Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

921 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.99%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect. An unprivileged network attacker may potentially exploit this vulnerability, leading to denial-of-service.
ModificadaMedia (4.3)0.51%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.0-9.3.0, contains an Improper Handling of Insufficient Permissions vulnerability. An remote malicious user could potentially exploit this vulnerability, leading to gaining write permissions on read-only files.
ModificadaMedia (6.5)0.61%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE and ISI_PRIV_AUTH_PROVIDERS privileges could exploit this vulnerability, leading to a Denial-Of-Service. This can also impact a…
ModificadaBaja (3.8)0.49%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information. An authenticated and privileged user could potentially exploit this vulnerability, leading to disclosure or modification of sensitive data.
ModificadaAlta (7.5)0.93%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated network attacker could potentially exploit this denial-of-service vulnerability.
ModificadaCrítica (9.8)1.4%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contain an improper restriction of excessive authentication attempts. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to compromised accounts.
ModificadaMedia (5.5)0.18%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user to the backend ethernet switch of a PowerScale cluster. The attacker can exploit this vulnerability to take the switch offline.
ModificadaAlta (7.5)0.59%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged network attacker could exploit this vulnerability, leading to the potential for information disclosure.
ModificadaMedia (6.7)0.23%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.2 and above, contain a password disclosure vulnerability. An unprivileged local attacker could potentially exploit this vulnerability, leading to account take over.
ModificadaAlta (8.1)0.69%—Dell EMC Powerscale Onefs12/4/202217/6/2026
Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit this vulnerability, leading to a man-in-the-middle capture of administrative credentials.
ModificadaMedia (5.5)0.19%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability, leading to a denial of service.
ModificadaCrítica (9.8)0.74%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access
ModificadaCrítica (9.8)1.2%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to an account compromise.
ModificadaCrítica (9.1)0.93%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss.
ModificadaAlta (8.8)0.58%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges. A remote filesystem user with a local account could potentially exploit this vulnerability, leading to an escalation of file privileges and information disclosure.
ModificadaMedia (4.4)0.22%—Dell EMC Powerscale Onefs8/4/202217/6/2026
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd. A high-privileged user can exploit this vulnerability to not record information identifying the source of account information changes.
ModificadaMedia (6.7)0.20%—Dell EMC Unity Operating Environment8/4/202217/6/2026
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain elevated privileges.
ModificadaMedia (6.7)0.19%—Dell EMC Unity Operating Environment8/4/202217/6/2026
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain privileges.
ModificadaCrítica (9.1)1.0%—Dell EMC Unity Operating Environment8/4/202217/6/2026
Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files
ModificadaCrítica (9.8)2.6%—Dell EMC Unity Operating Environment8/4/202217/6/2026
Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system.
ModificadaCrítica (9.8)21%—PHP Memcached5/4/202217/6/2026
PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection. Note: Third parties have disputed this as not affecting PHP-Memcached directly.
ModificadaAlta (7.8)0.43%—Iobit Advanced Systemcare18/2/202217/6/2026
A Use after Free vulnerability exists in IOBit Advanced SystemCare 15 pro via requests sent in sequential order using the IOCTL driver codes, which could let a malicious user execute arbitrary code or a Denial of Service (system crash). IOCTL list: iobit_ioctl = [0x8001e01c, 0x8001e020, 0x8001e024,…
ModificadaCrítica (9.9)0.93%—Dell EMC Integrated System FOR Microsoft Azure Stack HUB Firmware9/2/202217/6/2026
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability to elevate privileges and take over the system.
ModificadaAlta (7.2)2.8%—Dell EMC Unity Operating Environment25/1/202217/6/2026
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.
ModificadaAlta (7.2)2.8%—Dell EMC Unity Operating Environment25/1/202217/6/2026
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.