Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
–

805 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.8)13%—Trendmicro Trend Micro Endpoint Encryption17/6/202517/6/2026
An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a pre-authentication remote code execution on affected installations. Note that this vulnerability is similar to CVE-2025-49220 but is in a different method.
AnalizadaAlta (7.8)0.13%—Trendmicro Trend Micro Endpoint Encryption17/6/202517/6/2026
A SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system to exploit this vulnerability.
AnalizadaMedia (5.3)0.16%—Cisco Thousandeyes Endpoint Agent4/6/202517/6/2026
Multiple vulnerabilities in the update process of Cisco ThousandEyes Endpoint Agent for Windows could allow an authenticated, local attacker to delete arbitrary files on an affected device. These vulnerabilities are due to improper access controls on files that are in the local file system. An attacker could exploit…
AplazadaAlta (7.3)0.16%—Forcepoint FIE EndpointAI22/5/202517/6/2026
Uncontrolled Search Path Element vulnerability in Forcepoint FIE Endpoint allows Privilege Escalation, Code Injection, Hijacking a privileged process.This issue affects FIE Endpoint: before 25.05.
ModificadaAlta (7.8)0.80%💥 ExploitMicrosoft Defender FOR Endpoint15/5/202517/6/2026
Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
AplazadaAlta (7.1)0.15%—Opswat Metadefender Endpoint Security SDKAIPaloaltonetworks GlobalprotectAI14/5/202517/6/2026
An incorrect privilege management vulnerability in the OPSWAT MetaDefender Endpoint Security SDK used by the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. However, execution requires that the…
AnalizadaMedia (6.7)0.42%—Microsoft Defender FOR Endpoint13/5/202517/6/2026
External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
AnalizadaAlta (8.8)87%⚠ Explotación activa💥 ExploitIvanti Endpoint Manager Mobile13/5/202517/6/2026
Remote Code Execution in API component in Ivanti Endpoint Manager Mobile 12.5.0.0 and prior on unspecified platforms allows authenticated attackers to execute arbitrary code via crafted API requests.
AnalizadaAlta (7.5)100%⚠ Explotación activa💥 ExploitIvanti Endpoint Manager Mobile13/5/202517/6/2026
An authentication bypass in the API component of Ivanti Endpoint Manager Mobile 12.5.0.0 and prior allows attackers to access protected resources without proper credentials via the API.
AnalizadaAlta (7.1)0.20%—Elastic AgentElastic Endpoint Security1/5/202517/6/2026
Exposure of sensitive information to local unauthorized actors in Elastic Agent and Elastic Security Endpoint can lead to loss of confidentiality and impersonation of Endpoint to the Elastic Stack. This issue was identified by Elastic engineers and Elastic has no indication that it is known or has been exploited by…
AnalizadaAlta (8.8)0.57%💥 PoCQianxin Tianqing Endpoint Security Management System21/4/202517/6/2026
The quarantine - restore function in Qi-ANXIN Tianqing Endpoint Security Management System v10.0 allows user to restore a malicious file to an arbitrary file path. Attackers can write malicious DLL to system path and perform privilege escalation by leveraging Windows DLL hijacking vulnerabilities.
AnalizadaAlta (7.8)0.20%—Sophos Taegis Endpoint Agent11/4/202517/6/2026
A code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local users arbitrary code execution as root. Redhat-based systems using RPM packages are not affected.
AnalizadaCrítica (9.6)1.1%—Ivanti Endpoint Manager8/4/202517/6/2026
Reflected XSS in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote unauthenticated attacker to obtain admin privileges. User interaction is required.
AnalizadaMedia (6.1)0.58%—Ivanti Endpoint Manager8/4/202517/6/2026
Reflected XSS in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote unauthenticated attacker to execute arbitrary javascript in a victim's browser. Unlikely user interaction is required.
AnalizadaMedia (6.1)0.24%—Ivanti Endpoint Manager8/4/202517/6/2026
An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an attacker with local access to write arbitrary data into memory causing a denial-of-service condition.
AnalizadaAlta (7.2)1.3%—Ivanti Endpoint Manager8/4/202517/6/2026
SQL injection in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote authenticated attacker with admin privileges to achieve code execution.
AnalizadaMedia (4.8)0.31%—Ivanti Endpoint Manager8/4/202517/6/2026
Improper certificate validation in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows a remote unauthenticated attacker to intercept limited traffic between clients and servers.
ModificadaAlta (7.8)0.40%—Ivanti Endpoint Manager8/4/202517/6/2026
DLL hijacking in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an authenticated attacker to escalate to System.
AplazadaBaja (2)0.48%—Cyberark Endpoint Privilege ManagerAI28/2/202517/6/2026
It is possible to inject HTML code into the page content using the "content" field in the "Application definition" page. This issue affects CyberArk Endpoint Privilege Manager in SaaS version 24.7.1. The status of other versions is unknown. After multiple attempts to contact the vendor we did not receive any answer.
AplazadaCrítica (9.3)0.62%—Cyberark Endpoint Privilege ManagerAI28/2/202517/6/2026
Application does not limit the number or frequency of user interactions, such as the number of incoming requests. At the "/EPMUI/VfManager.asmx/ChangePassword" endpoint it is possible to perform a brute force attack on the current password in use. This issue affects CyberArk Endpoint Privilege Manager in SaaS version…
AplazadaBaja (2.1)0.46%—Cyberark Endpoint Privilege ManagerAI28/2/202517/6/2026
In the "/EPMUI/ModalDlgHandler.ashx?value=showReadonlyDlg" endpoint, it is possible to inject code in the "modalDlgMsgInternal" parameter via POST, which is then executed in the browser. The risk of exploiting vulnerability is reduced due to the required additional bypassing the Content-Security-Policy policy This…
AplazadaMedia (6.9)0.43%—Cyberark Endpoint Privilege ManagerAI28/2/202517/6/2026
The application or its infrastructure allows for IP address spoofing by providing its own value in the "X-Forwarded-For" header. Thus, the action logging mechanism in the application loses accountability This issue affects CyberArk Endpoint Privilege Manager in SaaS version 24.7.1. The status of other versions is…
AplazadaAlta (7.3)0.64%—Cyberark Endpoint Privilege ManagerAI28/2/202517/6/2026
An attacker with access to the Administration panel, specifically the "Role Management" tab, can inject code by adding a new role in the "name" field. It should be noted, however, that the risk of exploiting vulnerability is reduced due to the required additional error that allows bypassing the Content-Security-Policy…
AplazadaMedia (5.3)0.63%—Octokit EndpointAI14/2/202517/6/2026
@octokit/endpoint turns REST API endpoints into generic request options. Starting in version 4.1.0 and prior to version 10.1.3, by crafting specific `options` parameters, the `endpoint.parse(options)` call can be triggered, leading to a regular expression denial-of-service (ReDoS) attack. This causes the program to…
AplazadaMedia (5.3)0.13%—Kaspersky Anti-virus SDK FOR WindowsAIKaspersky Security FOR Virtualization Light AgentAIKaspersky Endpoint Security FOR WindowsAIKaspersky Small Office SecurityAI+96/2/202517/6/2026
Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Light Agent, Kaspersky Endpoint Security for Windows, Kaspersky Small Office Security, Kaspersky for Windows (Standard, Plus, Premium), Kaspersky Free, Kaspersky Anti-Virus, Kaspersky Internet Security,…