Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2771▲ 6 respecto a la semana anterior
Críticas / altas1285▼ 246 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)242▲ 224 respecto a la semana anterior
13.182 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.6) | 0.13% | — | Oracle Hyperion Calculation Manager | 18/8/2026 | 25/8/2026 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Calculation Manager executes to… | |
| Analizada | Alta (8.8) | 0.43% | — | Oracle Sales Foundation | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Sales Foundation product of Oracle E-Business Suite (component: Security API). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales Foundation. Successful attacks of… | |
| Analizada | Media (4.8) | 0.22% | — | Agile Engineering Data Management Product OF Oracle Supply Chain | 18/8/2026 | 4/9/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface). The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Agile… | |
| Analizada | Alta (8.1) | 0.36% | — | Oracle Sales Foundation | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Sales Foundation product of Oracle E-Business Suite (component: Security API). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales Foundation. Successful attacks of… | |
| Analizada | Alta (8.8) | 0.43% | — | Oracle Sales FOR Handhelds | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Sales for Handhelds product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales for Handhelds. Successful… | |
| Analizada | Alta (7.5) | 0.33% | — | Oracle Sales | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Sales product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Sales. Successful attacks of this… | |
| Modificada | Alta (7.1) | 0.18% | — | Oracle Hyperion Calculation Manager | 18/8/2026 | 25/8/2026 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Calculation Manager executes to… | |
| Analizada | Alta (8.1) | 0.39% | — | Oracle Trading Community | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Trading Community product of Oracle E-Business Suite (component: Party Search UI). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trading Community. Successful… | |
| Analizada | Alta (8.2) | 0.29% | — | Agile Engineering Data Management Product OF Oracle Supply Chain | 18/8/2026 | 4/9/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface). The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Agile… | |
| Analizada | Alta (8.2) | 0.35% | — | Oracle Payments | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this… | |
| Analizada | Alta (8.1) | 0.36% | — | Oracle Payables | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Payables product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Payables. Successful attacks of this… | |
| Analizada | Alta (7.5) | 0.43% | — | Oracle Payables | 18/8/2026 | 31/8/2026 | Vulnerability in the Oracle Payables product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payables. Successful attacks of this… | |
| Analizada | Alta (7.4) | 0.34% | — | Oracle Payments | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Payments. Successful attacks of this… | |
| Modificada | Media (6.7) | 0.18% | — | Oracle Agile Engineering Data Management | 18/8/2026 | 25/8/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Install). The supported version that is affected is 6.2.1. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Agile Engineering Data Management executes… | |
| Modificada | Alta (7) | 0.13% | — | Oracle Agile Engineering Data Management | 18/8/2026 | 25/8/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface). The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Agile… | |
| Analizada | Alta (7.5) | 0.41% | — | Oracle Payments | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Payments. Successful attacks of this… | |
| Analizada | Alta (7.7) | 0.33% | — | Oracle Payments | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Payments. While the vulnerability is in… | |
| Analizada | Alta (7.7) | 0.33% | — | Oracle Payments | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Payments. While the vulnerability is in… | |
| Modificada | Media (6.3) | 0.14% | — | Oracle Agile Engineering Data Management | 18/8/2026 | 26/8/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface). The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Agile… | |
| Analizada | Alta (7.7) | 0.35% | — | Oracle Marketing Encyclopedia System | 18/8/2026 | 2/9/2026 | Vulnerability in the Oracle Marketing Encyclopedia System product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Marketing… | |
| Modificada | Alta (7.5) | 0.33% | — | Oracle Agile Engineering Data Management | 18/8/2026 | 25/8/2026 | Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Communication Interface). The supported version that is affected is 6.2.1. Difficult to exploit vulnerability allows unauthenticated attacker with access to the physical communication segment attached… | |
| Analizada | Alta (8) | 0.38% | — | Oracle Human Resources Management System | 18/8/2026 | 3/9/2026 | Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll - General). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle HRMS (US). While the vulnerability is… | |
| Analizada | Crítica (9.8) | 0.51% | — | Oracle Essbase | 18/8/2026 | 3/9/2026 | Vulnerability in Oracle Essbase (component: Infrastructure). The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Essbase. Successful attacks of this vulnerability can result in takeover of Oracle… | |
| Analizada | Alta (8.8) | 0.43% | — | Oracle Essbase | 18/8/2026 | 3/9/2026 | Vulnerability in Oracle Essbase (component: Calculator). The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Essbase. Successful attacks of this vulnerability can result in takeover of Oracle Essbase.… | |
| Analizada | Alta (7.7) | 0.35% | — | Oracle Marketing | 18/8/2026 | 3/9/2026 | Vulnerabilidad en el producto Oracle Marketing de Oracle E-Business Suite (componente: Audience). Las versiones compatibles afectadas son 12.2.3-12.2.15. Una vulnerabilidad fácilmente explotable permite a un atacante con privilegios bajos con acceso a la red a través de HTTP comprometer Oracle Marketing. Aunque la… |