Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
156 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 0.97% | — | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within processing of loadtemplate.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the tpl input parameter. | |
| Modificada | Alta (8.8) | 0.97% | — | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within processing of editobject.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the type input parameter. | |
| Modificada | Alta (8.8) | 0.97% | — | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within processing of track_getdata.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the id input parameter. | |
| Modificada | Alta (8.8) | 2.9% | 💥 Exploit | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the object_id input parameter. | |
| Modificada | Media (4.3) | 1.3% | — | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within runscript.php applet in Schneider Electric U.motion Builder software versions prior to v1.3.4. There is a directory traversal vulnerability in the processing of the 's' parameter of the applet. | |
| Modificada | Media (4.3) | 1.3% | — | Schneider-electric U.motion Builder | 3/7/2018 | 17/6/2026 | The vulnerability exists within css.inc.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The 'css' parameter contains a directory traversal vulnerability. | |
| Modificada | Media (5.5) | 61% | 💥 Exploit | Intel Atom CIntel Atom EIntel Atom X5-e3930Intel Atom X5-e3940+278 | 22/5/2018 | 17/6/2026 | Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB),… | |
| Modificada | Alta (8.7) | 3.3% | — | Siemens Simatic S7-200 FirmwareSiemens Simatic S7-400pn V6 FirmwareSiemens Simatic S7-400h V6 FirmwareSiemens Simatic S7-400pn/dp V7 Firmware+34 | 26/12/2017 | 17/6/2026 | Specially crafted packets sent to port 161/udp could cause a denial of service condition. The affected devices must be restarted manually. | |
| Modificada | Crítica (9.8) | 2.5% | — | SAP Business Intelligence Promotion Management Application | 12/12/2017 | 17/6/2026 | SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, and 4.30, does not perform authentication checks for functionalities that require user identity. | |
| Modificada | Media (6.1) | 0.96% | — | SAP Business Intelligence Promotion Management Application | 12/12/2017 | 17/6/2026 | Cross-Site Scripting (XSS) vulnerability in SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, 4.30, as user controlled inputs are not sufficiently encoded. | |
| Modificada | Alta (7.2) | 4.4% | — | Intel Manageability Engine FirmwareIntel Active Management Technology FirmwareAsus Z170-premium FirmwareAsus Z170-deluxe Firmware+194 | 21/11/2017 | 17/6/2026 | Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows attacker with remote Admin access to the system to execute arbitrary code with AMT execution privilege. | |
| Modificada | Alta (7.8) | 0.56% | — | Intel Manageability Engine FirmwareIntel Active Management Technology FirmwareAsus Z170-premium FirmwareAsus Z170-deluxe Firmware+194 | 21/11/2017 | 17/6/2026 | Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code with AMT execution privilege. | |
| Modificada | Media (5.3) | 1.1% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | An information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system response to error provides more information than should be available to an unauthenticated user. | |
| Modificada | Media (5.5) | 0.31% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | A vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system accepts reboot in session from unauthenticated users, supporting a denial of service condition. | |
| Modificada | Alta (7.8) | 0.34% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | An improper access control vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an improper handling of the system configuration can allow an attacker to execute arbitrary code under the context of root. | |
| Modificada | Crítica (9.8) | 1.6% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | A vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the web service contains a hidden system account with a hardcoded password. An attacker can use this information to log into the system with high-privilege credentials. | |
| Modificada | Alta (7.3) | 1.1% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | An authentication bypass vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system contains a hard-coded valid session. An attacker can use that session ID as part of the HTTP cookie of a web request, resulting in authentication bypass | |
| Modificada | Crítica (9.8) | 4.6% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | A path traversal information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can execute arbitrary code and exfiltrate files. | |
| Modificada | Crítica (9.8) | 1.5% | — | Schneider-electric U.motion Builder | 26/9/2017 | 17/6/2026 | A SQL injection vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can use calls to various paths allowing performance of arbitrary SQL commands against the underlying database. | |
| Modificada | Alta (7.1) | 0.91% | — | Siemens Simatic CP 343-1 STD FirmwareSiemens Simatic CP 343-1 Lean FirmwareSiemens Simatic CP 343-1 ADV FirmwareSiemens Simatic CP 443-1 STD Firmware+75 | 11/5/2017 | 17/6/2026 | Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected. | |
| Modificada | Alta (7.1) | 1.1% | — | Siemens Simatic CP 343-1 STD FirmwareSiemens Simatic CP 343-1 Lean FirmwareSiemens Simatic CP 343-1 ADV FirmwareSiemens Simatic CP 443-1 STD Firmware+89 | 11/5/2017 | 17/6/2026 | Specially crafted PROFINET DCP broadcast packets could cause a denial of service condition of affected products on a local Ethernet segment (Layer 2). Human interaction is required to recover the systems. PROFIBUS interfaces are not affected. | |
| Analizada | Crítica (9.8) | 92% | ⚠ Explotación activa💥 Exploit | HPE Proliant Ml10 Gen9 Server FirmwareSiemens Simatic Itp1000 FirmwareSiemens Simatic Ipc847d FirmwareSiemens Simatic Ipc847c Firmware+32 | 2/5/2017 | 17/6/2026 | An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel… | |
| Modificada | Alta (8.8) | 1.6% | — | Information-technology Promotion Agency Introduction TO Safe Website Operation | 28/4/2017 | 17/6/2026 | Security guide for website operators allows remote attackers to execute arbitrary OS commands via specially crafted saved data. | |
| Modificada | Media (6.9) | 0.40% | — | Siemens StarterSiemens Simatic ProsaveSiemens Simotion ScoutSiemens Simatic CFC+1 | 7/3/2015 | 17/6/2026 | Untrusted search path vulnerability in Siemens SIMATIC ProSave before 13 SP1; SIMATIC CFC before 8.0 SP4 Upd9 and 8.1 before Upd1; SIMATIC STEP 7 before 5.5 SP1 HF2, 5.5 SP2 before HF7, 5.5 SP3, and 5.5 SP4 before HF4; SIMOTION Scout before 4.4; and STARTER before 4.4 HF3 allows local users to gain privileges via a… | |
| Modificada | Media (5.4) | 0.27% | — | Narr8 Secret City - Motion Comic | 20/10/2014 | 17/6/2026 | The Secret City - Motion Comic (aka me.narr8.android.serial.the_secret_city) application 2.1.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |