Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
337 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.60% | — | Dahuasecurity DSS ExpressDahuasecurity DSS ProfessionalDahuasecurity Dhi-dss7016d-s2 FirmwareDahuasecurity Dhi-dss7016dr-s2 Firmware+1 | 27/12/2022 | 17/6/2026 | Some Dahua software products have a vulnerability of unrestricted download of file. After obtaining the permissions of ordinary users, by sending a specific crafted packet to the vulnerable interface, an attacker can download arbitrary files. | |
| Modificada | Alta (7.5) | 0.55% | — | Dahuasecurity DSS ExpressDahuasecurity DSS ProfessionalDahuasecurity Dhi-dss7016d-s2 FirmwareDahuasecurity Dhi-dss7016dr-s2 Firmware+1 | 27/12/2022 | 17/6/2026 | Some Dahua software products have a vulnerability of using of hard-coded cryptographic key. An attacker can obtain the AES crypto key by exploiting this vulnerability. | |
| Modificada | Media (5.3) | 0.70% | — | Dahuasecurity DSS ExpressDahuasecurity DSS ProfessionalDahuasecurity Dhi-dss7016d-s2 FirmwareDahuasecurity Dhi-dss7016dr-s2 Firmware+1 | 27/12/2022 | 17/6/2026 | Some Dahua software products have a vulnerability of unauthenticated request of AES crypto key. An attacker can obtain the AES crypto key by sending a specific crafted packet to the vulnerable interface. | |
| Modificada | Alta (7.5) | 0.59% | — | Dahuasecurity DSS ExpressDahuasecurity DSS ProfessionalDahuasecurity Dhi-dss7016d-s2 FirmwareDahuasecurity Dhi-dss7016dr-s2 Firmware+1 | 27/12/2022 | 17/6/2026 | Some Dahua software products have a vulnerability of unauthenticated request of MQTT credentials. An attacker can obtain encrypted MQTT credentials by sending a specific crafted packet to the vulnerable interface (the credentials cannot be directly exploited). | |
| Modificada | Alta (7.5) | 0.70% | — | Bund BKG Professional Ntripcaster | 17/11/2022 | 17/6/2026 | BKG Professional NtripCaster 2.0.39 allows querying information over the UDP protocol without authentication. The NTRIP sourcetable is typically quite long (tens of kBs) and can be requested with a packet of only 30 bytes. This presents a vector that can be used for UDP amplification attacks. Normally, only… | |
| Modificada | Crítica (9.8) | 0.73% | — | TIM Campus Confession Wall Project TIM Campus Confession Wall | 1/11/2022 | 17/6/2026 | A vulnerability has been found in Tim Campus Confession Wall and classified as critical. Affected by this vulnerability is an unknown functionality of the file share.php. The manipulation of the argument post_id leads to sql injection. The exploit has been disclosed to the public and may be used. The associated… | |
| Modificada | Alta (7.8) | 0.24% | — | Siemens Simatic PCS 7Siemens Simatic WinccSiemens Simatic Wincc Runtime Professional | 20/5/2022 | 17/6/2026 | A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC06), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP1 UC01), SIMATIC WinCC Runtime Professional V16 and earlier (All versions), SIMATIC WinCC Runtime Professional V17 (All versions < V17 Upd4), SIMATIC… | |
| Modificada | Alta (8.8) | 3.4% | — | RTI Connext DDS MicroRTI Connext ProfessionalRTI Connext Secure | 5/5/2022 | 17/6/2026 | RTI Connext Professional versions 4.1 to 6.1.0, and Connext Micro versions 2.4 and later are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic. This may result in a denial-of-service condition and information exposure. | |
| Modificada | Crítica (9.8) | 1.4% | — | RTI Connext ProfessionalRTI Connext Secure | 5/5/2022 | 17/6/2026 | RTI Connext DDS Professional and Connext DDS Secure Versions 4.2x to 6.1.0 not correctly calculate the size when allocating the buffer, which may result in a buffer overflow. | |
| Modificada | Alta (7.8) | 0.58% | — | RTI Connext ProfessionalRTI Connext Secure | 5/5/2022 | 17/6/2026 | RTI Connext DDS Professional and Connext DDS Secure Versions 4.2x to 6.1.0 vulnerable to a stack-based buffer overflow, which may allow a local attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 0.58% | — | RTI Connext ProfessionalRTI Connext Secure | 5/5/2022 | 17/6/2026 | RTI Connext DDS Professional and Connext DDS Secure Versions 4.2.x to 6.1.0 are vulnerable to a stack-based buffer overflow, which may allow a local attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 0.31% | — | Westerndigital Sandisk Professional G-raid 4/8 Software UtilityWesterndigital Sandisk Professional G-raid 4/8 Software Utility Driver | 30/3/2022 | 17/6/2026 | The G-RAID 4/8 Software Utility setups for Windows were affected by a DLL hijacking vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the system user. | |
