Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3081▲ 625 respecto a la semana anterior
Críticas / altas1483▲ 317 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
34 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.7) | 0.22% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper access control in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Media (5.7) | 0.22% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Media (5.7) | 0.23% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information disclosure via adjacent access. | |
| Analizada | Alta (7.8) | 0.13% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Alta (7.8) | 0.14% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Analizada | Media (5.5) | 0.15% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via local access. | |
| Analizada | Media (5.7) | 0.23% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via adjacent access. | |
| Analizada | Media (5.5) | 0.13% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | NULL pointer dereference in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via local access. | |
| Analizada | Media (5.5) | 0.15% | — | Intel Raid WEB Console | 16/9/2024 | 17/6/2026 | Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable information disclosure via local access. | |
| Modificada | Alta (7.5) | 0.72% | — | Doverfuelingsolutions Maglink LX WEB Console Configuration | 11/9/2023 | 17/6/2026 | Dover Fueling Solutions MAGLINK LX Web Console Configuration versions 2.5.1, 2.5.2, 2.5.3, 2.6.1, 2.11, 3.0, 3.2, and 3.3 vulnerable to a path traversal attack, which could allow an attacker to access files stored on the system. | |
| Modificada | Alta (8.8) | 0.65% | — | Doverfuelingsolutions Maglink LX WEB Console Configuration | 11/9/2023 | 17/6/2026 | Dover Fueling Solutions MAGLINK LX Web Console Configuration versions 2.5.1, 2.5.2, 2.5.3, 2.6.1, 2.11, 3.0, 3.2, and 3.3 could allow a guest user to elevate to admin privileges. | |
| Modificada | Crítica (9.1) | 0.93% | — | Doverfuelingsolutions Maglink LX WEB Console Configuration | 11/9/2023 | 17/6/2026 | Dover Fueling Solutions MAGLINK LX Web Console Configuration versions 2.5.1, 2.5.2, 2.5.3, 2.6.1, 2.11, 3.0, 3.2, and 3.3 are vulnerable to authentication bypass that could allow an unauthorized attacker to obtain user access. | |
| Modificada | Crítica (9.8) | 22% | — | Nokia BTS TRS WEB Console | 11/2/2022 | 17/6/2026 | Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character. | |
| Modificada | Alta (7.8) | 0.43% | — | Kaspersky Security CenterKaspersky Security Center WEB Console | 2/9/2020 | 17/6/2026 | Installers of Kaspersky Security Center and Kaspersky Security Center Web Console prior to 12 & prior to 12 Patch A were vulnerable to a DLL hijacking attack that allowed an attacker to elevate privileges in the system. | |
| Modificada | Alta (7.5) | 1.5% | — | Intel Raid WEB Console 3 | 13/8/2020 | 17/6/2026 | Improper input validation in the Intel(R) RAID Web Console 3 for Windows* may allow an unauthenticated user to potentially enable denial of service via network access. | |
| Modificada | Alta (7.8) | 0.29% | — | Intel Raid WEB Console 3 | 13/2/2020 | 17/6/2026 | Improper permissions in the installer for Intel(R) RWC3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.29% | — | Intel Raid WEB Console 2 | 13/2/2020 | 17/6/2026 | Improper permissions in the installer for Intel(R) RWC2, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.8) | 0.29% | — | Intel Raid WEB Console 3 | 17/1/2020 | 17/6/2026 | Improper permissions in the installer for Intel(R) RWC 3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
| Modificada | Alta (7.6) | 0.79% | — | Intel Raid WEB Console 2 | 19/8/2019 | 17/6/2026 | Authentication bypass in the web console for Intel(R) Raid Web Console 2 all versions may allow an unauthenticated attacker to potentially enable disclosure of information via network access. | |
| Modificada | Crítica (9.8) | 2.0% | — | Intel Raid WEB Console 3 | 13/6/2019 | 17/6/2026 | Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potentially enable escalation of privilege via network access. | |
| Modificada | Media (6.1) | 0.99% | — | Intel Raid WEB Console 3 | 14/11/2018 | 17/6/2026 | Cross-site scripting in the Intel RAID Web Console v3 for Windows may allow an unauthenticated user to elevate privilege via remote access. | |
| Modificada | Media (5.5) | 0.36% | — | Intel Raid WEB Console 3 | 14/11/2018 | 17/6/2026 | Authentication bypass in the Intel RAID Web Console 3 for Windows before 4.186 may allow an unprivileged user to potentially gain administrative privileges via local access. | |
| Modificada | Media (6.5) | 1.1% | — | Intel Raid WEB Console | 10/10/2018 | 17/6/2026 | Insufficient session validation in the webserver component of the Intel Rapid Web Server 3 may allow an unauthenticated user to potentially disclose information via network access. | |
| Modificada | Crítica (9.8) | 2.8% | — | Moxa Device Server WEB Console 5232-n Firmware | 12/7/2016 | 17/6/2026 | Moxa Device Server Web Console 5232-N allows remote attackers to bypass authentication, and consequently modify settings and data, via vectors related to reading a cookie parameter containing a UserId value. | |
| Modificada | Media (4.3) | 45% | — | Rubyonrails WEB Console | 26/7/2015 | 17/6/2026 | request.rb in Web Console before 2.1.3, as used with Ruby on Rails 3.x and 4.x, does not properly restrict the use of X-Forwarded-For headers in determining a client's IP address, which allows remote attackers to bypass the whitelisted_ips protection mechanism via a crafted request. |