Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2676▼ 422 respecto a la semana anterior
Críticas / altas1295▼ 73 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 274 respecto a la semana anterior
–

30 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.7)0.88%—HP Insight Control15/2/201817/6/2026
An improper input validation vulnerability in HPE Insight Control version 7.6 LR1 was found.
ModificadaAlta (7.5)4.0%—HP Insight Control Server Deployment8/6/201617/6/2026
HPE Insight Control server deployment allows remote attackers to obtain sensitive information via unspecified vectors.
ModificadaAlta (8.4)0.66%—HP Insight Control Server Deployment8/6/201617/6/2026
HPE Insight Control server deployment allows local users to gain privileges via unspecified vectors.
ModificadaMedia (6.1)1.8%—HP Insight Control Server Deployment8/6/201617/6/2026
HPE Insight Control server deployment allows remote attackers to modify data via unspecified vectors.
ModificadaAlta (8.1)2.1%—HP Insight Control Server Deployment8/6/201617/6/2026
HPE Insight Control server deployment allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.
AnalizadaAlta (8.8)68%⚠ Explotación activaAdobe AIR SDKAdobe AIR SDK & CompilerAdobe Flash PlayerAdobe AIR+1328/12/201517/6/2026
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified…
ModificadaMedia (4.3)1.6%—HP Insight Control Server Deployment15/1/201517/6/2026
Cross-site scripting (XSS) vulnerability in the server in HP Insight Control allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
ModificadaAlta (9)3.1%—HP Insight Control Server DeploymentHP Rapid Deployment Pack14/3/201417/6/2026
Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
ModificadaMedia (4.1)0.28%—HP Insight Control Server DeploymentHP Rapid Deployment Pack14/3/201417/6/2026
Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment allows local users to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
ModificadaMedia (6.8)1.6%—HP Insight Control Performance Management3/5/201116/6/2026
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Performance Management before 6.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
ModificadaMedia (6)1.8%—HP Insight Control Performance Management3/5/201116/6/2026
Unspecified vulnerability in HP Insight Control Performance Management before 6.3 allows remote authenticated users to gain privileges via unknown vectors.
ModificadaMedia (6)1.8%—HP Insight Control FOR Linux29/4/201116/6/2026
Unspecified vulnerability in HP Insight Control for Linux (aka IC-Linux) before 6.3 allows remote authenticated users to obtain sensitive information, modify data, or cause a denial of service via unknown vectors.
ModificadaAlta (7.5)5.9%—Google ChromeXmlsoft Libxml2Apple ItunesApple Safari+137/12/201016/6/2026
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.
ModificadaMedia (6.8)1.6%—HP Insight Control FOR Linux2/11/201016/6/2026
Cross-site request forgery (CSRF) vulnerability in HP Insight Control for Linux before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
ModificadaMedia (5)2.2%—HP Insight Control Performance Management2/11/201016/6/2026
Unspecified vulnerability in HP Insight Control Performance Management before 6.1 update 2 allows remote attackers to read arbitrary files via unknown vectors.
ModificadaMedia (6.8)0.97%—HP Insight Control Performance Management2/11/201016/6/2026
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Performance Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
ModificadaAlta (8)2.4%—HP Insight Control Performance Management2/11/201016/6/2026
Unspecified vulnerability in HP Insight Control Performance Management before 6.2 allows remote authenticated users to gain privileges via unknown vectors.
ModificadaMedia (4.3)1.7%—HP Insight Control Performance Management2/11/201016/6/2026
Cross-site scripting (XSS) vulnerability in HP Insight Control Performance Management before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
ModificadaMedia (6.8)0.89%—HP Insight Control Power Management28/10/201016/6/2026
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
ModificadaMedia (4.3)1.5%—HP Insight Control Power Management28/10/201016/6/2026
Cross-site scripting (XSS) vulnerability in HP Insight Control Power Management before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
ModificadaMedia (6.4)1.9%—HP Insight Control Server MigrationHP Insight Control Server Migration6.0.128/10/201016/6/2026
Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote attackers to obtain sensitive information or modify data via unknown vectors.
ModificadaAlta (9)1.8%—HP Insight Control Server MigrationHP Insight Control Server Migration6.0.128/10/201016/6/2026
Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote authenticated users to gain privileges via unknown vectors.
ModificadaMedia (4.3)1.7%—HP Insight Control Server MigrationHP Insight Control Server Migration6.0.128/10/201016/6/2026
Cross-site scripting (XSS) vulnerability in HP Insight Control Server Migration before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
ModificadaMedia (6.8)0.94%—HP Insight Control Virtual Machine Management28/10/201016/6/2026
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Virtual Machine Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
ModificadaMedia (5)2.4%—HP Insight Control Virtual Machine Management28/10/201016/6/2026
Unspecified vulnerability in HP Insight Control Virtual Machine Management before 6.2 allows remote attackers to bypass intended access restrictions and cause a denial of service via unknown vectors.