Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
921 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.89% | — | Sem-cms Semcms | 30/6/2023 | 17/6/2026 | File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload arbitrary files and gain escalated privileges. | |
| Modificada | Alta (7.8) | 0.18% | — | Dell Poweredge R740 FirmwareDell Poweredge R740xd FirmwareDell Poweredge R640 FirmwareDell Poweredge R940 Firmware+26 | 22/5/2023 | 17/6/2026 | Dell PowerEdge 14G server BIOS versions prior to 2.18.1 and Dell Precision BIOS versions prior to 2.18.2, contain an Out of Bounds write vulnerability. A local attacker with low privileges could potentially exploit this vulnerability leading to exposure of some SMRAM stack/data/code in System Management Mode, leading… | |
| Modificada | Crítica (9.8) | 0.75% | — | Sem-cms Semcms | 19/5/2023 | 17/6/2026 | SEMCMS 1.5 is vulnerable to SQL Injection via Ant_Rponse.php. | |
| Modificada | Crítica (9.8) | 0.78% | — | Sem-cms Semcms | 5/5/2023 | 17/6/2026 | Semcms Shop v4.2 was discovered to contain an arbitrary file uplaod vulnerability via the component SEMCMS_Upfile.php. This vulnerability allows attackers to execute arbitrary code via uploading a crafted PHP file. | |
| Modificada | Media (6.5) | 0.60% | — | Dell EMC Powerscale Onefs | 4/4/2023 | 17/6/2026 | Dell PowerScale OneFS versions 8.2.x-9.4.x contain an uncontrolled resource consumption vulnerability. A malicious network user with low privileges could potentially exploit this vulnerability in SMB, leading to a potential denial of service. | |
| Modificada | Alta (7.8) | 0.16% | — | Dell EMC Powerscale Onefs | 4/4/2023 | 17/6/2026 | Dell PowerScale OneFS versions 8.2.x-9.5.0.x contain an elevation of privilege vulnerability. A low-privileged local attacker could potentially exploit this vulnerability, leading to Denial of service, escalation of privileges, and information disclosure. This vulnerability breaks the compliance mode guarantee. | |
| Modificada | Alta (7.8) | 0.21% | — | Dell EMC Powerscale Onefs | 4/4/2023 | 17/6/2026 | Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info. A high privileged local attacker could potentially exploit this vulnerability, leading to system takeover and it breaks the compliance mode guarantees. | |
| Modificada | Alta (7.4) | 0.29% | — | Dell EMC Unisphere FOR PowermaxDell EMC Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 17/3/2023 | 17/6/2026 | Dell EMC Unisphere for PowerMax versions before 9.1.0.27, Dell EMC Unisphere for PowerMax Virtual Appliance versions before 9.1.0.27, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a… | |
| Modificada | Media (6.5) | 0.75% | — | Awesome Libmemcached | 7/3/2023 | 17/6/2026 | libmemcached-awesome is an open source C/C++ client library and tools for the memcached server. `libmemcached` could return data for a previously requested key, if that previous request timed out due to a low `POLL_TIMEOUT`. This issue has been addressed in version 1.1.4. Users are advised to upgrade. There are… | |
| Modificada | Media (6.5) | 0.55% | — | Dell EMC Networker | 1/3/2023 | 17/6/2026 | Dell NetWorker versions 19.5 and earlier contain 'Apache Tomcat' version disclosure vulnerability. A NetWorker server user with remote access to NetWorker clients may potentially exploit this vulnerability and may launch target-specific attacks. | |
| Modificada | Media (6.5) | 0.55% | — | Dell EMC Networker | 1/3/2023 | 17/6/2026 | Dell NetWorker versions 19.5 and earlier contain 'RabbitMQ' version disclosure vulnerability. A NetWorker server user with remote access to NetWorker clients may potentially exploit this vulnerability and may launch target-specific attacks. | |
| Modificada | Alta (7.1) | 0.15% | — | Dell EMC Powerscale Onefs | 28/2/2023 | 17/6/2026 | Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability to overwrite arbitrary files causing denial of service. | |
| Modificada | Media (5.9) | 0.45% | — | Dell EMC Unity Operating EnvironmentDell EMC Unity XT Operating EnvironmentDell EMC Unityvsa Operating Environment | 14/2/2023 | 17/6/2026 | Dell EMC Unity versions before 5.2.0.0.5.173 , use(es) broken cryptographic algorithm. A remote unauthenticated attacker could potentially exploit this vulnerability by performing MitM attacks and let attackers obtain sensitive information. | |
| Modificada | Media (4.8) | 0.39% | — | Dell EMC Powerscale Onefs | 10/2/2023 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x through 9.4.x contain multiple stored cross-site scripting vulnerabilities. A remote authenticated malicious user with high privileges may potentially exploit these vulnerabilities to store malicious HTML or JavaScript code through multiple affected fields. | |
| Modificada | Media (6.7) | 0.19% | — | Dell EMC Powerscale Onefs | 10/2/2023 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploit this vulnerability, leading to system takeover. This impacts compliance mode clusters. | |
| Modificada | Crítica (9.8) | 1.0% | — | Dell EMC Networker | 3/2/2023 | 17/6/2026 | EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used. | |
| Modificada | Media (5.5) | 0.36% | — | Memcached | 3/2/2023 | 17/6/2026 | Buffer Overflow vulnerability in authfile.c memcached 1.6.9 allows attackers to cause a denial of service via crafted authenticattion file. | |
| Modificada | Alta (8.8) | 0.63% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user could potentially exploit this vulnerability, leading to information disclosure and escalation of privileges. | |
| Modificada | Alta (8.1) | 0.66% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module. A low-privileged user with permission to read logs on the cluster could potentially exploit this vulnerability, leading to Information disclosure and denial of service. | |
| Modificada | Media (5.5) | 0.17% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local attacker could potentially exploit this vulnerability, leading to sensitive information disclosure. | |
| Modificada | Alta (8.8) | 1.6% | — | Dell EMC Data Domain OS | 1/2/2023 | 17/6/2026 | Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. | |
| Modificada | Alta (7.8) | 0.18% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privilege local attacker could potentially exploit this vulnerability, leading to system takeover. | |
| Modificada | Alta (7.5) | 0.77% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS 8.2.x, 9.0.0.x - 9.4.0.x, contain an insufficient resource pool vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service. | |
| Modificada | Media (6.1) | 0.47% | — | Dell EMC Data Protection CentralDell Dp4400 FirmwareDell Dp5900 Firmware | 1/2/2023 | 17/6/2026 | Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections. | |
| Modificada | Crítica (9.8) | 0.51% | — | Dell EMC Powerscale Onefs | 1/2/2023 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability. An remote unauthenticated attacker could potentially exploit this vulnerability, leading to a full compromise of the system. |