Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2841▼ 157 respecto a la semana anterior
Críticas / altas1370▲ 51 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 258 respecto a la semana anterior
–

26 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (4.3)0.23%—Bplugins 3D Viewer Embed 3D ModelsAI15/4/202617/6/2026
Missing Authorization vulnerability in bPlugins 3D viewer – Embed 3D Models 3d-viewer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects 3D viewer – Embed 3D Models: from n/a through <= 1.8.5.
AnalizadaAlta (7.8)0.19%—Adobe Substance 3D Viewer14/10/202517/6/2026
Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaMedia (5.5)0.16%—Adobe Substance 3D Viewer14/10/202517/6/2026
Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An attacker could leverage this vulnerability to crash the application or make it unavailable. Exploitation of this issue requires user interaction in that a victim…
AnalizadaAlta (7.8)0.24%—Adobe Substance 3D Viewer14/10/202517/6/2026
Substance3D - Viewer versions 0.25.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.19%—Adobe Substance 3D Viewer14/10/202517/6/2026
Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.21%—Adobe Substance 3D Viewer9/9/202517/6/2026
Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.21%—Adobe Substance 3D Viewer9/9/202517/6/2026
Substance3D - Viewer versions 0.25.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.26%—Adobe Substance 3D Viewer9/9/202530/9/2026
Substance3D - Viewer versions 0.25.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.19%—Adobe Substance 3D Viewer12/8/202517/6/2026
Substance3D - Viewer versions 0.25 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaAlta (7.8)0.24%—Adobe Substance 3D Viewer12/8/202517/6/2026
Substance3D - Viewer versions 0.25 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaMedia (5.5)0.26%—Adobe Substance 3D Viewer8/7/202517/6/2026
Substance3D - Viewer versions 0.22 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
AnalizadaMedia (5.5)0.23%—Adobe Substance 3D Viewer8/7/202517/6/2026
Substance3D - Viewer versions 0.22 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption in service. Exploitation of this issue requires user interaction in that a…
AnalizadaAlta (7.8)0.24%—Adobe Substance 3D Viewer8/7/202517/6/2026
Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user, scope unchanged. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
ModificadaAlta (7.8)0.68%—Microsoft 3D Viewer12/9/202317/6/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)0.68%—Microsoft 3D Viewer12/9/202317/6/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)0.68%—Microsoft 3D Viewer12/9/202317/6/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)6.8%—Microsoft 3D Viewer10/11/202119/8/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)4.3%—Microsoft 3D Viewer10/11/202119/8/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaMedia (5.5)2.8%—Microsoft 3D Viewer8/6/202117/6/2026
3D Viewer Information Disclosure Vulnerability
ModificadaAlta (7.8)2.4%—Microsoft 3D Viewer8/6/202117/6/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)2.2%—Microsoft 3D Viewer8/6/202117/6/2026
3D Viewer Remote Code Execution Vulnerability
ModificadaAlta (7.8)4.2%—Microsoft 3D Viewer16/10/202017/6/2026
<p>A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.</p> <p>An attacker who successfully exploited the vulnerability would gain execution on a victim system.</p> <p>The security update addresses the vulnerability by correcting how the Base3D rendering engine…
ModificadaAlta (7.8)3.9%—Microsoft 365 AppsMicrosoft 3D Viewer16/10/202017/6/2026
<p>A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.</p> <p>An attacker who successfully exploited the vulnerability would gain execution on a victim system.</p> <p>The security update addresses the vulnerability by correcting how the Base3D rendering engine…
ModificadaAlta (9.3)25%—Awingsoft Awakening Winds3d Viewer Plugin7/5/201016/6/2026
The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneURL property value with a URL for a .exe file.
ModificadaAlta (9.3)32%—Awingsoft Awakening Winds3d PlayerAwingsoft Awakening Winds3d Viewer7/1/201016/6/2026
Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control in WindsPly.ocx 3.5.0.0 Beta, 3.0.0.5, and earlier in AwingSoft Awakening Web3D Player and Winds3D Viewer allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long SceneUrl property value, a…