Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
371 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.9) | 0.49% | — | Aspect EnterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | Port manipulation vulnerabilities in ASPECT provide attackers with the ability to con-trol TCP/IP port access if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (8.9) | 0.46% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | File corruption vulnerabilities in ASPECT provide attackers access to overwrite sys-tem files if session administrator credentials become compromised This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (7.5) | 0.65% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | Remote Code Execution vulnerabilities are present in ASPECT if session administra-tor credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (7.5) | 0.41% | — | Eaton Aspect EnterpriseAIEaton Nexus SeriesAIEaton Matrix SeriesAI | 22/5/2025 | 17/6/2026 | Relative Path Traversal vulnerabilities in ASPECT allow access to file resources if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Media (5.9) | 0.38% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | An Unchecked Loop Condition in ASPECT provides an attacker the ability to maliciously consume system resources if session administrator credentials become compromised This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (7.5) | 0.69% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | Servlet injection vulnerabilities in ASPECT allow remote code execution if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (7.5) | 0.37% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | SQL injection vulnerabilities in ASPECT allow unintended access and manipulation of database repositories if session administrator credentials become compromised. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Crítica (9.5) | 0.38% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | An escalation of privilege vulnerability in ASPECT could provide an attacker root access to a server when logged in as a "non" root ASPECT user. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Aplazada | Alta (7.5) | 0.46% | — | Aspect-enterpriseAIAspect Nexus SeriesAIAspect Matrix SeriesAI | 22/5/2025 | 17/6/2026 | Absolute File Traversal vulnerabilities in ASPECT allows access and modification of unintended resources. This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03. | |
| Analizada | Media (5.3) | 0.52% | — | Cisco Nexus Dashboard | 16/4/2025 | 17/6/2026 | A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts. This vulnerability is due to the improper handling of LDAP authentication requests. An attacker could exploit this vulnerability by sending authentication requests to an affected system. A… | |
| Aplazada | Alta (8.8) | 0.43% | — | Dtp.ae Tnexus Airport ViewAI | 12/3/2025 | 17/6/2026 | An issue in dtp.ae tNexus Airport View v.2.8 allows a remote attacker to escalate privileges via the ProfileID value to the [/tnexus/rest/admin/updateUser] API endpoint | |
| Aplazada | Alta (7.5) | 0.56% | — | Dtp.ae Tnexus Airport ViewAI | 12/3/2025 | 17/6/2026 | An issue in dtp.ae tNexus Airport View v.2.8 allows a remote attacker to escalate privileges via the addUser and updateUser endpoints | |
| Aplazada | Media (5.1) | 0.50% | — | Cisco Nexus 3000AICisco Nexus 9000AI | 26/2/2025 | 17/6/2026 | A vulnerability in the software upgrade process of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an authenticated, local attacker with valid Administrator credentials to execute a command injection attack on the underlying operating system of an affected… | |
| Aplazada | Alta (7.4) | 0.32% | — | Cisco Nexus 3000AICisco Nexus 9000AI | 26/2/2025 | 17/6/2026 | A vulnerability in the health monitoring diagnostics of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is… | |
| Modificada | Crítica (9.3) | 0.62% | — | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 6/2/2025 | 17/6/2026 | Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*. | |
| Analizada | Alta (8.7) | 0.50% | — | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 5/12/2024 | 17/6/2026 | Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosure. Affected products: | |
| Analizada | Crítica (9.3) | 1.1% | 💥 Exploit | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 5/12/2024 | 17/6/2026 | Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser. Affected products: | |
| Analizada | Alta (8.7) | 0.40% | — | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 5/12/2024 | 17/6/2026 | Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher probability of unintended credentails exposure. Affected products: | |
| Aplazada | Crítica (9.3) | 0.42% | — | ABB AspectAIABB Nexus SeriesAIABB Matrix SeriesAI | 5/12/2024 | 17/6/2026 | Default Credentail vulnerabilities allows access to an Aspect device using publicly available default credentials since the system does not require the installer to change default credentials. Affected products: | |
| Analizada | Alta (8.8) | 0.39% | — | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 5/12/2024 | 17/6/2026 | Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials. Affected products: | |
| Analizada | Crítica (9.3) | 0.45% | — | ABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 FirmwareABB Nexus-2128 Firmware+15 | 5/12/2024 | 17/6/2026 | Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials. Affected products: | |
| Analizada | Crítica (9.3) | 1.8% | 💥 Exploit | ABB Aspect-ent-12 FirmwareABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 Firmware+15 | 5/12/2024 | 17/6/2026 | Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device. Affected products: | |
| Analizada | Crítica (9.3) | 0.54% | — | ABB Aspect-ent-12 FirmwareABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 Firmware+15 | 5/12/2024 | 17/6/2026 | Absolute File Traversal vulnerabilities allows access and modification of un-intended resources. Affected products: | |
| Analizada | Alta (8.7) | 0.59% | — | ABB Aspect-ent-12 FirmwareABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 Firmware+15 | 5/12/2024 | 17/6/2026 | Dangerous File Upload vulnerabilities allow upload of malicious scripts. Affected products: | |
| Analizada | Alta (8.7) | 1.5% | 💥 Exploit | ABB Aspect-ent-12 FirmwareABB Aspect-ent-2 FirmwareABB Aspect-ent-256 FirmwareABB Aspect-ent-96 Firmware+15 | 5/12/2024 | 17/6/2026 | Credentials Disclosure vulnerabilities allow access to on board project back-up bundles. Affected products: |