmwareIntel Xeon D-1637 FirmwareIntel Xeon D-1627 Firmware+8817/5/201917/6/2026
Buffer overflow vulnerability in system firmware for Intel(R) Xeon(R) Processor D Family, Intel(R) Xeon(R) Scalable Processor, Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
Orbitaley — Vulnerabilidades