Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2630▼ 308 respecto a la semana anterior
Críticas / altas1351▲ 88 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
54 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.18% | — | HP Desktop PRO A 300 G3 FirmwareHP Desktop PRO A G3 FirmwareHP Desktop PRO A G3 Microtower FirmwareHP Zhan 66 PRO A G1 R Microtower Firmware+85 | 18/10/2023 | 17/6/2026 | A potential security vulnerability has been identified in the system BIOS for certain HP PC products which might allow escalation of privilege. HP is releasing firmware updates to mitigate the potential vulnerability. | |
| Modificada | Media (4.4) | 0.17% | — | Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+902 | 11/8/2023 | 17/6/2026 | Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access. | |
| Modificada | Media (6.5) | 3.0% | — | Redhat Enterprise LinuxXENIntel MicrocodeIntel Xeon E-2314 Firmware+530 | 11/8/2023 | 17/6/2026 | Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.18% | — | Intel Xeon E-2314 FirmwareIntel Xeon E-2324g FirmwareIntel Xeon E-2334 FirmwareIntel Xeon E-2336 Firmware+463 | 10/5/2023 | 17/6/2026 | Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.7) | 0.21% | — | Intel Core I7-11850he FirmwareIntel Core I7-11600h FirmwareIntel Core I7-11390h FirmwareIntel Core I7-1195g7 Firmware+463 | 16/2/2023 | 17/6/2026 | Improper initialization in the Intel(R) TXT SINIT ACM for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7) | 0.22% | — | Intel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s FirmwareIntel Xeon Gold 5318y Firmware+223 | 16/2/2023 | 17/6/2026 | Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Crítica (9.8) | 14% | — | Lexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+124 | 23/1/2023 | 17/6/2026 | In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation. | |
| Modificada | Alta (7.5) | 28% | — | Lexmark B2236 FirmwareLexmark B2338 FirmwareLexmark B2442 FirmwareLexmark B2546 Firmware+124 | 23/1/2023 | 17/6/2026 | Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency. | |
| Modificada | Media (6.4) | 0.15% | — | Intel Celeron 1000m FirmwareIntel Celeron 1005m FirmwareIntel Celeron 1007u FirmwareIntel Celeron 1017u Firmware+443 | 11/11/2022 | 11/8/2026 | Time-of-check time-of-use race condition in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (8.1) | 1.0% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms331 FirmwareLexmark Ms431 Firmware+113 | 26/8/2022 | 17/6/2026 | Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots. | |
| Modificada | Media (5.5) | 0.36% | — | Intel Xeon Platinum 8253 FirmwareIntel Xeon Platinum 8256 FirmwareIntel Xeon Platinum 8260 FirmwareIntel Xeon Platinum 8260l Firmware+488 | 18/8/2022 | 17/6/2026 | Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access. | |
| Modificada | Baja (2.4) | 0.21% | — | Intel Celeron G5205u FirmwareIntel Celeron G5305u FirmwareIntel Celeron G5900 FirmwareIntel Celeron G5900t Firmware+455 | 12/5/2022 | 17/6/2026 | Sensitive information accessible by physical probing of JTAG interface for some Intel(R) Processors with SGX may allow an unprivileged user to potentially enable information disclosure via physical access. | |
| Modificada | Media (6.7) | 0.26% | — | Intel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r FirmwareIntel Xeon Gold 5220r FirmwareIntel Xeon Gold 6208u Firmware+669 | 12/5/2022 | 17/6/2026 | Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.26% | — | Intel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r FirmwareIntel Xeon Gold 5220r FirmwareIntel Xeon Gold 6208u Firmware+669 | 12/5/2022 | 17/6/2026 | Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+676 | 9/2/2022 | 17/6/2026 | Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access. | |
| Modificada | Media (6.6) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.6) | 0.32% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.2) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access. | |
| Modificada | Media (6.7) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.30% | — | Netapp Cloud BackupNetapp Fas/aff BiosIntel Xeon Bronze 3206r FirmwareIntel Xeon Gold 5218r Firmware+677 | 9/2/2022 | 17/6/2026 | Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Alta (8.8) | 1.4% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files. | |
| Modificada | Crítica (9.8) | 7.0% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+114 | 20/1/2022 | 17/6/2026 | Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07. | |
| Modificada | Crítica (9.8) | 6.4% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device. | |
| Modificada | Crítica (9.8) | 3.3% | — | Lexmark B2236 FirmwareLexmark Mb2236 FirmwareLexmark Ms431 FirmwareLexmark Ms331 Firmware+230 | 20/1/2022 | 17/6/2026 | Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter. |