Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.24%—Intel Server Board M70klp2sb FirmwareIntel Server System M70klp4s2uhh FirmwareIntel Server Board M20ntp2sb FirmwareIntel Server System M20ntp1ur304 Firmware+2914/11/202317/6/2026
Improper input validation in some Intel(R) Server Board BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access
ModificadaMedia (6.7)0.23%—Intel Server Board M70klp2sb FirmwareIntel Server System M70klp4s2uhh FirmwareIntel Server Board M20ntp2sb FirmwareIntel Server System M20ntp1ur304 Firmware+2914/11/202317/6/2026
Improper input validation in some Intel(R) Server board and Intel(R) Server System BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)0.19%—Intel Compute Module Hns2600bp FirmwareIntel Compute Module Hns2600bpb FirmwareIntel Compute Module Hns2600bpb24 FirmwareIntel Compute Module Hns2600bpb24r Firmware+3214/11/202317/6/2026
Improper buffer restrictions in some Intel(R) Server Board M10JNP2SB BIOS firmware before version 7.219 may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (6.7)0.21%—Intel Server Board M70klp2sb FirmwareIntel Server System M70klp4s2uhh FirmwareIntel Server Board M20ntp2sb FirmwareIntel Server System M20ntp1ur304 Firmware+2914/11/202317/6/2026
Improper buffer restrictions in some Intel(R) Server Board BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
ModificadaMedia (5.3)1.0%—360f5 Firmware11/1/202117/6/2026
In the 3.1.3.64296 and lower version of 360F5, the third party can trigger the device to send a deauth frame by constructing and sending a specific illegal 802.11 Null Data Frame, which will cause other wireless terminals connected to disconnect from the wireless, so as to attack the router wireless by DoS. At…
ModificadaMedia (6.8)0.34%—Lenovo 20f1 FirmwareLenovo 20f2 FirmwareLenovo 20jq FirmwareLenovo 20jr Firmware+14419/8/201917/6/2026
A vulnerability was reported in various BIOS versions of older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller with unsigned firmware.
ModificadaAlta (7.8)0.52%—Oppo F5 Firmware25/4/201917/6/2026
The Oppo F5 Android device with a build fingerprint of OPPO/CPH1723/CPH1723:7.1.1/N6F26Q/1513597833:user/release-keys contains a pre-installed platform app with a package name of com.dropboxchmod (versionCode=1, versionName=1.0) that contains an exported service named com.dropboxchmod.DropboxChmodService that allows…
ModificadaCrítica (9.8)74%—UI Airmax AC FirmwareUI Airmax M XM FirmwareUI Airmax M XW FirmwareUI Airmax M TI Firmware+85/9/201817/6/2026
The web management interface of Ubiquiti airMAX, airFiber, airGateway and EdgeSwitch XP (formerly TOUGHSwitch) allows an unauthenticated attacker to upload and write arbitrary files using directory traversal techniques. An attacker can exploit this vulnerability to gain root privileges. This vulnerability is fixed in…