Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
–

129 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)6.5%—Ivanti Avalanche29/3/202317/6/2026
This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. The specific flaw exists within the ProfileDaoImpl class. A crafted request can trigger execution of SQL queries composed from a user-supplied string. An attacker can leverage this…
ModificadaAlta (8.8)15%—Ivanti Avalanche29/3/202317/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ivanti Avalanche 6.3.2.3490. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the JwtTokenUtility class. The issue…
ModificadaAlta (7.5)62%—Ivanti Avalanche10/3/202317/6/2026
An improper authentication vulnerability exists in Avalanche version 6.3.x and below allows unauthenticated attacker to modify properties on specific port.
ModificadaAlta (7.5)97%💥 ExploitIvanti Avalanche6/4/202217/6/2026
Ivanti Avalanche (Premise) 6.3.2 allows remote unauthenticated users to read arbitrary files via Absolute Path Traversal. The imageFilePath parameter processed by the /AvalancheWeb/image endpoint is not verified to be within the scope of the image folder, e.g., the attacker can obtain sensitive information via the…
ModificadaAlta (8.1)2.9%—Ivanti Avalanche7/12/202117/6/2026
An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform an arbitrary file write.
ModificadaAlta (8.8)70%—Ivanti Avalanche7/12/202117/6/2026
A command Injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.
ModificadaAlta (8.8)67%—Ivanti Avalanche7/12/202117/6/2026
A SQL Injection vulnerability exists in Ivanti Avalance before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
ModificadaAlta (8.8)62%—Ivanti Avalanche7/12/202117/6/2026
A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.
ModificadaAlta (8.8)77%—Ivanti Avalanche7/12/202117/6/2026
A command injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.
ModificadaCrítica (9.8)4.6%—Ivanti Avalanche7/12/202117/6/2026
An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via Enterprise Server Service.
ModificadaCrítica (9.8)66%—Ivanti Avalanche7/12/202117/6/2026
A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 using Inforail Service allows arbitrary code execution via Data Repository Service.
ModificadaAlta (8.8)4.0%—Ivanti Avalanche7/12/202117/6/2026
An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
ModificadaAlta (8.8)82%—Ivanti Avalanche7/12/202117/6/2026
An unrestricted file upload vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to write dangerous files.
ModificadaAlta (8.8)2.7%—Ivanti Avalanche7/12/202117/6/2026
An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform a session takeover.
ModificadaMedia (6.7)1.6%—Spirent AvalancheSpirent Testcenter13/8/202017/6/2026
An issue was discovered on Spirent TestCenter and Avalanche appliance admin interface firmware. An attacker, who already has access to an SSH restricted shell, can achieve root access via shell metacharacters. The attacker can then, for example, read sensitive files such as appliance admin configuration source code.…
ModificadaCrítica (9.8)2.3%—Ivanti Avalanche28/4/202017/6/2026
Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.
ModificadaMedia (6.5)1.7%—Ivanti Avalanche29/6/201817/6/2026
An issue was discovered in Ivanti Avalanche for all versions between 5.3 and 6.2. The impacted products used a single shared key encryption model to encrypt data. A user with access to system databases can use the discovered key to access potentially confidential stored data, which may include Wi-Fi passwords. This…
ModificadaAlta (7.8)0.66%—Ivanti Avalanche29/6/201817/6/2026
An issue was discovered in Ivanti Avalanche for all versions between 5.3 and 6.2. A local user with database access privileges can read the encrypted passwords for users who authenticate via LDAP to Avalanche services. These passwords are stored in the Avalanche databases. This issue only affects customers who have…
ModificadaMedia (5)6.2%💥 ExploitCodeavalanche Freeforum21/1/200916/6/2026
CodeAvalanche FreeForum stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the password via a direct request for _private/CAForum.mdb. NOTE: some of these details are obtained from third party information.
ModificadaAlta (7.5)6.4%💥 ExploitCodeavalanche Articles12/1/200916/6/2026
CodeAvalanche Articles stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAArticles.mdb. NOTE: some of these details are obtained from third party…
ModificadaAlta (7.5)6.4%💥 ExploitCodeavalanche Freeforall12/1/200916/6/2026
CodeAvalanche FreeForAll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFFAPage.mdb. NOTE: some of these details are obtained from third party…
ModificadaAlta (7.5)6.4%💥 ExploitCodeavalanche Directory12/1/200916/6/2026
CodeAvalanche Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CADirectory.mdb. NOTE: some of these details are obtained from third party…
ModificadaAlta (7.5)6.4%💥 ExploitCodeavalanche Freewallpaper12/1/200916/6/2026
CodeAvalanche FreeWallpaper stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFreeWallpaper.mdb. NOTE: some of these details are obtained from third…
ModificadaAlta (7.5)2.4%💥 ExploitCodeavalanche Ratemysite12/1/200916/6/2026
CodeAvalanche RateMySite stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CARateMySite.mdb. NOTE: some of these details are obtained from third party…
ModificadaAlta (10)1.7%💥 ExploitXfairguy Codeavalanche News21/2/200716/6/2026
SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.
Orbitaley — Vulnerabilidades