Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2761▲ 61 respecto a la semana anterior
Críticas / altas1285▼ 211 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 215 respecto a la semana anterior
–

1981 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.23%—Dell Alienware UpdateDell Command UpdateDell Supportassist FOR Business PCSDell Supportassist FOR Home PCS+111/2/202317/6/2026
Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user may…
ModificadaMedia (6.7)0.17%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service.
ModificadaMedia (5.5)0.14%—Dell R6515 FirmwareDell R7515 FirmwareDell R6525 FirmwareDell R7525 Firmware+7610/2/202317/6/2026
Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause a denial of service during SMM.
ModificadaMedia (6.5)0.52%—Dell Supportassist FOR Home PCS10/2/202317/6/2026
Dell SupportAssist for Home PCs (version 3.11.2 and prior) contain Overly Permissive Cross-domain Whitelist vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.
ModificadaMedia (4.4)0.19%—Dell Bsafe Ssl-j10/2/202317/6/2026
Dell BSAFE SSL-J, versions before 6.5 and version 7.0 contain a debug message revealing unnecessary information vulnerability. This may lead to disclosing sensitive information to a locally privileged user. .
ModificadaMedia (4.8)0.39%—Dell EMC Powerscale Onefs10/2/202317/6/2026
Dell PowerScale OneFS, versions 8.2.x through 9.4.x contain multiple stored cross-site scripting vulnerabilities. A remote authenticated malicious user with high privileges may potentially exploit these vulnerabilities to store malicious HTML or JavaScript code through multiple affected fields.
ModificadaAlta (7.1)0.15%—Dell Command | Monitor10/2/202317/6/2026
Dell Command | Monitor en sus versiones anteriores a la 10.9 contienen una vulnerabilidad de eliminación de carpeta arbitraria durante la desinstalación. Un usuario malintencionado autenticado localmente puede explotar esta vulnerabilidad y provocar la eliminación arbitraria de una carpeta.
ModificadaAlta (7.8)0.18%—Dell Alienware Command Center10/2/202317/6/2026
Dell Alienware Command Center en su versión 5.5.37.0 y anteriores contienen una vulnerabilidad de validación de entrada incorrecta. Un usuario malintencionado autenticado local podría potencialmente enviar entradas maliciosas a una canalización con nombre para elevar los privilegios en el sistema.
ModificadaAlta (7.1)0.18%—Dell Alienware UpdateDell Command Update10/2/202317/6/2026
Dell Command | Update, Dell Update, and Alienware Update anteriores a 4.6.0 y 4.7.1 contienen operación insegura en Windows Junction en el componente del instalador. Un usuario malintencionado local podría explotar esta vulnerabilidad y provocar la eliminación arbitraria de archivos.
ModificadaMedia (4.2)0.17%—Dell Alienware 13 R2 FirmwareDell Alienware 13 R3 FirmwareDell Alienware 15 R2 FirmwareDell Alienware 15 R3 Firmware+15310/2/202317/6/2026
Dell BIOS contiene una vulnerabilidad de exposición de información. Un atacante local no autenticado con acceso físico al sistema y conocimiento de la configuración del sistema podría explotar esta vulnerabilidad para leer información del sistema a través de interfaces de depuración.
ModificadaMedia (6.7)0.19%—Dell EMC Powerscale Onefs10/2/202317/6/2026
Dell PowerScale OneFS, versiones 8.2.x-9.3.x, contiene un desbordamiento de búfer basado en almacenamiento dinámico. Un usuario local malicioso con privilegios podría explotar esta vulnerabilidad y tomar el control del sistema. Esto afecta a los clústeres de modo de cumplimiento.
ModificadaBaja (2.7)0.43%—Dell Powerpath Management Appliance10/2/202317/6/2026
PowerPath Management Appliance con versiones 3.3, 3.2*, 3.1 y 3.1. 3.0* contiene una vulnerabilidad de divulgación de información confidencial. Un usuario administrador autenticado puede aprovechar el problema y ver información confidencial almacenada en los registros.
ModificadaAlta (7.8)0.46%—Dell Command | Intel Vpro OUT OF Band7/2/202317/6/2026
Dell Command Intel vPro Out of Band, versiones anteriores a la 4.3.1, contienen una vulnerabilidad de autorización incorrecta. Un usuario malintencionado autenticado localmente podría explotar esta vulnerabilidad para escribir archivos arbitrarios en el sistema.
ModificadaCrítica (9.8)1.0%—Dell EMC Networker3/2/202317/6/2026
EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used.
ModificadaAlta (7.5)0.89%—Dell Enterprise Sonic Distribution2/2/202317/6/2026
Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to uncontrolled resource consumption by creating permanent home directories for…
ModificadaAlta (8.8)0.63%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user could potentially exploit this vulnerability, leading to information disclosure and escalation of privileges.
ModificadaAlta (8.1)0.66%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module. A low-privileged user with permission to read logs on the cluster could potentially exploit this vulnerability, leading to Information disclosure and denial of service.
ModificadaMedia (5.5)0.17%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local attacker could potentially exploit this vulnerability, leading to sensitive information disclosure.
ModificadaAlta (8.8)1.6%—Dell EMC Data Domain OS1/2/202317/6/2026
Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application.
ModificadaAlta (7.8)0.18%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privilege local attacker could potentially exploit this vulnerability, leading to system takeover.
ModificadaMedia (6.7)0.21%—Dell Vxrail Manager1/2/202317/6/2026
Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the container's underlying OS. Exploitation may lead to a system take over by an attacker.
ModificadaAlta (7.5)0.77%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS 8.2.x, 9.0.0.x - 9.4.0.x, contain an insufficient resource pool vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.
ModificadaMedia (6.1)0.47%—Dell EMC Data Protection CentralDell Dp4400 FirmwareDell Dp5900 Firmware1/2/202317/6/2026
Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections.
ModificadaCrítica (9.8)0.51%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability. An remote unauthenticated attacker could potentially exploit this vulnerability, leading to a full compromise of the system.
ModificadaAlta (7.8)0.19%—Dell EMC Powerscale Onefs1/2/202317/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password. A malicious and privileged local attacker could potentially exploit this vulnerability, leading to a full system compromise