Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2568▼ 304 respecto a la semana anterior
Críticas / altas1352▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
–

22 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (4.4)0.14%—Microsoft Azure Entra IDAIMicrosoft IntuneAIHimmelblau-idm HimmelblauAI9/9/202517/6/2026
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. Himmelblau 0.9.x derives numeric GIDs for Entra ID groups from the group display name when himmelblau.conf `id_attr_map = name` (the default configuration). Because Microsoft Entra ID allows multiple groups with the same `displayName`…
AplazadaBaja (2.8)0.14%—Microsoft Azure Entra IDAIMicrosoft IntuneAIHimmelblau-idm HimmelblauAI2/8/202517/6/2026
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. When debugging is enabled for Himmelblau in version 1.0.0, the himmelblaud_tasks service leaks an Intune service access token to the system journal. This short-lived token can be used to detect the host's Intune compliance status, and may…
AplazadaMedia (5.2)0.23%—Microsoft Azure Entra IDAIMicrosoft IntuneAIHimmelblau-idm HimmelblauAI26/6/202517/6/2026
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. A vulnerability present in versions 0.9.10 through 0.9.16 allows a user to authenticate to a Linux host via Himmelblau using an *invalid* Linux Hello PIN, provided the host is offline. While the user gains access to the local system,…
AplazadaMedia (5.4)0.34%—Microsoft Azure Entra IDAIMicrosoft IntuneAIHimmelblau-idm HimmelblauAI5/6/202517/6/2026
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. Himmelblau versions 0.9.0 through 0.9.14 and 1.00-alpha are vulnerable to a privilege escalation issue when Entra ID group-based access restrictions are configured using group display names instead of object IDs. Starting in version…
AnalizadaMedia (5.5)0.61%—Microsoft Intune Mobile Application Management14/5/202417/6/2026
Microsoft Intune for Android Mobile Application Management Tampering Vulnerability
AnalizadaMedia (6.6)0.92%—Microsoft Intune Company Portal12/3/202417/6/2026
Microsoft Intune Linux Agent Elevation of Privilege Vulnerability
ModificadaMedia (5.5)0.72%—Microsoft Intune Company Portal9/3/202217/6/2026
Microsoft Intune Portal for iOS Security Feature Bypass Vulnerability
ModificadaAlta (7.5)1.7%—Zoom MeetingsZoom Meetings FOR BlackberryZoom Meetings FOR IntuneZoom Meetings FOR Chrome OS+2124/11/202117/6/2026
A vulnerability was discovered in the Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.8.4, Zoom Client for Meetings for Blackberry (for Android and iOS) before version 5.8.1, Zoom Client for Meetings for intune (for Android and iOS) before version 5.8.4, Zoom Client for Meetings…
ModificadaCrítica (9.8)3.3%—Zoom MeetingsZoom Meetings FOR BlackberryZoom Meetings FOR IntuneZoom Meetings FOR Chrome OS+2224/11/202117/6/2026
A buffer overflow vulnerability was discovered in Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.8.4, Zoom Client for Meetings for Blackberry (for Android and iOS) before version 5.8.1, Zoom Client for Meetings for intune (for Android and iOS) before version 5.8.4, Zoom Client…
ModificadaMedia (6.7)0.48%—Microsoft Intune Management Extension13/10/202117/6/2026
Intune Management Extension Security Feature Bypass Vulnerability
ModificadaCrítica (9.8)2.5%—Microsoft Intune Management Extension8/6/202117/6/2026
Microsoft Intune Management Extension Remote Code Execution Vulnerability
ModificadaAlta (8.8)63%—Microsoft Exchange ServerMicrosoft Security EssentialsMicrosoft Forefront Endpoint Protection 2010Microsoft Intune Endpoint Protection+24/4/201817/6/2026
A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability." This affects Windows Defender, Windows Intune Endpoint Protection,…
ModificadaAlta (7.8)44%—Microsoft Windows DefenderMicrosoft Endpoint ProtectionMicrosoft Forefront Endpoint ProtectionMicrosoft Security Essentials+129/6/201717/6/2026
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on 32-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703 does not properly scan a specially crafted…
AnalizadaAlta (7.8)72%⚠ Explotación activaMicrosoft Malware Protection EngineMicrosoft Endpoint ProtectionMicrosoft Exchange ServerMicrosoft Forefront Endpoint Protection+526/5/201717/6/2026
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and…
ModificadaMedia (5.5)17%—Microsoft Windows DefenderMicrosoft Endpoint ProtectionMicrosoft Exchange ServerMicrosoft Forefront Endpoint Protection+326/5/201717/6/2026
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and…
ModificadaMedia (5.5)17%—Microsoft Windows DefenderMicrosoft Endpoint ProtectionMicrosoft Exchange ServerMicrosoft Forefront Endpoint Protection+326/5/201717/6/2026
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and…
ModificadaMedia (5.5)17%—Microsoft Windows DefenderMicrosoft Endpoint ProtectionMicrosoft Exchange ServerMicrosoft Forefront Endpoint Protection+326/5/201717/6/2026
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and…
ModificadaMedia (4.6)0.36%—Esesix Thintune ExtremeEsesix Thintune LEsesix Thintune MEsesix Thintune Mobile+331/12/200416/6/2026
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier store sensitive usernames and passwords in cleartext in configuration files for the keeper library, which allows attackers to gain access.
ModificadaMedia (4.6)0.44%—Esesix Thintune ExtremeEsesix Thintune LEsesix Thintune MEsesix Thintune Mobile+331/12/200416/6/2026
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allow local users to gain privileges by pressing CTRL-SHIFT-ALT-DEL and entering the "maertsJ" password, which is hard-coded into lshell.
ModificadaAlta (7.5)1.1%—Esesix Thintune31/12/200416/6/2026
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing.
ModificadaAlta (10)3.1%—Esesix Thintune ExtremeEsesix Thintune LEsesix Thintune MEsesix Thintune Mobile+331/12/200416/6/2026
radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access.
ModificadaMedia (5)1.4%—Esesix Thintune ExtremeEsesix Thintune LEsesix Thintune MEsesix Thintune Mobile+324/7/200416/6/2026
The Phoenix browser in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allows local users to read arbitrary files via a file:/// URL.