Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2806▲ 5 respecto a la semana anterior
Críticas / altas1465▲ 246 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)77▼ 441 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 2.3% | — | Openbsd OpensshNetapp Brocade Fabric Operating SystemNetapp HCI Bootstrap OSNetapp Solidfire Element OS | 17/3/2023 | 14/7/2026 | ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9. | |
| Modificada | Crítica (9.8) | 4.2% | — | Netapp HCI Management NodeNetapp SolidfireNetapp HCI Storage NodeNetapp Element OS | 8/1/2021 | 17/6/2026 | Element OS versions prior to 1.8P1 and 12.2 are susceptible to a vulnerability that could allow an unauthenticated remote attacker to perform arbitrary code execution. | |
| Modificada | Alta (7.5) | 1.1% | — | Netapp HCINetapp Element OS | 13/11/2020 | 17/6/2026 | Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an attacker to discover sensitive information by intercepting its transmission within an https session. | |
| Modificada | Media (6.5) | 0.90% | — | Netapp HCINetapp Element OS | 13/11/2020 | 17/6/2026 | Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an authenticated user to view sensitive information. | |
| Modificada | Alta (7.5) | 1.3% | — | Netapp Element HealthtoolsNetapp Element OS | 21/5/2020 | 17/6/2026 | Element OS prior to version 12.0 and Element HealthTools prior to version 2020.04.01.04 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information. | |
| Modificada | Alta (7.5) | 6.3% | — | ISC BindNetapp Data Ontap EdgeNetapp Solidfire Element OS Management Node | 16/1/2019 | 17/6/2026 | While handling a particular type of malformed packet BIND erroneously selects a SERVFAIL rcode instead of a FORMERR rcode. If the receiving view has the SERVFAIL cache feature enabled, this can trigger an assertion failure in badcache.c when the request doesn't contain all of the expected information. Affects BIND… | |
| Modificada | Media (5.9) | 6.8% | — | ISC BindNetapp Data Ontap EdgeNetapp Solidfire Element OS Management Node | 16/1/2019 | 17/6/2026 | An error in handling certain queries can cause an assertion failure when a server is using the nxdomain-redirect feature to cover a zone for which it is also providing authoritative service. A vulnerable server could be intentionally stopped by an attacker if it was using a configuration that met the criteria for the… | |
| Modificada | Alta (7.5) | 3.6% | — | Net-snmpNetapp Cloud BackupNetapp Hyper Converged InfrastructureNetapp Storagegrid Webscale+3 | 8/10/2018 | 17/6/2026 | snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service. | |
| Modificada | Media (6.5) | 18% | — | Net-snmpDebian LinuxCanonical Ubuntu LinuxNetapp Cloud Backup+6 | 8/10/2018 | 17/6/2026 | _set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service. | |
| Modificada | Media (5.6) | 8.6% | — | Intel Atom CIntel Atom EIntel Atom X3Intel Atom Z+221 | 10/7/2018 | 17/6/2026 | Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis. |