Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2584▼ 301 respecto a la semana anterior
Críticas / altas1355▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.8) | 0.20% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.20% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.20% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.20% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.20% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.21% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.21% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.21% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.21% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.21% | — | Superantispyware | 23/12/2025 | 17/6/2026 | RealDefense SUPERAntiSpyware Exposed Dangerous Function Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of RealDefense SUPERAntiSpyware. An attacker must first obtain the ability to execute low-privileged code on the target system in… | |
| Analizada | Alta (7.8) | 0.40% | — | Ispyconnect Agent DVR | 18/11/2025 | 17/6/2026 | Local Agent DVR versions thru 6.6.1.0 are vulnerable to directory traversal that allows an unauthenticated local attacker to gain access to sensitive information, cause a server-side forgery request (SSRF), or execute OS commands. | |
| Modificada | Alta (8.8) | 1.2% | — | Ispyconnect Agent DVR | 6/2/2024 | 17/6/2026 | Unrestricted File Upload vulnerability in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to upload arbitrary files via the upload audio component. | |
| Modificada | Alta (8.8) | 1.4% | — | Ispyconnect Agent DVR | 6/2/2024 | 17/6/2026 | An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted backup file. | |
| Modificada | Media (5.5) | 0.24% | — | Realdefen Superantispyware | 29/1/2024 | 17/6/2026 | SUPERAntiSpyware Pro X v10.0.1260 is vulnerable to kernel-level API parameters manipulation and Denial of Service vulnerabilities by triggering the 0x9C402140 IOCTL code of the saskutil64.sys driver. | |
| Modificada | Crítica (9.8) | 60% | — | Ispyconnect Ispy | 21/6/2022 | 17/6/2026 | iSpyConnect iSpy v7.2.2.0 allows attackers to bypass authentication via a crafted URL. | |
| Modificada | Crítica (9.8) | 5.6% | — | Ispyconnect Ispy | 21/6/2022 | 17/6/2026 | iSpy v7.2.2.0 is vulnerable to remote command execution via path traversal. | |
| Modificada | Alta (7.5) | 2.5% | — | 1byte Copy91byte Exactspy1byte Fonetracker1byte Guestspy+5 | 24/2/2022 | 17/6/2026 | The backend infrastructure shared by multiple mobile device monitoring services does not adequately authenticate or authorize API requests, creating an IDOR (Insecure Direct Object Reference) vulnerability. | |
| Modificada | Alta (7.8) | 0.32% | — | Superantispyware | 28/12/2021 | 17/6/2026 | SUPERAntispyware v8.0.0.1050 was discovered to contain an issue in the component saskutil64.sys. This issue allows attackers to arbitrarily write data to the device via IOCTL 0x9C402140. | |
| Modificada | Alta (7.8) | 0.91% | — | Superantispyware Professional X | 1/9/2020 | 17/6/2026 | SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware. | |
| Modificada | Crítica (9.8) | 2.2% | — | Chocolate-doom Chocolate DoomChocolate-doom Crispy DoomOpensuse BackportsOpensuse Leap | 22/6/2020 | 17/6/2026 | The server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer overflow. A malicious user can overwrite the server's stack. | |
| Modificada | Media (5.3) | 1.3% | — | Ispyconnect Agent DVR | 15/5/2020 | 17/6/2026 | iSpyConnect.com Agent DVR before 2.7.1.0 allows directory traversal. | |
| Modificada | Alta (7.8) | 0.38% | — | Eset Antivirus AND AntispywareEset Endpoint AntivirusEset Endpoint SecurityEset File Security+4 | 29/4/2020 | 17/6/2026 | ESET Antivirus and Antispyware Module module 1553 through 1560 allows a user with limited access rights to create hard links in some ESET directories and then force the product to write through these links into files that would normally not be write-able by the user, thus achieving privilege escalation. | |
| Modificada | Crítica (9.8) | 4.5% | — | Superantispyware | 31/1/2018 | 17/6/2026 | In SUPERAntiSpyware Professional Trial 6.0.1254, the SASKUTIL.SYS driver allows privilege escalation to NT AUTHORITY\SYSTEM because of not validating input values from IOCtl 0x9C402114 or 0x9C402124 or 0x9C40207c. | |
| Modificada | Alta (7.8) | 0.95% | — | Superantispyware | 31/1/2018 | 17/6/2026 | In SUPERAntiSpyware Professional Trial 6.0.1254, SUPERAntiSpyware.exe allows DLL hijacking, leading to Escalation of Privileges. | |
| Modificada | Alta (7.8) | 0.33% | — | Superantispyware | 31/1/2018 | 17/6/2026 | In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402148. |