Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2899▼ 147 respecto a la semana anterior
Críticas / altas1291▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.4) | 0.62% | — | Microfocus Fortify Software Security Center | 19/6/2019 | 17/6/2026 | Cross-Site Scripting vulnerability in Micro Focus Fortify Software Security Center Server, versions 17.2, 18.1, 18.2, has been identified in Micro Focus Software Security Center. The vulnerability could be exploited to execute JavaScript code in user’s browser. The vulnerability could be exploited to execute… | |
| Modificada | Media (6.5) | 7.2% | — | Microfocus Fortify Software Security Center | 13/12/2018 | 17/6/2026 | A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access | |
| Modificada | Media (6.5) | 7.4% | — | Microfocus Fortify Software Security Center | 13/12/2018 | 17/6/2026 | A potential Remote Unauthorized Access in Micro Focus Fortify Software Security Center (SSC), versions 17.10, 17.20, 18.10 this exploitation could allow Remote Unauthorized Access | |
| Modificada | Crítica (9.8) | 14% | — | HP Fortify Software Security Center | 12/7/2018 | 17/6/2026 | An XML external entity (XXE) vulnerability in Fortify Software Security Center (SSC), version 17.1, 17.2, 18.1 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request. | |
| Modificada | Crítica (9.8) | 1.2% | — | Microfocus Fortify Audit WorkbenchMicrofocus Fortify Software Security Center | 2/2/2018 | 17/6/2026 | XML External Entity (XXE) vulnerability in Micro Focus Fortify Audit Workbench (AWB) and Micro Focus Fortify Software Security Center (SSC), versions 16.10, 16.20, 17.10. This vulnerability could be exploited to allow a XML External Entity (XXE) injection. | |
| Modificada | Media (4) | 1.1% | — | HP Fortify Software Security Center | 16/8/2012 | 16/6/2026 | HP Fortify Software Security Center 3.1, 3.3, 3.4, and 3.5 allows remote authenticated users to obtain sensitive information via unspecified vectors. | |
| Modificada | Media (5) | 2.2% | — | HP Fortify Software Security Center | 16/8/2012 | 16/6/2026 | HP Fortify Software Security Center 3.1, 3.3, 3.4, and 3.5 allows remote attackers to obtain sensitive information via unspecified vectors. |