Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
197 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 1.9% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1663. | |
| Modificada | Alta (10) | 8.6% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1659. | |
| Modificada | Alta (7.5) | 2.5% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1615. | |
| Modificada | Alta (9) | 3.0% | — | HP Intelligent Management Center FOR Automated Network ManagerHP Intelligent Management Center | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1661. | |
| Modificada | Alta (7.5) | 2.5% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1660. | |
| Modificada | Alta (7.5) | 2.5% | — | HP Intelligent Management Center FOR Automated Network ManagerHP Intelligent Management Center | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1650. | |
| Modificada | Alta (7.5) | 18% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1614. | |
| Modificada | Alta (7.5) | 21% | — | HP Intelligent Management Center FOR Automated Network ManagerHP Intelligent Management Center | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1613. | |
| Modificada | Alta (7.5) | 21% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1612. | |
| Modificada | Alta (10) | 64% | 💥 Exploit | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1611. | |
| Modificada | Baja (3.5) | 0.83% | — | HP Intelligent Management CenterHP Intelligent Management Center FOR Automated Network Manager | 9/3/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Alta (7.6) | 16% | 💥 Exploit | Automatedsolutions Modbus/tcp Master OPC Server | 28/1/2011 | 16/6/2026 | Heap-based buffer overflow in Automated Solutions Modbus/TCP Master OPC Server before 3.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a MODBUS response packet with a crafted length field. | |
| Modificada | Alta (7.5) | 1.0% | 💥 Exploit | Cmsnx Automated Link Exchange Portal | 16/5/2008 | 16/6/2026 | SQL injection vulnerability in linking.page.php in Automated Link Exchange Portal allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. NOTE: linking.page.php is commonly renamed to link.php, links.php, etc. | |
| Modificada | Alta (7.5) | 4.7% | — | Automated Solutions Modbus Slave Activex Control | 19/9/2007 | 16/6/2026 | Unspecified vulnerability in the Modbus/TCP Diagnostic function in MiniHMI.exe for the Automated Solutions Modbus Slave ActiveX Control before 1.5 allows remote attackers to corrupt the heap and possibly execute arbitrary code via malformed Modbus requests to TCP port 502. | |
| Modificada | Media (5.8) | 4.6% | — | Lenovo Access SupportLenovo Automated Solutions | 15/8/2007 | 16/6/2026 | Format string vulnerability in the IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), allows remote attackers to execute arbitrary code via format string specifiers in unknown data. | |
| Modificada | Media (5.8) | 2.6% | — | Lenovo Access SupportLenovo Automated Solutions | 15/8/2007 | 16/6/2026 | The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), does not properly validate digital signatures of downloaded software, which makes it easier for remote attackers to spoof a… | |
| Modificada | Media (5.8) | 2.6% | — | Lenovo Access SupportLenovo Automated Solutions | 15/8/2007 | 16/6/2026 | The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), exposes unsafe methods to arbitrary web domains, which allows remote attackers to download arbitrary code onto a client system… | |
| Modificada | Alta (10) | 10% | — | Supportsoft ScriptrunnerSupportsoft SmartissueSymantec Automated Support AssistantSymantec Norton Antivirus+2 | 22/2/2007 | 16/6/2026 | Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX controls, as used by Symantec Automated Support Assistant and Norton AntiVirus, Internet Security, and System Works 2006, allows remote attackers to execute arbitrary code via a crafted HTML message. | |
| Modificada | Baja (1.9) | 0.42% | — | Thomas Lange Fully Automated InstallationDebian Linux | 18/12/2006 | 16/6/2026 | The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file permissions allow it to be copied to other hosts when fai-savelog is called and allows attackers to obtain the hash. | |
| Modificada | Baja (2.6) | 2.6% | — | Symantec Automated Support AssistantSymantec Norton AntivirusSymantec Norton Internet SecuritySymantec Norton System Works | 19/10/2006 | 16/6/2026 | Unspecified vulnerability in an ActiveX control used in Symantec Automated Support Assistant, as used in Norton AntiVirus, Internet Security, and System Works 2005 and 2006, allows user-assisted remote attackers to obtain sensitive information via unspecified vectors. | |
| Modificada | Media (5.1) | 6.3% | — | Symantec Automated Support AssistantSymantec Norton AntivirusSymantec Norton Internet SecuritySymantec Norton System Works | 19/10/2006 | 16/6/2026 | Stack-based buffer overflow in an ActiveX control used in Symantec Automated Support Assistant, as used in Norton AntiVirus, Internet Security, and System Works 2005 and 2006, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors. | |
| Modificada | Alta (7.2) | 0.35% | — | SUN Storage Automated Diagnostic Environment | 2/6/2006 | 16/6/2026 | A package component in Sun Storage Automated Diagnostic Environment (StorADE) 2.4 uses world-writable permissions for certain critical files and directories, which allows local users to gain privileges. |