Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2565▼ 302 respecto a la semana anterior
Críticas / altas1351▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (4.5) | 0.34% | — | QT VNC ServerAI | 24/9/2026 | 24/9/2026 | Authentication bypass vulnerability in the password authentication mechanism of the Qt VNC Server module. An attacker using a specially modified VNC client that violates the RFB protocol can bypass Qt VNC Server's password authentication and gain unauthorized remote access to the shared application, compromising the… | |
| Aplazada | Crítica (9.3) | 0.73% | — | Cs5000 Fire PanelAIVNC ServerAI | 30/5/2025 | 17/6/2026 | The CS5000 Fire Panel is vulnerable due to a hard-coded password that runs on a VNC server and is visible as a string in the binary responsible for running VNC. This password cannot be altered, allowing anyone with knowledge of it to gain remote access to the panel. Such access could enable an attacker to operate the… | |
| Aplazada | Crítica (9.1) | 2.1% | — | Tightvnc Server FOR WindowsAI | 28/7/2024 | 17/6/2026 | TightVNC (Server for Windows) before 2.8.84 allows attackers to connect to the control pipe via a network connection. | |
| Modificada | Alta (7.8) | 0.18% | — | Realvnc VNC ServerRealvnc VNC Viewer | 30/9/2022 | 17/6/2026 | RealVNC VNC Server before 6.11.0 and VNC Viewer before 6.22.826 on Windows allow local privilege escalation via MSI installer Repair mode. | |
| Modificada | Alta (7.8) | 0.66% | — | Realvnc VNC Server | 10/6/2022 | 17/6/2026 | RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM. | |
| Modificada | Media (4.6) | 0.40% | — | ATT Winvnc ServerTightvncTridiavnc | 24/9/2002 | 16/6/2026 | Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" dialogue box. |