Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2586▼ 297 respecto a la semana anterior
Críticas / altas1355▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
538 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.3) | 0.28% | — | Siemens Jt2goSiemens ParasolidSiemens Teamcenter Visualization | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in JT2Go (All versions < V2312.0005), Teamcenter Visualization V14.2 (All versions < V14.2.0.12), Teamcenter Visualization V14.3 (All versions < V14.3.0.10), Teamcenter Visualization V2312 (All versions < V2312.0005). The affected applications contain an out of bounds read past the… | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21578) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21577) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21575) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21573) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21568) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21566) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21565) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21564) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application is vulnerable to memory corruption while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21563) | |
| Analizada | Alta (7.3) | 0.39% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21562) | |
| Analizada | Alta (7.3) | 0.28% | — | Siemens Ps/iges Parasolid TranslatorSiemens Simcenter Femap | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. | |
| Analizada | Alta (7.8) | 0.30% | — | Siemens Parasolid | 14/5/2024 | 17/6/2026 | A vulnerability has been identified in Parasolid V35.1 (All versions < V35.1.256), Parasolid V36.0 (All versions < V36.0.210), Parasolid V36.1 (All versions < V36.1.185). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted X_T part file. This… | |
| Analizada | Alta (7.8) | 0.21% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Updater Improper Verification of Cryptographic Signature Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target… | |
| Analizada | Alta (8.3) | 0.76% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop virtio-gpu Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Parallels Desktop. User interaction is required to exploit this vulnerability in that the target in a guest system must visit a… | |
| Analizada | Alta (7.8) | 0.69% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Updater Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to exploit this… | |
| Analizada | Alta (7.8) | 0.32% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Toolgate XML Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit… | |
| Analizada | Alta (7.5) | 0.40% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Toolgate Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order… | |
| Analizada | Alta (8.2) | 1.3% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Toolgate Directory Traversal Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to… | |
| Analizada | Alta (7.8) | 0.36% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to… | |
| Analizada | Alta (7.8) | 0.37% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Updater Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to… | |
| Analizada | Alta (7.8) | 0.20% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to… | |
| Analizada | Alta (7.8) | 0.37% | — | Parallels Desktop | 3/5/2024 | 17/6/2026 | Parallels Desktop Service Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to… | |
| Aplazada | Media (4.3) | 0.41% | — | Paragonie PhpeccAI | 27/4/2024 | 17/6/2026 | phpecc, as used in paragonie/phpecc before 2.0.1, has a branch-based timing leak in Point addition. (This is related to phpecc/phpecc on GitHub, and the Matyas Danter ECC library.) | |
| Aplazada | Crítica (9.8) | 0.95% | — | Setorinformatica Sistema Inteligente Para LaboratoriosAI | 26/4/2024 | 17/6/2026 | Setor Informatica Sistema Inteligente para Laboratorios (S.I.L.) 388 was discovered to contain a remote code execution (RCE) vulnerability via the hprinter parameter. This vulnerability is triggered via a crafted POST request. |