Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2761▲ 61 respecto a la semana anterior
Críticas / altas1285▼ 211 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 215 respecto a la semana anterior
1837 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.7) | 1.3% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: PIA Core Technology). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red… | |
| Modificada | Media (6.1) | 1.2% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: PIA Core Technology). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red… | |
| Modificada | Alta (7.5) | 1.9% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PT PeopleTools de Oracle PeopleSoft Products (subcomponente: Health Center). Las versiones compatibles que se han visto afectadas son la 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Crítica (9.8) | 43% | 💥 Exploit | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PT PeopleTools de Oracle PeopleSoft Products (subcomponente: Performance Monitor). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a… | |
| Modificada | Alta (8.1) | 2.0% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Updates Environment Mgmt). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante con un bajo nivel de privilegios… | |
| Modificada | Alta (7.2) | 2.2% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Sawbridge). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Media (6.2) | 0.50% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PT PeopleTools de Oracle PeopleSoft Products (subcomponente: Application Server). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante no autenticado y con permisos de… | |
| Modificada | Alta (7.5) | 2.6% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PT PeopleTools de Oracle PeopleSoft Products (subcomponente: Elastic Search). Las versiones compatibles que se han visto afectadas son la 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Media (6.1) | 1.5% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Query). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Media (6.5) | 2.3% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Test Framework). Las versiones compatibles que se han visto afectadas son la 8.54, 8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante con un bajo nivel de privilegios que tenga… | |
| Modificada | Media (6.1) | 1.5% | — | Oracle Peoplesoft Enterprise Peopletools | 19/10/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Core). Las versiones compatibles que se han visto afectadas son la 8.54.,8.55 y la 8.56. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Crítica (9.8) | 8.9% | — | Golang GODebian LinuxRedhat Developer ToolsRedhat Enterprise Linux EUS+3 | 5/10/2017 | 17/6/2026 | Go, en sus versiones 1.8.4 y versiones 1.9.x anteriores a la 1.9.1, permite que se ejecuten comandos "go get" de manera remota. Mediante el uso de dominios personalizados, es posible organizar los elementos de forma que example.com/pkg1 apunte a un repositorio Subversion, pero example.com/pkg1/pkg2 apunta a un… | |
| Modificada | Media (6.1) | 2.5% | 💥 Exploit | Smartertools Smarterstats | 30/9/2017 | 17/6/2026 | La versión 11.3.6347 de SmarterStats renderiza el campo Referer de archivos de registro HTTP desde URL /Data/Reports/ReferringURLsWithQueries. Esto provocaría un Cross-Site Scripting (XSS) persistente. | |
| Modificada | Media (6.1) | 1.5% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Pivot Grid). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Media (4.7) | 0.39% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Updates Change Assistant). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad difícilmente explotable permite que un atacante con un bajo nivel de privilegios y… | |
| Modificada | Media (4.7) | 0.39% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Test Framework). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad difícilmente explotable permite que un atacante con un bajo nivel de privilegios y con permisos… | |
| Modificada | Media (4.7) | 0.39% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Tuxedo). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad difícilmente explotable permite que un atacante con un bajo nivel de privilegios y con permisos de… | |
| Modificada | Media (6.1) | 1.5% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Integration Broker). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por… | |
| Modificada | Alta (8.3) | 1.9% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Portal). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP comprometa… | |
| Modificada | Media (6.1) | 1.7% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Portal). Las versiones compatibles que se han visto afectadas son la 8,54 y la 8,55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP comprometa… | |
| Modificada | Alta (8.3) | 1.9% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Integration Broker). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por… | |
| Modificada | Media (5.3) | 2.2% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Integration Broker). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad difícilmente explotable permite que un atacante sin autenticar que tenga acceso en red por… | |
| Modificada | Media (5.4) | 1.0% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Fluid Homepage Navigation). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante con pocos privilegios que tenga acceso… | |
| Modificada | Media (6.1) | 1.5% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: PIA Search). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad fácilmente explotable permite que un atacante sin autenticar que tenga acceso a red por HTTP… | |
| Modificada | Media (4.7) | 0.39% | — | Oracle Peoplesoft Enterprise Peopletools | 8/8/2017 | 17/6/2026 | Vulnerabilidad en el componente PeopleSoft Enterprise PeopleTools de Oracle PeopleSoft Products (subcomponente: Updates Change Assistant). Las versiones compatibles que se han visto afectadas son la 8.54 y la 8.55. Una vulnerabilidad difícilmente explotable permite que un atacante con pocos privilegios que tenga la… |