Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2570▼ 302 respecto a la semana anterior
Críticas / altas1352▲ 100 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
46 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 0.30% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Analizada | Alta (8.8) | 0.86% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a Deserialization of Untrusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. | |
| Analizada | Media (6.5) | 0.45% | — | Dell Unisphere FOR Powermax | 10/7/2026 | 16/7/2026 | Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a path traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to read arbitrary files. | |
| Analizada | Alta (7.5) | 0.25% | — | Dell Unisphere FOR Powermax Virtual Appliance | 22/5/2026 | 23/7/2026 | Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the Unisphere for VMAX application running in vApp | |
| Analizada | Alta (8.1) | 0.53% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized modification of critical system files. | |
| Analizada | Media (6.5) | 0.40% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure. | |
| Analizada | Alta (8.1) | 0.46% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to delete arbitrary files. | |
| Analizada | Alta (8.8) | 0.51% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the ability to overwrite arbitrary files. | |
| Analizada | Alta (8.8) | 0.43% | — | Dell Unisphere FOR Powermax | 19/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Missing Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Aplazada | Media (5.4) | 0.28% | — | Dell Unisphere FOR PowermaxAI | 17/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript code in… | |
| Aplazada | Media (5.4) | 0.17% | — | Dell Unisphere FOR Powermax VappAI | 17/2/2026 | 17/6/2026 | Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript… | |
| Modificada | Alta (8.8) | 0.65% | — | Dell Unisphere FOR PowermaxDell Unisphere FOR Powermax Virtual Appliance | 22/1/2026 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution. | |
| Analizada | Alta (7.1) | 0.28% | — | Dell Unisphere FOR PowermaxDell Unisphere FOR Powermax Virtual Appliance | 6/1/2026 | 30/9/2026 | Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control. | |
| Analizada | Alta (7.2) | 0.65% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 27/6/2025 | 17/6/2026 | Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution. | |
| Analizada | Media (4.7) | 0.29% | — | Dell Unisphere FOR Powermax | 7/4/2025 | 17/6/2026 | Dell Unisphere for PowerMax, version(s) prior to 10.2.0.9 and PowerMax version(s) prior to PowerMax 9.2.4.15, contain an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability,… | |
| Analizada | Alta (8.8) | 1.4% | — | Dell Powermax EEMDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 28/3/2024 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity. | |
| Analizada | Alta (8.8) | 1.4% | — | Dell Powermax EEMDell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual Appliance | 28/3/2024 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity. | |
| Modificada | Alta (7.5) | 0.76% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability. A remote attacker could potentially exploit this vulnerability leading to obtain sensitive information that may aid in further attacks. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Alta (7.2) | 1.7% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system. | |
| Modificada | Media (4.9) | 0.59% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manager, versions prior to 9.2.4.x contain an arbitrary file read vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability to read arbitrary files from the target system. | |
| Modificada | Alta (7.5) | 0.92% | — | Dell Solutions Enabler Virtual ApplianceDell Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 14/12/2023 | 17/6/2026 | Dell vApp Manger, versions prior to 9.2.4.x contain an arbitrary file read vulnerability. A remote attacker could potentially exploit this vulnerability to read arbitrary files from the target system. | |
| Modificada | Alta (7.4) | 0.29% | — | Dell EMC Unisphere FOR PowermaxDell EMC Unisphere FOR Powermax Virtual ApplianceDell Powermax OS | 17/3/2023 | 17/6/2026 | Dell EMC Unisphere for PowerMax versions before 9.1.0.27, Dell EMC Unisphere for PowerMax Virtual Appliance versions before 9.1.0.27, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a… |