Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
73 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.1) | 2.1% | — | Ipsilon Project Ipsilon | 12/7/2017 | 17/6/2026 | A vulnerability in ipsilon 2.0 before 2.0.2, 1.2 before 1.2.1, 1.1 before 1.1.2, and 1.0 before 1.0.3 was found that allows attacker to log out active sessions of other users. This issue is related to how it tracks sessions, and allows an unauthenticated attacker to view and terminate active sessions from other users.… | |
| Modificada | Alta (7.2) | 1.7% | — | EMC Isilon Onefs | 21/6/2017 | 17/6/2026 | EMC Isilon OneFS 8.0.1.0, 8.0.0 - 8.0.0.3, 7.2.0 - 7.2.1.4, 7.1.x is affected by a privilege escalation vulnerability that could potentially be exploited by attackers to compromise the affected system. | |
| Modificada | Alta (7.1) | 0.83% | — | EMC Isilon Onefs | 19/5/2017 | 17/6/2026 | EMC Isilon OneFS 8.0.1.0, OneFS 8.0.0.0 - 8.0.0.2, OneFS 7.2.1.0 - 7.2.1.3, and OneFS 7.2.0.x is affected by an NFS export vulnerability. Under certain conditions, after upgrading a cluster from OneFS 7.1.1.x or earlier, users may have unexpected levels of access to some NFS exports. | |
| Modificada | Alta (7.5) | 2.3% | — | EMC Isilon Onefs | 29/3/2017 | 17/6/2026 | EMC Isilon OneFS is affected by a path traversal vulnerability that may potentially be exploited by attackers to compromise the affected system. Affected versions are 7.1.0 - 7.1.1.10, 7.2.0 - 7.2.1.3, and 8.0.0 - 8.0.0.1. | |
| Modificada | Crítica (9.8) | 2.9% | — | EMC Isilon Insightiq | 8/2/2017 | 17/6/2026 | EMC Isilon InsightIQ 4.1.0, 4.0.1, 4.0.0, 3.2.2, 3.2.1, 3.2.0, 3.1.1, 3.1.0, 3.0.1, 3.0.0 is affected by an authentication bypass vulnerability that could potentially be exploited by attackers to compromise the affected system. | |
| Modificada | Alta (7.2) | 2.0% | — | EMC Isilon Onefs | 3/2/2017 | 17/6/2026 | EMC Isilon OneFS 7.2.1.0 - 7.2.1.3, EMC Isilon OneFS 7.2.0.x, EMC Isilon OneFS 7.1.1.0 - 7.1.1.10, EMC Isilon OneFS 7.1.0.x is affected by a privilege escalation vulnerability that could potentially be exploited by attackers to compromise the affected system. | |
| Modificada | Media (6.7) | 0.41% | — | EMC Isilon Onefs | 23/1/2017 | 17/6/2026 | EMC Isilon OneFS 8.0.0.0, EMC Isilon OneFS 7.2.1.0 - 7.2.1.2, EMC Isilon OneFS 7.2.0.x, EMC Isilon OneFS 7.1.1.0 - 7.1.1.10, and EMC Isilon OneFS 7.1.0.x is affected by an LDAP injection vulnerability that could potentially be exploited by a malicious user to compromise the system. | |
| Modificada | Crítica (9.8) | 4.5% | — | Unitronics Visilogic Oplc IDE | 25/6/2016 | 17/6/2026 | Stack-based buffer overflow in Unitronics VisiLogic OPLC IDE before 9.8.30 allows remote attackers to execute arbitrary code via a crafted filename field in a ZIP archive in a vlp file. | |
| Modificada | Media (6.7) | 0.39% | — | EMC Isilon Onefs | 4/6/2016 | 17/6/2026 | EMC Isilon OneFS 7.1.x before 7.1.1.9 and 7.2.x before 7.2.1.2 allows local users to obtain root shell access by leveraging administrative privileges. | |
| Modificada | Media (5.9) | 0.86% | — | EMC Isilon OnefsEMC Isilonsd Edge Onefs | 30/5/2016 | 17/6/2026 | EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream, a similar issue to… | |
| Modificada | Crítica (9.6) | 5.0% | — | Unitronics Visilogic Oplc IDE | 9/1/2016 | 17/6/2026 | Heap-based buffer overflow in Unitronics VisiLogic OPLC IDE before 9.8.09 allows remote attackers to execute arbitrary code via a long vlp filename. | |
