Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
326 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.6) | 2.3% | — | Rockwellautomation Armor Compact Guardlogix 5370 FirmwareRockwellautomation Compact Guardlogix 5370 FirmwareRockwellautomation Compactlogix 5370 L1 FirmwareRockwellautomation Compactlogix 5370 L2 Firmware+5 | 27/7/2022 | 17/6/2026 | The connection establishment algorithm found in Rockwell Automation CompactLogix 5370 and ControlLogix 5570 versions 33 and prior does not sufficiently manage its control flow during execution, creating an infinite loop. This may allow an attacker to send specially crafted CIP packet requests to a controller, which… | |
| Modificada | Alta (8.1) | 2.0% | 💥 PoC | Caphyon Advanced Installer3CX Call Flow Designer3CX CRM Template GeneratorBoomtv Streamer Portal+66 | 6/6/2022 | 9/7/2026 | Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected… | |
| Modificada | Baja (2.4) | 0.21% | — | Intel Celeron G5205u FirmwareIntel Celeron G5305u FirmwareIntel Celeron G5900 FirmwareIntel Celeron G5900t Firmware+455 | 12/5/2022 | 17/6/2026 | Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow an unprivileged user to potentially enable information disclosure via physical access. | |
| Modificada | Media (6.8) | 0.28% | — | Intel Core I3-12100 FirmwareIntel Core I3-12100f FirmwareIntel Core I3-12100t FirmwareIntel Core I3-12300t Firmware+394 | 12/5/2022 | 17/6/2026 | Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Boot Guard and Intel(R) TXT may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.7) | 0.27% | — | Lenovo Thinkpad 11E FirmwareLenovo Thinkpad Helix FirmwareLenovo Thinkpad L560 FirmwareLenovo Thinkpad L570 Firmware+26 | 22/4/2022 | 17/6/2026 | During an internal product security audit a potential vulnerability due to use of Boot Services in the SmmOEMInt15 SMI handler was discovered in some ThinkPad models could be exploited by an attacker with elevated privileges that could allow for execution of code. | |
| Modificada | Crítica (9.8) | 5.2% | — | Rockwellautomation Compactlogix 1768-l43 FirmwareRockwellautomation Compactlogix 1768-l45 FirmwareRockwellautomation Compactlogix 1769-l31 FirmwareRockwellautomation Compactlogix 1769-l32c Firmware+20 | 11/4/2022 | 17/6/2026 | An attacker with the ability to modify a user program may change user program code on some ControlLogix, CompactLogix, and GuardLogix Control systems. Studio 5000 Logix Designer writes user-readable program code to a separate location than the executed compiled code, allowing an attacker to change one and not the… | |
| Modificada | Crítica (9.1) | 0.97% | — | Rambus Safezone Basic Crypto ModuleFujifilm Apeos C7070 FirmwareFujifilm Apeos C6570 FirmwareFujifilm Apeos C5570 Firmware+88 | 14/3/2022 | 17/6/2026 | The Rambus SafeZone Basic Crypto Module before 10.4.0, as used in certain Fujifilm (formerly Fuji Xerox) devices before 2022-03-01, Canon imagePROGRAF and imageRUNNER devices through 2022-03-14, and potentially many other devices, generates RSA keys that can be broken with Fermat's factorization method. This allows… | |
| Modificada | Media (5.7) | 0.47% | — | Intel Ax211 FirmwareIntel Ax210 FirmwareIntel Ax201 FirmwareIntel Ax200 Firmware+12 | 9/2/2022 | 17/6/2026 | Improper input validation in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.100 may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (5.7) | 0.49% | — | Intel Ax211 FirmwareIntel Ax210 FirmwareIntel Ax201 FirmwareIntel Ax200 Firmware+12 | 9/2/2022 | 17/6/2026 | Improper conditions check in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.100 may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (5.7) | 0.50% | — | Intel AC 3165 FirmwareIntel AC 3168 FirmwareIntel AC 7265 FirmwareIntel AC 8260 Firmware+11 | 9/2/2022 | 17/6/2026 | Improper input validation for some Intel(R) PROSet/Wireless WiFi in multiple operating systems and Killer(TM) WiFi in Windows 10 and 11 may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Alta (8.1) | 0.69% | — | Intel AC 3165 FirmwareIntel AC 3168 FirmwareIntel AC 7265 FirmwareIntel AC 8260 Firmware+11 | 9/2/2022 | 17/6/2026 | Improper input validation for some Intel(R) PROSet/Wireless WiFi in multiple operating systems and Killer(TM) WiFi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access. | |
| Modificada | Media (6.5) | 0.55% | — | Intel AC 1550 FirmwareIntel AC 3165 FirmwareIntel AC 3168 FirmwareIntel AC 7265 Firmware+11 | 9/2/2022 | 17/6/2026 | Improper input validation for some Intel(R) Wireless Bluetooth(R) products and Killer(TM) Bluetooth(R) products in Windows 10 and 11 before version 22.80 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.52% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Validation of Specified Index, Position, or Offset in Input in software for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.38% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Use of Validation Framework in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.38% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper input validation in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.38% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Validation of Consistency within input in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (4.4) | 0.27% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper input validation in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow a privileged user to potentially enable denial of service via local access. | |
| Modificada | Media (6.5) | 0.52% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Validation of Specified Index, Position, or Offset in Input in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.52% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Use of Validation Framework in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow a unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.52% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper Validation of Consistency within input in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow a unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (6.5) | 0.52% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper input validation in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Media (5.5) | 0.24% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper access control in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.29% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Exposure of Sensitive Information to an Unauthorized Actor in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.7) | 0.24% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Uncontrolled Search Path Element in software for Intel(R) PROSet/Wireless Wi-Fi in Windows 10 and 11 may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.7) | 0.31% | — | Intel AMT AC 8260 FirmwareIntel AMT AC 8265 FirmwareIntel AMT AC 9260 FirmwareIntel AMT AC 9560 Firmware+18 | 9/2/2022 | 17/6/2026 | Improper input validation in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow a privileged user to potentially enable escalation of privilege via local access. |