Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

388 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.38%—Installbuilder18/9/202017/6/2026
InstallBuilder for Qt Windows (versions prior to 20.7.0) installers look for plugins at a predictable location at initialization time, writable by non-admin users. While those plugins are not required, they are loaded if present, which could allow an attacker to plant a malicious library which could result in code…
ModificadaAlta (7.8)0.54%—Canonical Checkinstall31/8/202017/6/2026
checkinstall 1.6.2, when used to create a package that contains a symlink, may trigger the creation of a mode 0777 executable file.
ModificadaMedia (6.1)1.2%—Managedinstalls Project Managedinstalls23/7/202017/6/2026
A Cross-Site Scripting (XSS) vulnerability in the managedinstalls module before 2.6 for MunkiReport allows remote attackers to inject arbitrary web script or HTML via the last two URL parameters (through which installed packages names and versions are reported).
ModificadaCrítica (9.8)0.73%—Eyesurfer Bflyinstallerx.ocx17/7/202017/6/2026
EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method. This can be leveraged for code execution. When the vulnerable method is called, they fail to properly check the parameters that are passed…
ModificadaAlta (7.2)1.1%—Cymiinstaller322 Activex Project Cymiinstaller322 Activex30/6/202017/6/2026
CyMiInstaller322 ActiveX which runs MIPLATFORM downloads files required to run applications. A vulnerability in downloading files by CyMiInstaller322 ActiveX caused by an attacker to download randomly generated DLL files and MIPLATFORM to load those DLLs due to insufficient verification.
ModificadaAlta (7)0.79%💥 PoCPulsesecure Pulse Secure Desktop ClientPulsesecure Pulse Secure Installer Service16/6/202017/6/2026
A time-of-check time-of-use vulnerability in PulseSecureService.exe in Pulse Secure Client versions prior to 9.1.6 down to 5.3 R70 for Windows (which runs as NT AUTHORITY/SYSTEM) allows unprivileged users to run a Microsoft Installer executable with elevated privileges.
ModificadaAlta (7.3)0.28%—Lenovo Installation Package9/6/202017/6/2026
A symbolic link vulnerability in some Lenovo installation packages, prior to version 1.2.9.3, could allow privileged file operations during file extraction and installation.
ModificadaMedia (6.5)0.32%—Lenovo Installation Package9/6/202017/6/2026
A DLL search path vulnerability could allow privilege escalation in some Lenovo installation packages, prior to version 1.2.9.3, during installation if an attacker already has administrative privileges.
ModificadaCrítica (9.1)1.1%—Naver Whale Browser Installer20/5/202017/6/2026
Whale Browser Installer before 1.2.0.5 versions don't support signature verification for Flash installer.
ModificadaAlta (8.1)1.5%—Zoom IT Installer4/5/202017/6/2026
The Zoom IT installer for Windows (ZoomInstallerFull.msi) prior to version 4.6.10 deletes files located in %APPDATA%\Zoom before installing an updated version of the client. Standard users are able to write to this directory, and can write links to other directories on the machine. As the installer runs with SYSTEM…
ModificadaAlta (7.5)1.0%—Vmware Installbuilder20/4/202017/6/2026
InstallBuilder AutoUpdate tool and regular installers enabling <checkForUpdates> built with versions earlier than 19.11 are vulnerable to Billion laughs attack (denial-of-service).
ModificadaAlta (8.8)1.3%—SAP Businessobjects Business Intelligence PlatformSAP Crystal Reports FOR Visual Studio14/4/202017/6/2026
SAP Business Objects Business Intelligence Platform (CrystalReports WebForm Viewer), versions 4.1, 4.2, and Crystal Reports for VS version 2010, allows an attacker with basic authorization to perform deserialization attack in the application, leading to service interruptions and denial of service and unauthorized…
ModificadaCrítica (9.8)4.2%—Install-package Project Install-package2/4/202017/6/2026
install-package through 0.4.0 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.
ModificadaCrítica (9.8)1.8%—Install-package Project Install-packageUmount Project Umount2/4/202017/6/2026
umount through 1.1.6 is vulnerable to Command Injection. The argument device can be controlled by users without any sanitization.
ModificadaAlta (7.8)0.42%—Schneider-electric Ulti Zigbee Installation Toolkit23/3/202017/6/2026
A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could cause execution of malicious code when a malicious file is put in the search path.
ModificadaAlta (8.2)1.1%—SAP Crystal Reports10/3/202017/6/2026
SAP Business Objects Business Intelligence Platform (Crystal Reports), versions- 4.1, 4.2, allows an attacker with basic authorization to inject code that can be executed by the application and thus allowing the attacker to control the behaviour of the application, leading to Remote Code Execution. Although the mode…
ModificadaAlta (7.5)0.71%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator console remotely.
ModificadaCrítica (9.8)5.6%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT AUTHORITY\SYSTEM context of the target system by using the Execute Command Line function.
ModificadaCrítica (9.9)3.0%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file permissions of the IXP$ share on the server allows modification of directories and files (e.g., bat-scripts), which allows execution of code in the context of NT AUTHORITY\SYSTEM on the…
ModificadaAlta (7.8)0.45%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system. An authenticated attacker can, by modifying %SYSTEMDRIVE%\IXP\SW\[PACKAGE_CODE]\EveryLogon.bat, achieve this movement and execute code in the context of other users.
ModificadaMedia (5.5)0.30%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, it is possible to temporarily disable UAC by using the Agent Service on a client system. An authenticated attacker (non-admin) can disable UAC for other users by renaming and replacing %SYSTEMDRIVE%\IXP\DATA\IXPAS.IXP.
ModificadaAlta (7.5)2.5%—Ixpdata Easyinstall23/1/202017/6/2026
In IXP EasyInstall 6.2.13723, there is Directory Traversal on TCP port 8000 via the Engine Service by an unauthenticated attacker, who can access the server's filesystem with the access rights of NT AUTHORITY\SYSTEM.
ModificadaMedia (6.1)0.70%—Dicube Easescreen Crystal17/1/202017/6/2026
Feldtech easescreen Crystal 9.0 Web-Services 9.0.1.16265 allows Stored XSS via the Debug-Log and Display-Log components. This could be exploited when an attacker sends an crafted string for FTP authentication.
ModificadaAlta (7.5)89%💥 PoCVmware Spring FrameworkOracle Application Testing SuiteOracle Communications Billing AND Revenue Management Elastic Charging EngineOracle Communications Cloud Native Core Policy+2917/1/202017/6/2026
In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it sets a "Content-Disposition" header in the response where the filename attribute is derived from user supplied input.
ModificadaAlta (7.8)0.69%💥 PoCPyinstaller14/1/202017/6/2026
In PyInstaller before version 3.6, only on Windows, a local privilege escalation vulnerability is present in this particular case: If a software using PyInstaller in "onefile" mode is launched by a privileged user (at least more than the current one) which have his "TempPath" resolving to a world writable directory.…
Orbitaley — Vulnerabilidades