Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 166 respecto a la semana anterior
Críticas / altas1379▲ 45 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 260 respecto a la semana anterior
103 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4) | 0.10% | — | Intel Xeon Bronze 3408u FirmwareIntel Xeon Gold 5403n FirmwareIntel Xeon Gold 5411n FirmwareIntel Xeon Gold 5412u Firmware+137 | 11/8/2026 | 28/8/2026 | Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are… | |
| Analizada | Alta (8.5) | 0.12% | — | Intel Xeon 6315p FirmwareIntel Xeon 6325p FirmwareIntel Xeon 6333p FirmwareIntel Xeon 6337p Firmware+171 | 11/8/2026 | 31/8/2026 | Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) processors may allow an escalation of privilege. Startup code and SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur… | |
| Analizada | Alta (8.8) | 0.38% | — | Web-ofisi Platinum E-ticaret | 22/2/2026 | 17/6/2026 | Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' parameter. Attackers can send POST requests to the ajax/productsFilterSearch endpoint with malicious 'q' values using time-based blind SQL… | |
| Modificada | Alta (8.8) | 0.38% | — | Web-ofisi Platinum E-ticaret | 22/2/2026 | 17/6/2026 | Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' GET parameter. Attackers can send requests to the arama endpoint with malicious 'q' values using time-based SQL injection techniques to… | |
| Aplazada | Media (5.1) | 0.28% | — | Genexis Platinum-4410AI | 21/1/2026 | 17/6/2026 | Genexis Platinum-4410 P4410-V2-1.31A contains a stored cross-site scripting vulnerability in the 'start_addr' parameter of the Security Management interface. Attackers can inject malicious scripts through the start source address field that will persist and trigger for privileged users when they access the security… | |
| Analizada | Alta (8.4) | 0.38% | — | Genexis Platinum 4410 Firmware | 4/12/2025 | 17/6/2026 | A vulnerability has been identified in Genexis Platinum P4410 router (Firmware P4410-V2–1.41) that allows a local network attacker to achieve Remote Code Execution (RCE) with root privileges. The issue occurs due to improper session invalidation after administrator logout. When an administrator logs out, the session… | |
| Aplazada | Media (5.9) | 0.34% | — | Techblissonline Platinum SEOAI | 31/3/2024 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Techblissonline.Com (Rajesh) Platinum SEO allows Stored XSS.This issue affects Platinum SEO: from n/a through 2.4.0. | |
| Modificada | Alta (7.8) | 1.7% | — | Intel Core I3-10100y FirmwareIntel Core I3-10110u FirmwareIntel Core I3-10110y FirmwareIntel Core I3-1005g1 Firmware+219 | 14/11/2023 | 17/6/2026 | Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access. | |
| Modificada | Media (4.4) | 0.25% | — | Intel MicrocodeDebian LinuxFedoraproject FedoraIntel Xeon D-2745nx Firmware+135 | 11/8/2023 | 17/6/2026 | Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (4.4) | 0.17% | — | Intel Pentium J6426 FirmwareIntel Pentium J4205 FirmwareIntel Pentium J3710 FirmwareIntel Pentium J2900 Firmware+902 | 11/8/2023 | 17/6/2026 | Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access. | |
| Modificada | Media (6.7) | 0.27% | — | Debian LinuxFedoraproject FedoraIntel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 Firmware+188 | 11/8/2023 | 17/6/2026 | Unauthorized error injection in Intel(R) SGX or Intel(R) TDX for some Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.5) | 3.0% | — | Redhat Enterprise LinuxXENIntel MicrocodeIntel Xeon E-2314 Firmware+530 | 11/8/2023 | 17/6/2026 | Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.18% | — | Intel Xeon E-2314 FirmwareIntel Xeon E-2324g FirmwareIntel Xeon E-2334 FirmwareIntel Xeon E-2336 Firmware+463 | 10/5/2023 | 17/6/2026 | Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (4.4) | 0.25% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+223 | 16/2/2023 | 17/6/2026 | Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (4.4) | 0.22% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+49 | 16/2/2023 | 17/6/2026 | Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Media (6.7) | 0.21% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+132 | 16/2/2023 | 17/6/2026 | Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.7) | 0.21% | — | Intel Xeon Gold 6138p FirmwareIntel Xeon Bronze 3104 FirmwareIntel Xeon Bronze 3106 FirmwareIntel Xeon Gold 5115 Firmware+177 | 16/2/2023 | 17/6/2026 | Improper initialization in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.7) | 0.21% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+49 | 16/2/2023 | 17/6/2026 | Use after free in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7) | 0.22% | — | Intel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s FirmwareIntel Xeon Gold 5318y Firmware+223 | 16/2/2023 | 17/6/2026 | Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.7) | 0.25% | — | Intel Xeon Bronze 3104 FirmwareIntel Xeon Bronze 3106 FirmwareIntel Xeon Bronze 3204 FirmwareIntel Xeon Bronze 3206r Firmware+205 | 16/2/2023 | 17/6/2026 | Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Modificada | Media (6.8) | 0.54% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+62 | 16/2/2023 | 17/6/2026 | Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access. | |
| Modificada | Alta (8.2) | 0.21% | — | Intel Xeon Gold 6342 FirmwareIntel Xeon Gold 6346 FirmwareIntel Xeon Gold 6330 FirmwareIntel Xeon Platinum 8360y Firmware+49 | 16/2/2023 | 17/6/2026 | Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | |
| Modificada | Media (5.5) | 0.36% | — | Intel Xeon Platinum 8253 FirmwareIntel Xeon Platinum 8256 FirmwareIntel Xeon Platinum 8260 FirmwareIntel Xeon Platinum 8260l Firmware+488 | 18/8/2022 | 17/6/2026 | Non-transparent sharing of return predictor targets between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access. | |
| Modificada | Media (5.5) | 0.32% | — | Intel Pentium J4205 FirmwareIntel Pentium N4200 FirmwareIntel Pentium N4200e FirmwareIntel Celeron J3455 Firmware+330 | 18/8/2022 | 17/6/2026 | Improper isolation of shared resources in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.8) | 0.26% | — | Intel Xeon Gold 5315y FirmwareIntel Xeon Gold 5317 FirmwareIntel Xeon Gold 5318n FirmwareIntel Xeon Gold 5318s Firmware+68 | 18/8/2022 | 17/6/2026 | Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access. |