Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2667▼ 241 respecto a la semana anterior
Críticas / altas1361▲ 103 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 0.38% | — | Thresholdsecurity Evisitorpass | 21/3/2019 | 17/6/2026 | eVisitorPass contains default administrative credentials. An attacker could exploit this vulnerability to gain full access to the application. | |
| Modificada | Alta (7.8) | 0.38% | — | Thresholdsecurity Evisitorpass | 21/3/2019 | 17/6/2026 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error while in kiosk mode. By visiting the kiosk and typing ctrl+shift+esc, an attacker could exploit this vulnerability to open the task manager to kill the process or launch new processes on the system. | |
| Modificada | Alta (7.8) | 0.38% | — | Thresholdsecurity Evisitorpass | 21/3/2019 | 17/6/2026 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Virtual Keyboard Help Dialog. By visiting the kiosk and removing the program from fullscreen, an attacker could exploit this vulnerability using the terminal to launch the command prompt. | |
| Modificada | Alta (7.8) | 0.38% | — | Thresholdsecurity Evisitorpass | 21/3/2019 | 17/6/2026 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Virtual Keyboard Start Menu. By visiting the kiosk and pressing windows key twice, an attacker could exploit this vulnerability to close the program and launch other processes on the system. | |
| Modificada | Alta (7.8) | 0.38% | — | Thresholdsecurity Evisitorpass | 21/3/2019 | 17/6/2026 | eVisitorPass could allow a local attacker to gain elevated privileges on the system, caused by an error with the Fullscreen button. By visiting the kiosk and clicking the full screen button in the bottom right, an attacker could exploit this vulnerability to close the program and launch other processes on the system. |