Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▲ 75 respecto a la semana anterior
Críticas / altas1288▼ 205 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 215 respecto a la semana anterior
–

1981 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.7)0.23%—Dell Evasa Provider Virtual ApplianceDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance13/2/202317/6/2026
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below contains an authorization bypass vulnerability, allowing users to perform actions in which they are not authorized.
ModificadaBaja (3.3)0.17%—Dell Command | Integration Suite FOR System Center13/2/202317/6/2026
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.
ModificadaBaja (3.3)0.18%—Dell Command | Intel Vpro OUT OF Band13/2/202317/6/2026
Dell Command | Intel vPro Out of Band, versions before 4.4.0, contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.
ModificadaMedia (4.9)0.55%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user can edit general client policy for which the user is not authorized.
ModificadaMedia (6.5)0.51%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user might access certain pro license features for which this admin is not authorized in order to configure user controlled external entities.
ModificadaMedia (4.9)0.55%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user can edit general client policy for which the user is not authorized.
ModificadaMedia (4.9)0.55%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite 3.8 and below contain an improper access control vulnerability with which an custom group admin can create a subgroup under a group for which the admin is not authorized.
ModificadaMedia (4.9)0.55%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A malicious admin user can disable or delete users under administration and unassigned admins for which the group admin is not authorized.
ModificadaMedia (5.3)0.47%—Dell Wyse Management Suite11/2/202317/6/2026
Wyse Management Suite Repository 3.8 and below contain an information disclosure vulnerability. A unauthenticated attacker could potentially discover the internal structure of the application and its components and use this information for further vulnerability research.
ModificadaAlta (8.8)1.4%—Dell Evasa Provider Virtual ApplianceDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance11/2/202317/6/2026
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to execute arbitrary commands on the underlying system.
ModificadaMedia (4.8)0.34%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Stored Cross-site Scripting Vulnerability. An authenticated admin user could potentially exploit this vulnerability, to hijack user sessions or trick a victim application user into unknowingly send arbitrary requests to the server.
ModificadaMedia (6.7)0.42%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with version 3.3 contains Privilege Escalation vulnerability. An authenticated admin user could potentially exploit this issue and gain unrestricted control/code execution on the system as root.
ModificadaMedia (6)0.18%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with versions 3.3 & 3.2* contains a Hardcoded Cryptographic Keys vulnerability. Authenticated admin users can exploit the issue that leads to view and modifying sensitive information stored in the application.
ModificadaAlta (8.8)0.31%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Cross-site Request Forgery vulnerability. An unauthenticated non-privileged user could potentially exploit the issue and perform any privileged state-changing actions.
ModificadaAlta (7.2)1.7%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.
ModificadaAlta (8.1)0.79%—Dell Powerpath Management Appliance11/2/202317/6/2026
PowerPath Management Appliance with versions 3.3 & 3.2* contains Authorization Bypass vulnerability. An authenticated remote user with limited privileges (e.g., of role Monitoring) can exploit this issue and gain access to sensitive information, and modify the configuration.
ModificadaMedia (4.4)0.17%—Dell Powerscale Onefs11/2/202317/6/2026
Dell PowerScale OneFS, versions 8.2.x through 9.3.x contain a weak encoding for a password. A malicious local privileged attacker may potentially exploit this vulnerability, leading to information disclosure.
ModificadaAlta (7.5)0.43%—Dell Powerscale Onefs11/2/202317/6/2026
Dell PowerScale OneFS, versions 9.2.0.x through 9.4.0.x contain an information vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to cause data leak.
ModificadaMedia (6)0.18%—Dell System Update11/2/202317/6/2026
Dell System Update, version 2.0.0 and earlier, contains an Improper Certificate Validation in data parser module. A local attacker with high privileges could potentially exploit this vulnerability, leading to credential theft and/or denial of service.
ModificadaMedia (5.5)0.16%—Dell Supportassist FOR Home PCS11/2/202317/6/2026
SupportAssist for Home PCs (versions 3.11.4 and prior) contain an insufficient session expiration Vulnerability. An authenticated non-admin user can be able to obtain the refresh token and that leads to reuse the access token and fetch sensitive information.
ModificadaMedia (5.3)0.44%—Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS11/2/202317/6/2026
Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit this vulnerability and impersonate a legitimate dell customer to a dell support technician.
ModificadaAlta (7.1)0.16%—Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS11/2/202317/6/2026
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain information disclosure vulnerability. A local malicious user with low privileges could exploit this vulnerability to view and modify sensitive information in the database of the affected…
ModificadaAlta (7.8)0.15%—Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS11/2/202317/6/2026
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privilege escalation vulnerability. A local authenticated malicious user could potentially exploit this vulnerability to elevate privileges and gain total control of the system.
ModificadaMedia (5.5)0.17%—Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS11/2/202317/6/2026
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.
ModificadaMedia (5.5)0.13%—Dell Supportassist FOR Business PCSDell Supportassist FOR Home PCS11/2/202317/6/2026
SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.