Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
230 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.2) | 0.21% | — | Intel Bios Guard FirmwareAI | 16/5/2024 | 17/6/2026 | Improper input validation in some Intel(R) BIOS Guard firmware may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (6.1) | 0.19% | — | Intel Bios Ppam FirmwareAI | 16/5/2024 | 17/6/2026 | Improper conditions check in some Intel(R) BIOS PPAM firmware may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (7.2) | 0.19% | — | Intel Bios Guard FirmwareAI | 16/5/2024 | 17/6/2026 | Improper conditions check in some Intel(R) BIOS Guard firmware may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (6.7) | 0.18% | — | Lenovo BiosAILenovo ThinkstationAILenovo Smart EdgeAI | 5/4/2024 | 17/6/2026 | A potential vulnerability were reported in the BIOS of some Desktop, Smart Edge, and ThinkStation products that could allow a local attacker with elevated privileges to write to NVRAM variables. | |
| Aplazada | Media (6.7) | 0.18% | — | Lenovo Bios Update Tool DriverAI | 5/4/2024 | 17/6/2026 | A potential vulnerability was reported in the BIOS update tool driver for some Desktop, Smart Edge, Smart Office, and ThinkStation products that could allow a local user with elevated privileges to execute arbitrary code. | |
| Aplazada | Alta (7.2) | 0.11% | — | Intel Bios FirmwareAI | 14/3/2024 | 17/6/2026 | Race condition in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.2) | 0.18% | — | HP PC BiosAI | 12/3/2024 | 17/6/2026 | A potential security vulnerability has been reported in the system BIOS of certain HP PC products, which might allow memory tampering. HP is releasing mitigation for the potential vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | A double-free vulnerability exists in the BrainVision ASCII Header Parsing functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .vdhr file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | An out-of-bounds write vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.8% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | An integer underflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to an out-of-bounds write which in turn can lead to arbitrary code execution. An attacker can provide a malicious file to trigger… | |
| Modificada | Crítica (9.8) | 1.7% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | A use-after-free vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.7% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | An out-of-bounds write vulnerability exists in the BrainVisionMarker Parsing functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .vmrk file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.6% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | A double-free vulnerability exists in the BrainVision Header Parsing functionality of The Biosig Project libbiosig Master Branch (ab0ee111) and 2.5.0. A specially crafted .vdhr file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 1.8% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | An integer overflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to an out-of-bounds write which in turn can lead to arbitrary code execution. An attacker can provide a malicious file to trigger… | |
| Modificada | Crítica (9.8) | 1.8% | — | Libbiosig Project LibbiosigFedoraproject Fedora | 20/2/2024 | 17/6/2026 | A heap-based buffer overflow vulnerability exists in the .egi parsing functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .egi file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. | |
| Analizada | Media (4.9) | 0.69% | — | Intel Server Platform ServicesNetapp HCI Bootstrap OSNetapp HCI Compute Node Bios | 14/2/2024 | 17/6/2026 | Uncontrolled resource consumption for some Intel(R) SPS firmware before version SPS_E5_06.01.04.002.0 may allow a privileged user to potentially enable denial of service via network access. | |
| Modificada | Alta (7.2) | 0.64% | — | Symbiostock | 20/12/2023 | 17/6/2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Symbiostock symbiostock.This issue affects Symbiostock: from n/a through 6.0.0. | |
| Modificada | Media (4.4) | 0.19% | — | Intel Pcsd Bios | 11/8/2023 | 17/6/2026 | Improper input validation in firmware for some Intel(R) PCSD BIOS before version 02.01.0013 may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (8.8) | 0.60% | — | Supremainc Biostar 2 | 3/8/2023 | 17/6/2026 | A SQL injection vulnerability exists in Suprema BioStar 2 before 2.9.1, which allows authenticated users to inject arbitrary SQL directives into an SQL statement and execute arbitrary SQL commands. | |
| Modificada | Alta (7.5) | 0.73% | — | Supremainc Biostar 2 | 3/8/2023 | 17/6/2026 | A path traversal vulnerability exists in Suprema BioStar 2 before 2.9.1, which allows unauthenticated attackers to fetch arbitrary files from the server's web server. | |
| Modificada | Alta (8.8) | 1.6% | — | Supremainc Biostar 2 | 3/8/2023 | 17/6/2026 | An OS Command injection vulnerability exists in Suprema BioStar 2 before V2.9.1, which allows authenticated users to execute arbitrary OS commands on the BioStar 2 server. | |
| Modificada | Alta (7.5) | 0.56% | — | Supremainc Biostar 2 | 3/8/2023 | 17/6/2026 | An authentication bypass vulnerability exists in Suprema BioStar 2 before 2.9.1, which allows unauthenticated users to access some functionality on BioStar 2 servers. | |
| Modificada | Media (5.7) | 0.34% | — | Dbbroadcast SFT DAB 600/c BiosDbbroadcast SFT DAB 600/c Firmware | 6/6/2023 | 17/6/2026 | Weak session management in DB Elettronica Telecomunicazioni SpA SFT DAB 600/C Firmware: 1.9.3 Bios firmware: 7.1 (Apr 19 2021) Gui: 2.46 FPGA: 169.55 uc: 6.15 allows attackers on the same network to bypass authentication by re-using the IP address assigned to the device by the NAT protocol. | |
| Modificada | Alta (8.8) | 0.86% | — | Supremainc Biostar 2 | 22/5/2023 | 17/6/2026 | Suprema BioStar 2 before 2022 Q4, v2.9.1 has Insecure Permissions. A vulnerability in the web application allows an authenticated attacker with "User Operator" privileges to create a highly privileged user account. The vulnerability is caused by missing server-side validation, which can be exploited to gain full… | |
| Modificada | Media (4.3) | 0.16% | — | ABB Terra AC Wallbox Ul40 FirmwareABB Terra AC Wallbox 80A FirmwareABB Terra AC Wallbox Ul32a FirmwareABB Terra AC Wallbox JP Firmware+4 | 17/5/2023 | 17/6/2026 | Cleartext Transmission of Sensitive Information vulnerability in ABB Terra AC wallbox (UL40/80A), ABB Terra AC wallbox (UL32A), ABB Terra AC wallbox (CE) (Terra AC MID), ABB Terra AC wallbox (CE) Terra AC Juno CE, ABB Terra AC wallbox (CE) Terra AC PTB, ABB Terra AC wallbox (CE) Symbiosis, ABB Terra AC wallbox… |