Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
1334 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 25% | 💥 Exploit | Adobe Flash Player | 20/6/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the MPEG-4 AVC module. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 8.7% | — | Adobe Flash Player | 20/6/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable use after free vulnerability when manipulating the ActionsScript 2 XML class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Media (4.3) | 0.61% | — | Toshiba Flashair | 22/5/2017 | 17/6/2026 | FlashAirTM SDHC Memory Card (SD-WE Series <W-03>) V3.00.02 and earlier and FlashAirTM SDHC Memory Card (SD-WD/WC Series <W-02>) V2.00.04 and earlier allows default credentials to be set for wireless LAN connections to the product when enabling the PhotoShare function through a web browser. | |
| Modificada | Baja (3.5) | 0.45% | — | Toshiba Flashair | 22/5/2017 | 17/6/2026 | FlashAirTM SDHC Memory Card (SD-WE Series <W-03>) V3.00.02 and earlier and FlashAirTM SDHC Memory Card (SD-WD/WC Series <W-02>) V2.00.04 and earlier allows authenticated attackers to bypass access restrictions to obtain unauthorized image data via unspecified vectors. | |
| Modificada | Media (4.3) | 0.71% | — | Toshiba Flashair | 22/5/2017 | 17/6/2026 | The Toshiba FlashAir SD-WD/WC series Class 6 model with firmware version 1.00.04 and later, FlashAir SD-WD/WC series Class 10 model W-02 with firmware version 2.00.02 and later, FlashAir SD-WE series Class 10 model W-03, FlashAir Class 6 model with firmware version 1.00.04 and later, FlashAir II Class 10 model W-02… | |
| Modificada | Alta (8.8) | 5.0% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Graphics class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 4.9% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display objects, aka memory corruption. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.0% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the BitmapData class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 6.2% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when masking display objects. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.0% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the ConvolutionFilter class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.0% | — | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the BlendMode class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 20% | 💥 Exploit | Adobe Flash Player Desktop RuntimeAdobe Flash PlayerRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+1 | 9/5/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Advanced Video Coding engine. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 3.0% | — | Toshiba Flashair | 28/4/2017 | 17/6/2026 | Untrusted search path vulnerability in installers of the software for SDHC/SDXC Memory Card with embedded NFC functionality Software Update Tool V1.00.03 and earlier, SDHC Memory Card with embedded wireless LAN functionality FlashAir Configuration Software V3.0.2 and earlier, SDHC Memory Card with embedded wireless… | |
| Modificada | Alta (7.8) | 13% | 💥 Exploit | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability when parsing a shape outline. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 8.9% | — | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the ActionScript2 NetStream class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 9.5% | — | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in ActionScript2 when creating a getter/setter property. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 25% | 💥 Exploit | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the SWF parser. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 7.6% | — | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable memory corruption vulnerability in the ActionScript2 code parser. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 9.5% | — | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the internal script object. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (7.8) | 6.5% | — | Adobe Flash Player | 12/4/2017 | 17/6/2026 | Adobe Flash Player versions 25.0.0.127 and earlier have an exploitable use after free vulnerability in the sound class. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.3% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 14/3/2017 | 17/6/2026 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to an interaction between the privacy user interface and the ActionScript 2 Camera object. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 14/3/2017 | 17/6/2026 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability in the ActionScript2 TextField object related to the variable property. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Alta (8.8) | 5.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 14/3/2017 | 17/6/2026 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to garbage collection in the ActionScript 2 VM. Successful exploitation could lead to arbitrary code execution. | |
| Modificada | Media (6.5) | 8.4% | 💥 PoC | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 14/3/2017 | 17/6/2026 | Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant blinding. Successful exploitation could lead to information disclosure. | |
| Modificada | Alta (8.8) | 4.1% | — | Adobe Flash PlayerAdobe Flash Player Desktop Runtime | 14/3/2017 | 17/6/2026 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime TVSDK functionality related to hosting playback surface. Successful exploitation could lead to arbitrary code execution. |