Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
480 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 1.5% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 6.0% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+4 | 22/10/2020 | 17/6/2026 | A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 2.0% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+4 | 22/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Opening a maliciously crafted PDF file may lead to an unexpected… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An integer overflow was addressed through improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple IpadosApple Iphone OS+3 | 22/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Alta (8.8) | 2.2% | — | Apple IcloudApple ItunesApple SafariApple Ipados+4 | 16/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to code execution. | |
| Modificada | Alta (7.1) | 1.5% | — | Apple IcloudApple SafariApple IpadosApple Iphone OS+3 | 16/10/2020 | 17/6/2026 | An input validation issue was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0, watchOS 7.0, Safari 14.0, iCloud for Windows 11.4, iCloud for Windows 7.21. Processing maliciously crafted web content may lead to a cross site scripting attack. | |
| Modificada | Alta (8.8) | 2.3% | — | Apple IcloudApple ItunesApple SafariApple Ipados+5 | 16/10/2020 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 1.3% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing a maliciously crafted image may lead to arbitrary code… | |
| Modificada | Media (6.1) | 1.3% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | A logic issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing maliciously crafted web content may lead to universal cross site scripting. | |
| Modificada | Media (5.3) | 1.4% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | A URL Unicode encoding issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A malicious attacker may be able to conceal the destination of a URL. | |
| Modificada | Media (6.5) | 1.5% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | An access issue existed in Content Security Policy. This issue was addressed with improved access restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing maliciously crafted web… | |
| Modificada | Alta (8.8) | 2.2% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | Multiple issues were addressed with improved logic. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer… | |
| Modificada | Crítica (9.8) | 4.5% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A remote attacker may be able to cause unexpected application termination or… | |
| Modificada | Media (4.3) | 2.8% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A remote attacker may be able to cause unexpected application termination or… | |
| Modificada | Alta (8.8) | 2.9% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. A remote attacker may be able to cause unexpected application termination or… | |
| Modificada | Alta (7.8) | 1.9% | — | Apple IcloudApple ItunesApple SafariApple Ipados+3 | 16/10/2020 | 17/6/2026 | A command injection issue existed in Web Inspector. This issue was addressed with improved escaping. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Copying a URL from Web Inspector may lead to… | |
| Modificada | Media (5.3) | 0.91% | — | Mitel Micloud Management Portal | 25/9/2020 | 17/6/2026 | Mitel MiCloud Management Portal before 6.1 SP5 could allow an attacker, by sending a crafted request, to retrieve sensitive information due to insufficient access control. | |
| Modificada | Crítica (9.6) | 1.7% | — | Mitel Micloud Management Portal | 25/9/2020 | 17/6/2026 | Mitel MiCloud Management Portal before 6.1 SP5 could allow an unauthenticated attacker to execute arbitrary scripts due to insufficient input validation, aka XSS. A successful exploit could allow an attacker to gain access to a user session. | |
| Modificada | Alta (7.2) | 1.1% | — | Mitel Micloud Management Portal | 25/9/2020 | 17/6/2026 | Mitel MiCloud Management Portal before 6.1 SP5 could allow a remote attacker to conduct a SQL Injection attack and access user credentials due to improper input validation. |