Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2797▼ 203 respecto a la semana anterior
Críticas / altas1352▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)255▼ 266 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.6) | 0.13% | — | Network Vision IntravueAI | 23/7/2026 | 27/7/2026 | Pronetiqs IntraVUE versions 3.2.1a14 and prior have an inadequate encryption strength vulnerability which could allow an attacker to steal admin credentials via weak hash or a pass-the-hash attack. | |
| Aplazada | Media (6.9) | 0.34% | — | Network Vision IntravueAI | 23/7/2026 | 27/7/2026 | Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could allow for asset discovery by unauthenticated users. | |
| Aplazada | Crítica (10) | 0.51% | — | Network Vision IntravueAI | 23/7/2026 | 27/7/2026 | Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation. | |
| Aplazada | Alta (8.7) | 0.39% | — | Network Vision IntravueAI | 23/7/2026 | 27/7/2026 | Pronetiqs IntraVUE Versions 3.2.1a14 and prior have a plaintext storage of a password vulnerability that could expose cleartext credentials through the API. | |
| Aplazada | Crítica (9.2) | 0.42% | — | Network Vision IntravueAI | 23/7/2026 | 27/7/2026 | Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could expose the underlying host/share filesystem. | |
| Modificada | Alta (10) | 2.4% | — | Network Vision Intravue | 27/2/2015 | 17/6/2026 | Network Vision IntraVue before 2.3.0a14 on Windows allows remote attackers to execute arbitrary OS commands via unspecified vectors. |