Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
139 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.7) | 0.83% | — | Vmware EsxiVmware Cloud FoundationVmware WorkstationVmware Workstation Player+1 | 20/10/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a… | |
| Modificada | Media (5.8) | 0.80% | — | Vmware Cloud FoundationVmware WorkstationVmware EsxiVmware Fusion | 20/10/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds read vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a… | |
| Modificada | Media (5.3) | 2.1% | — | Vmware Cloud FoundationVmware Vcenter ServerVmware Esxi | 21/8/2020 | 17/6/2026 | VMware ESXi and vCenter Server contain a partial denial of service vulnerability in their respective authentication services. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.3. | |
| Modificada | Media (5.5) | 0.35% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-201907101-SG), Workstation (15.x before 15.0.2), and Fusion (11.x before 11.0.2) contain a heap overflow vulnerability in the vmxnet3 virtual network adapter. A malicious actor with local access to a virtual machine with a vmxnet3 network adapter… | |
| Modificada | Baja (3.8) | 0.40% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds read vulnerability in the Shader functionality. A malicious actor with non-administrative local access to a… | |
| Modificada | Alta (8.2) | 0.60% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds write vulnerability in the USB 3.0 controller (xHCI). A malicious actor with local administrative privileges… | |
| Modificada | Alta (7.5) | 0.49% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a heap-overflow vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local access to a virtual machine may… | |
| Modificada | Alta (7.5) | 0.38% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain a heap-overflow due to a race condition issue in the USB 2.0 controller (EHCI). A malicious actor with local access to a… | |
| Modificada | Media (5.5) | 0.56% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain an information leak in the XHCI USB controller. A malicious actor with local access to a virtual machine may be able to read… | |
| Modificada | Media (4.7) | 0.47% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain an information leak in the EHCI USB controller. A malicious actor with local access to a virtual machine may be able to read… | |
| Modificada | Media (5.5) | 0.55% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 25/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain a use-after-free vulnerability in PVNVRAM. A malicious actor with local access to a virtual machine may be able to read… | |
| Modificada | Alta (8.2) | 0.60% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 24/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a use-after-free vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with 3D graphics… | |
| Modificada | Alta (7.8) | 0.52% | — | Vmware Cloud FoundationVmware FusionVmware WorkstationVmware Esxi | 24/6/2020 | 17/6/2026 | VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an off-by-one heap-overflow vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with… | |
| Modificada | Alta (7.5) | 1.7% | — | Linuxfoundation HarborVmware Cloud FoundationVmware Harbor Container Registry | 18/10/2019 | 17/6/2026 | Harbor API has a Broken Access Control vulnerability. The vulnerability allows project administrators to use the Harbor API to create a robot account with unauthorized push and/or pull access permissions to a project they don't have access or control for. The Harbor API did not enforce the proper project permissions… |