Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
921 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.99% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect. An unprivileged network attacker may potentially exploit this vulnerability, leading to denial-of-service. | |
| Modificada | Media (4.3) | 0.51% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.0-9.3.0, contains an Improper Handling of Insufficient Permissions vulnerability. An remote malicious user could potentially exploit this vulnerability, leading to gaining write permissions on read-only files. | |
| Modificada | Media (6.5) | 0.61% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE and ISI_PRIV_AUTH_PROVIDERS privileges could exploit this vulnerability, leading to a Denial-Of-Service. This can also impact a… | |
| Modificada | Baja (3.8) | 0.49% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information. An authenticated and privileged user could potentially exploit this vulnerability, leading to disclosure or modification of sensitive data. | |
| Modificada | Alta (7.5) | 0.93% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated network attacker could potentially exploit this denial-of-service vulnerability. | |
| Modificada | Crítica (9.8) | 1.4% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contain an improper restriction of excessive authentication attempts. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to compromised accounts. | |
| Modificada | Media (5.5) | 0.18% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user to the backend ethernet switch of a PowerScale cluster. The attacker can exploit this vulnerability to take the switch offline. | |
| Modificada | Alta (7.5) | 0.59% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged network attacker could exploit this vulnerability, leading to the potential for information disclosure. | |
| Modificada | Media (6.7) | 0.23% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2 and above, contain a password disclosure vulnerability. An unprivileged local attacker could potentially exploit this vulnerability, leading to account take over. | |
| Modificada | Alta (8.1) | 0.69% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit this vulnerability, leading to a man-in-the-middle capture of administrative credentials. | |
| Modificada | Media (5.5) | 0.19% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability, leading to a denial of service. | |
| Modificada | Crítica (9.8) | 0.74% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access | |
| Modificada | Crítica (9.8) | 1.2% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to an account compromise. | |
| Modificada | Crítica (9.1) | 0.93% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss. | |
| Modificada | Alta (8.8) | 0.58% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges. A remote filesystem user with a local account could potentially exploit this vulnerability, leading to an escalation of file privileges and information disclosure. | |
| Modificada | Media (4.4) | 0.22% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd. A high-privileged user can exploit this vulnerability to not record information identifying the source of account information changes. | |
| Modificada | Media (6.7) | 0.20% | — | Dell EMC Unity Operating Environment | 8/4/2022 | 17/6/2026 | Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain elevated privileges. | |
| Modificada | Media (6.7) | 0.19% | — | Dell EMC Unity Operating Environment | 8/4/2022 | 17/6/2026 | Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain privileges. | |
| Modificada | Crítica (9.1) | 1.0% | — | Dell EMC Unity Operating Environment | 8/4/2022 | 17/6/2026 | Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files | |
| Modificada | Crítica (9.8) | 2.6% | — | Dell EMC Unity Operating Environment | 8/4/2022 | 17/6/2026 | Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system. | |
| Modificada | Crítica (9.8) | 21% | — | PHP Memcached | 5/4/2022 | 17/6/2026 | PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection. Note: Third parties have disputed this as not affecting PHP-Memcached directly. | |
| Modificada | Alta (7.8) | 0.43% | — | Iobit Advanced Systemcare | 18/2/2022 | 17/6/2026 | A Use after Free vulnerability exists in IOBit Advanced SystemCare 15 pro via requests sent in sequential order using the IOCTL driver codes, which could let a malicious user execute arbitrary code or a Denial of Service (system crash). IOCTL list: iobit_ioctl = [0x8001e01c, 0x8001e020, 0x8001e024,… | |
| Modificada | Crítica (9.9) | 0.93% | — | Dell EMC Integrated System FOR Microsoft Azure Stack HUB Firmware | 9/2/2022 | 17/6/2026 | All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability to elevate privileges and take over the system. | |
| Modificada | Alta (7.2) | 2.8% | — | Dell EMC Unity Operating Environment | 25/1/2022 | 17/6/2026 | Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system. | |
| Modificada | Alta (7.2) | 2.8% | — | Dell EMC Unity Operating Environment | 25/1/2022 | 17/6/2026 | Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system. |