Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2531▼ 362 respecto a la semana anterior
Críticas / altas1338▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 6 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.3% | — | Lenovo Nextscale N1200 Enclosure FirmwareLenovo Thinkagile HX Enclosure Certified Node FirmwareLenovo Thinkagile VX Enclosure FirmwareLenovo Thinksystem D2 Enclosure Firmware+1 | 22/4/2022 | 17/6/2026 | An authentication bypass vulnerability was discovered in an internal service of the Lenovo Fan Power Controller2 (FPC2) and Lenovo System Management Module (SMM) firmware during an that could allow an unauthenticated attacker to execute commands on the SMM and FPC2. SMM2 is not affected. | |
| Modificada | Crítica (9.8) | 1.3% | — | Lenovo Nextscale N1200 Enclosure FirmwareLenovo Thinkagile HX Enclosure Certified Node FirmwareLenovo Thinkagile VX Enclosure FirmwareLenovo Thinksystem D2 Enclosure Firmware+1 | 22/4/2022 | 17/6/2026 | An authentication bypass vulnerability was discovered in the web interface of the Lenovo Fan Power Controller2 (FPC2) and Lenovo System Management Module (SMM) firmware that could allow an unauthenticated attacker to execute commands on the SMM and FPC2. SMM2 is not affected. | |
| Modificada | Crítica (9.8) | 3.8% | — | OpenslpDebian LinuxCanonical Ubuntu LinuxRedhat Enterprise Linux Desktop+34 | 23/4/2018 | 17/6/2026 | OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability. |