Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

93 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.40%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Out of bound read in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable escalation of privilege via network access.
ModificadaAlta (7.5)1.1%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable denial of service via network access.
ModificadaMedia (6.5)0.87%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an authenticated user to potentially enable information disclosure via network access.
ModificadaAlta (8.1)1.0%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Stack overflow in Intel(R) Baseboard Management Controller firmware may allow an authenticated user to potentially enable information disclosure and/or denial of service via network access.
ModificadaAlta (7.5)1.1%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Unhandled exception in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable denial of service via network access.
ModificadaAlta (7.5)1.1%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable denial of service via network access.
ModificadaMedia (5.3)0.90%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient access control in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaAlta (7.1)0.30%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via local access.
ModificadaMedia (5.3)0.90%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Out of bound read in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure via network access.
ModificadaCrítica (9.8)1.6%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Heap corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege and/or denial of service via network access.
ModificadaAlta (7.8)0.40%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Authentication bypass in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege and/or denial of service via local access.
ModificadaCrítica (9.1)1.3%—Intel Baseboard Management Controller Firmware14/11/201917/6/2026
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network access.
AnalizadaAlta (7.8)72%⚠ Explotación activa💥 ExploitGoogle AndroidDebian LinuxCanonical Ubuntu LinuxNetapp Cloud Backup+7311/10/201917/6/2026
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing…
ModificadaCrítica (9.8)7.5%—Haxx CurlFedoraproject FedoraNetapp Cloud BackupNetapp Steelstore+816/9/201917/6/2026
Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.
ModificadaMedia (5.6)0.61%—Linux KernelNetapp Active IQ Performance Analytics ServicesNetapp Service ProcessorDebian Linux+24/9/201917/6/2026
A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.14.x through 4.14.141, 4.19.x through 4.19.69, and 5.2.x through 5.2.11. Misuse of the upstream "x86/ptrace: Fix possible spectre-v1 in ptrace_get_debugreg()" commit reintroduced the Spectre…
ModificadaMedia (5.5)0.76%—Linux KernelCanonical Ubuntu LinuxDebian LinuxOpensuse Leap+616/8/201917/6/2026
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion.
ModificadaMedia (4.3)0.47%—Lenovo Thinkserver System Manager Baseboard Management Controller Firmware16/4/201517/6/2026
The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 does not validate server certificates during an "encrypted remote KVM session," which allows man-in-the-middle attackers to spoof servers.
ModificadaMedia (5)1.3%—Lenovo Thinkserver System Manager Baseboard Management Controller Firmware16/4/201517/6/2026
The ThinkServer System Manager (TSM) Baseboard Management Controller before firmware 1.27.73476 for ThinkServer RD350, RD450, RD550, RD650, and TD350 allows remote attackers to cause a denial of service (web interface crash) via a malformed HTTP request during authentication.