Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
386 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.8) | 1.1% | — | Atlassian Data CenterAtlassian JiraAtlassian Jira Data CenterAtlassian Jira Server | 15/2/2021 | 17/6/2026 | Affected versions of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability in the Screens Modal view. The affected versions are before version 8.5.11, from version 8.6.0 before 8.13.3, and from version 8.14.0 before 8.15.0. | |
| Modificada | Media (4.3) | 1.2% | — | Atlassian JiraAtlassian Jira Data CenterAtlassian Jira ServerAtlassian Jira Software Data Center | 2/2/2021 | 17/6/2026 | Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view the metadata of boards they should not have access to via an Insecure Direct Object References (IDOR) vulnerability. The affected versions are before version 8.5.10, and from version 8.6.0 before 8.13.2. | |
| Modificada | Media (5.4) | 0.61% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about… | |
| Modificada | Media (5.4) | 0.61% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about… | |
| Modificada | Alta (7.2) | 1.9% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to execute arbitrary SQL commands on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Alta (8.8) | 1.9% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to execute arbitrary SQL commands on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (4.3) | 0.63% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (6.1) | 0.94% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about… | |
| Modificada | Media (5.5) | 0.28% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | A vulnerability in the logging subsystem of Cisco Data Center Network Manager (DCNM) could allow an authenticated, local attacker to view sensitive information in a system log file that should be restricted. The vulnerability exists because sensitive information is not properly masked before it is written to system… | |
| Modificada | Media (6.5) | 0.40% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in Cisco Data Center Network Manager (DCNM) could allow an attacker to spoof a trusted host or construct a man-in-the-middle attack to extract sensitive information or alter certain API requests. These vulnerabilities are due to insufficient certificate validation when establishing HTTPS… | |
| Modificada | Media (6.5) | 0.40% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in Cisco Data Center Network Manager (DCNM) could allow an attacker to spoof a trusted host or construct a man-in-the-middle attack to extract sensitive information or alter certain API requests. These vulnerabilities are due to insufficient certificate validation when establishing HTTPS… | |
| Modificada | Alta (8.8) | 1.3% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | A vulnerability in the session validation feature of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side request forgery (SSRF) attack on a targeted system. This vulnerability is due to insufficient validation of parameters in a… | |
| Modificada | Media (6.5) | 0.64% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (6.3) | 0.77% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (5.4) | 0.67% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (5.4) | 0.61% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network-operator privileges to conduct a cross-site scripting (XSS) attack or a reflected file download (RFD) attack against a user of the interface. For more information about… | |
| Modificada | Alta (7.3) | 1.1% | — | Cisco Data Center Network Manager | 20/1/2021 | 17/6/2026 | Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modificada | Media (6.5) | 2.2% | — | Atlassian Confluence Data CenterAtlassian Confluence Server | 19/1/2021 | 17/6/2026 | Affected versions of Atlassian Confluence Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the avatar upload feature. The affected versions are before version 7.2.0. | |
| Modificada | Media (6.5) | 0.87% | — | Intel Data Center Manager | 12/11/2020 | 17/6/2026 | Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access. | |
| Modificada | Media (6.5) | 0.77% | — | Intel Data Center Manager | 12/11/2020 | 17/6/2026 | Improper permissions in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable denial of service via network access. | |
| Modificada | Media (6.5) | 0.87% | — | Intel Data Center Manager | 12/11/2020 | 17/6/2026 | Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access. | |
| Modificada | Alta (8.8) | 1.3% | — | Intel Data Center Manager | 12/11/2020 | 17/6/2026 | Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via network access. | |
| Modificada | Alta (7.8) | 0.32% | — | Intel Data Center Manager | 12/11/2020 | 17/6/2026 | Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.5) | 0.59% | — | Intel Software Guard Extensions Data Center Attestation Primitives | 12/11/2020 | 17/6/2026 | Improper conditions check in the Intel(R) SGX DCAP software before version 1.6 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |
| Modificada | Alta (8.8) | 77% | 💥 Exploit | Microfocus Operation Bridge ManagerMicrofocus Operations Bridge ManagerHP Universal Cmbd FoundationMicrofocus Application Performance Management+3 | 22/10/2020 | 17/6/2026 | Arbitrary code execution vulnerability affecting multiple Micro Focus products. 1.) Operation Bridge Manager affecting version: 2020.05, 2019.11, 2019.05, 2018.11, 2018.05, versions 10.6x and 10.1x and older versions. 2.) Application Performance Management affecting versions : 9.51, 9.50 and 9.40 with uCMDB 10.33 CUP… |