| Modificada | Alta (8) | 2.2% | — | EMC Isilon Onefs | 21/12/2015 | 17/6/2026 | EMC Isilon OneFS 7.1 before 7.1.1.8, 7.2.0 before 7.2.0.4, and 7.2.1 before 7.2.1.1 allows remote authenticated administrators to bypass a SmartLock root-login restriction by creating a root account and establishing a login session. | |
| Modificada | Alta (8.5) | 1.9% | — | EMC Isilon Onefs | 27/11/2015 | 17/6/2026 | EMC Isilon OneFS 7.1.x before 7.1.1.5, 7.2.0.x before 7.2.0.3, and 7.2.1.x before 7.2.1.1, when the RFC 2307 feature is configured but SFU is not universally present, allows remote authenticated AD users to obtain root privileges via unspecified vectors. | |
| Modificada | Media (5.5) | 1.5% | — | Ipsilon Project Ipsilon | 17/11/2015 | 17/6/2026 | providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.0.2 and 1.1.x before 1.1.1 does not properly check permissions, which allows remote authenticated users to cause a denial of service by deleting a SAML2 Service Provider (SP). | |
| Modificada | Media (4) | 1.3% | — | Ipsilon Project Ipsilon | 17/11/2015 | 17/6/2026 | providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.0.1 does not properly check permissions to update the SAML2 Service Provider (SP) owner, which allows remote authenticated users to cause a denial of service via a duplicate SP name. | |
| Modificada | Alta (7.5) | 4.7% | — | Unitronics Visilogic Oplc IDE | 13/11/2015 | 17/6/2026 | Unitronics VisiLogic OPLC IDE before 9.8.02 allows remote attackers to execute unspecified code via unknown vectors. | |
| Modificada | Media (6.8) | 1.6% | — | Unitronics Visilogic Oplc IDE | 13/11/2015 | 17/6/2026 | Unitronics VisiLogic OPLC IDE before 9.8.02 does not properly restrict access to ActiveX controls, which allows remote attackers to have an unspecified impact via a crafted web site. | |
| Modificada | Alta (9) | 2.2% | — | EMC Isilon Onefs | 4/7/2015 | 17/6/2026 | The log-gather implementation in the web administration interface in EMC Isilon OneFS 6.5.x.x through 7.1.1.x before 7.1.1.5 and 7.2.0.x before 7.2.0.2 allows remote authenticated users to execute arbitrary commands with root privileges via unspecified vectors. | |
| Modificada | Alta (7.2) | 0.55% | — | EMC Isilon Onefs | 29/3/2015 | 17/6/2026 | The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local users to gain privileges by leveraging an ability to modify system files. | |
| Modificada | Media (4.3) | 0.94% | — | EMC Isilon Insightiq | 12/12/2014 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in EMC Isilon InsightIQ 2.x and 3.x before 3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (5) | 1.4% | — | Ansilove | 15/2/2006 | 16/6/2026 | Unspecified vulnerability in the loaders (load_*.php) in Ansilove before 1.03 allows remote attackers to read arbitrary files via unspecified vectors involving "converting files accessible by the webserver". | |
| Modificada | Alta (7.5) | 2.8% | — | Ansilove | 15/2/2006 | 16/6/2026 | Ansilove before 1.03 does not filter uploaded file extensions, which allows remote attackers to execute arbitrary code by uploading arbitrary files with dangerous extensions, then accessing them directly in the upload directory. | |
| Modificada | Media (4.6) | 0.41% | — | GUS AND Psilord Freesweep | 29/3/2004 | 16/6/2026 | Buffer overflow in freesweep in Debian GNU/Linux 3.0 allows local users to gain "games" group privileges when processing environment variables. |