Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3040▲ 560 respecto a la semana anterior
Críticas / altas1452▲ 279 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▲ 175 respecto a la semana anterior
85 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.6) | 0.47% | — | Qnap Hyper Data Protector | 12/3/2026 | 17/6/2026 | A use of hard-coded password vulnerability has been reported to affect Hyper Data Protector. The remote attackers can then exploit the vulnerability to gain unauthorized access. We have already fixed the vulnerability in the following version: Hyper Data Protector 2.3.1.455 and later | |
| Analizada | Alta (8.1) | 0.69% | — | Qnap Hyper Data Protector | 2/1/2026 | 17/6/2026 | An SQL injection vulnerability has been reported to affect Hyper Data Protector. The remote attackers can then exploit the vulnerability to execute unauthorized code or commands. We have already fixed the vulnerability in the following versions: Hyper Data Protector 2.2.4.1 and later | |
| Modificada | Alta (8.8) | 1.0% | — | Microfocus Data Protector | 5/8/2021 | 17/6/2026 | A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 and 10.91. A privileged user may potentially misuse this feature and thus allow unintended and unauthorized… | |
| Modificada | Alta (7.8) | 0.48% | — | Safend Data Protector Agent | 13/1/2020 | 16/6/2026 | A Privilege Escalation vulnerability exists in the unquoted Service Binary in SDPAgent or SDBAgent in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges. | |
| Modificada | Alta (7.8) | 0.48% | — | Safend Data Protector Agent | 13/1/2020 | 16/6/2026 | A Privilege Escalation vulnerability exists in the SDBagent service in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges. | |
| Modificada | Media (6.1) | 0.48% | — | Safend Data Protector Agent | 13/1/2020 | 16/6/2026 | An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine. | |
| Modificada | Alta (7.8) | 7.8% | — | Microfocus Data Protector | 13/9/2019 | 17/6/2026 | Privileges manipulation in Micro Focus Data Protector, versions 10.00, 10.01, 10.02, 10.03, 10.04, 10.10, 10.20, 10.30, 10.40. This vulnerability could be exploited by a low-privileged user to execute a custom binary with higher privileges. | |
| Modificada | Crítica (9.8) | 2.9% | — | Microfocus Data Protector | 25/3/2019 | 17/6/2026 | Remote arbitrary code execution in Micro Focus Data Protector, version 10.03 this vulnerability could allow remote arbitrary code execution. | |
| Modificada | Media (5.5) | 1.6% | — | HP Data Protector | 15/2/2018 | 17/6/2026 | A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found. | |
| Modificada | Alta (7.5) | 16% | — | HP Data Protector | 15/2/2018 | 17/6/2026 | A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found. | |
| Modificada | Crítica (9.8) | 22% | — | HP Data Protector | 15/2/2018 | 17/6/2026 | A Remote Arbitrary Code Execution vulnerability in HPE Data Protector version prior to 8.17 and 9.09 was found. | |
| Modificada | Crítica (9.8) | 10% | — | HP Data Protector | 21/4/2016 | 17/6/2026 | HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors. | |
| Modificada | Crítica (9.8) | 20% | — | HP Data Protector | 21/4/2016 | 17/6/2026 | HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3354. | |
| Modificada | Crítica (9.8) | 20% | — | HP Data Protector | 21/4/2016 | 17/6/2026 | HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3353. | |
| Modificada | Crítica (9.8) | 20% | — | HP Data Protector | 21/4/2016 | 17/6/2026 | HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3352. | |
| Modificada | Crítica (9.8) | 94% | — | HP Data Protector | 21/4/2016 | 17/6/2026 | HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allow remote attackers to execute arbitrary code via unspecified vectors related to lack of authentication. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2623. | |
| Modificada | Alta (9) | 4.9% | — | HP Storage Data Protector | 27/4/2015 | 17/6/2026 | Unspecified vulnerability in HP Storage Data Protector 7.x before 7.03 build 107 allows remote authenticated users to execute arbitrary code or cause a denial of service via unknown vectors. | |
| Modificada | Media (6.4) | 35% | — | HP Data Protector | 1/8/2014 | 17/6/2026 | Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to create arbitrary files via an opcode-1091 request, or create or delete arbitrary files via an opcode-305 request. NOTE: the vendor reportedly asserts that this behavior is "by design. | |
| Modificada | Alta (10) | 91% | — | HP Storage Data Protector | 18/7/2014 | 17/6/2026 | Unspecified vulnerability in HP Storage Data Protector 8.x allows remote attackers to execute arbitrary code via unknown vectors. | |
| Modificada | Alta (10) | 10% | — | HP Storage Data Protector | 4/1/2014 | 17/6/2026 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-2008. | |
| Modificada | Alta (10) | 66% | — | HP Storage Data Protector | 4/1/2014 | 17/6/2026 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1905. | |
| Modificada | Alta (10) | 10% | — | HP Storage Data Protector | 4/1/2014 | 16/6/2026 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1897. | |
| Modificada | Alta (10) | 10% | — | HP Storage Data Protector | 4/1/2014 | 16/6/2026 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1896. | |
| Modificada | Alta (10) | 10% | — | HP Storage Data Protector | 4/1/2014 | 16/6/2026 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1892. | |
| Modificada | Alta (10) | 66% | — | HP Storage Data Protector | 4/1/2014 | 16/6/2026 | The Backup Client Service (OmniInet.exe) in HP Storage Data Protector 6.2X allows remote attackers to execute arbitrary commands or cause a denial of service via a crafted EXEC_BAR packet to TCP port 5555, aka ZDI-CAN-1885. |