| Modificada | Alta (7.8) | 0.24% | — | Bosch Amc2 FirmwareBosch Access Management SystemBosch Access Professional EditionBosch Building Integration System | 19/1/2022 | 17/6/2026 | The Bosch software tools AccessIPConfig.exe and AmcIpConfig.exe are used to configure certains settings in AMC2 devices. The tool allows putting a password protection on configured devices to restrict access to the configuration of an AMC2. An attacker can circumvent this protection and make unauthorized changes to… | |
| Modificada | Alta (7.1) | 0.14% | — | Bosch Amc2 FirmwareBosch Access Management SystemBosch Access Professional EditionBosch Building Integration System | 19/1/2022 | 17/6/2026 | Communication to the AMC2 uses a state-of-the-art cryptographic algorithm for symmetric encryption called Blowfish. An attacker could retrieve the key from the firmware to decrypt network traffic between the AMC2 and the host system. Thus, an attacker can exploit this vulnerability to decrypt and modify network… | |
| Modificada | Media (5.4) | 0.82% | — | Ajax.net Professional Project Ajax.net Professional | 22/12/2021 | 17/6/2026 | Ajax.NET Professional (AjaxPro) is an AJAX framework available for Microsoft ASP.NET. Affected versions of this package are vulnerable to JavaScript object injection which may result in cross site scripting when leveraged by a malicious user. The affected core relates to JavaScript object creation when parsing json… | |
| Modificada | Alta (7.5) | 1.0% | — | Bosch Video Management SystemBosch Video Recording ManagerBosch Access Easy Controller FirmwareBosch Access Professional Edition+2 | 8/12/2021 | 17/6/2026 | An unauthenticated attacker is able to send a special HTTP request, that causes a service to crash. In case of a standalone VRM or BVMS with VRM installation this crash also opens the possibility to send further unauthenticated commands to the service. On some products the interface is only local accessible lowering… | |
| Analizada | Crítica (9.8) | 83% | ⚠ Explotación activa💥 Exploit | Ajaxpro.2 Project Ajaxpro.2Michaelschwarz Ajax.net Professional | 3/12/2021 | 27/8/2026 | All versions of package ajaxpro.2 are vulnerable to Deserialization of Untrusted Data due to the possibility of deserialization of arbitrary .NET classes, which can be abused to gain remote code execution. | |
| Modificada | Alta (7.5) | 2.4% | — | Oracle Advanced Networking OptionOracle Agile Engineering Data ManagementOracle Agile Product Lifecycle ManagementOracle Agile Product Lifecycle Management FOR Process+107 | 21/7/2021 | 25/8/2026 | Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks… | |
| Modificada | Crítica (9.8) | 1.5% | — | Gehealthcare 3.0t Signa Hdxt FirmwareGehealthcare 3.0t Signa HD 16 FirmwareGehealthcare 3.0t Signa HD 23 FirmwareGehealthcare 1.5t Brivo Mr355 Firmware+108 | 14/12/2020 | 17/6/2026 | GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network. | |
| Modificada | Crítica (9.8) | 1.1% | — | Gehealthcare 3.0t Signa Hdxt FirmwareGehealthcare 3.0t Signa HD 16 FirmwareGehealthcare 3.0t Signa HD 23 FirmwareGehealthcare 1.5t Brivo Mr355 Firmware+108 | 14/12/2020 | 17/6/2026 | GE Healthcare Imaging and Ultrasound Products may allow specific credentials to be exposed during transport over the network. | |
| Modificada | Alta (7.8) | 0.91% | 💥 PoC | Superantispyware Professional X | 1/9/2020 | 17/6/2026 | SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware. | |
| Modificada | Media (6.7) | 0.46% | — | Siemens Simatic Automatic ToolSiemens Simatic NET PCSiemens Simatic PCS 7Siemens Simatic PCS NEO+13 | 10/6/2020 | 17/6/2026 | A vulnerability has been identified in SIMATIC Automation Tool (All versions < V4 SP2), SIMATIC NET PC Software V14 (All versions < V14 SP1 Update 14), SIMATIC NET PC Software V15 (All versions), SIMATIC NET PC Software V16 (All versions < V16 Upd3), SIMATIC PCS neo (All versions < V3.0 SP1), SIMATIC ProSave (All… | |
| Modificada | Media (5.5) | 1.4% | — | Avira Antivir MailgateAvira Antivir Mailgate SuiteAvira Antivir PersonalAvira Antivir Sharepoint+6 | 12/2/2020 | 16/6/2026 | A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engine. | |
| Modificada | Media (6.1) | 2.2% | 💥 PoC | Redhat Hibernate ValidatorRedhat FuseRedhat Jboss Data GridRedhat Jboss Enterprise Application Platform+183 | 8/11/2019 | 25/8/2026 | A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack. | |
| Modificada | Alta (8) | 2.0% | — | Altair PBS Professional | 9/10/2019 | 17/6/2026 | Altair PBS Professional through 19.1.2 allows Privilege Escalation because an attacker can send a message directly to pbs_mom, which fails to properly authenticate the message. This results in code execution as an arbitrary user. |