Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
13 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 0.76% | — | Hcltech Workload Automation | 26/4/2023 | 17/6/2026 | HCL Workload Automation is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. | |
| Modificada | Alta (8.1) | 0.82% | — | Hcltech Workload Automation | 26/4/2023 | 17/6/2026 | HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. | |
| Modificada | Alta (7.1) | 0.18% | — | Hcltechsw HCL Workload Automation | 12/12/2022 | 17/6/2026 | HCL Workload Automation could allow a local user to overwrite key system files which would cause the system to crash. | |
| Modificada | Media (4.3) | 0.81% | — | IBM Workload Automation | 12/1/2021 | 17/6/2026 | IBM Workload Automation 9.5 stores the server path in URLs that could aid in further attacks against the system. IBM X-Force ID: 186287. | |
| Modificada | Media (4.3) | 0.81% | — | IBM Workload Automation | 12/1/2021 | 17/6/2026 | IBM Workload Automation 9.5 stores sensitive information in HTML comments that could aid in further attacks against the system. IBM X-Force ID: 186286. | |
| Modificada | Crítica (9.8) | 5.8% | — | Broadcom CA Client AutomationBroadcom CA Workload Automation AE | 6/9/2019 | 17/6/2026 | An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote attacker to execute arbitrary code. | |
| Modificada | Alta (7.8) | 0.75% | — | Dillonkane Tidal Workload Automation | 26/4/2019 | 17/6/2026 | An issue was discovered in Dillon Kane Tidal Workload Automation Agent 3.2.0.5 (formerly known as Cisco Workload Automation or CWA). The Enterprise Scheduler for AIX allows local users to gain privileges via Command Injection in crafted Tidal Job Buffers (TJB) parameters. NOTE: this vulnerability exists because the… | |
| Modificada | Media (6.1) | 2.0% | — | Broadcom Automic Workload Automation | 6/2/2019 | 17/6/2026 | Insufficient output sanitization in the Automic Web Interface (AWI), in CA Automic Workload Automation 12.0 to 12.2, allow attackers to potentially conduct persistent cross site scripting (XSS) attacks via a crafted object. | |
| Modificada | Alta (8.8) | 2.7% | — | CA Workload Automation AE | 11/4/2018 | 17/6/2026 | CA Workload Automation AE before r11.3.6 SP7 allows remote attackers to a perform SQL injection via a crafted HTTP request. | |
| Modificada | Alta (7.8) | 0.54% | — | Broadcom CA Workload Automation AEBroadcom Client AutomationBroadcom SystemedgeBroadcom Systems Performance FOR Infrastructure Managers+2 | 27/1/2017 | 17/6/2026 | The casrvc program in CA Common Services, as used in CA Client Automation 12.8, 12.9, and 14.0; CA SystemEDGE 5.8.2 and 5.9; CA Systems Performance for Infrastructure Managers 12.8 and 12.9; CA Universal Job Management Agent 11.2; CA Virtual Assurance for Infrastructure Managers 12.8 and 12.9; CA Workload Automation… | |
| Modificada | Media (4.6) | 0.37% | — | CA Client AutomationCA Network AND Systems ManagementCA NSM JOB Management OptionCA Universal JOB Management Agent+2 | 17/6/2015 | 17/6/2026 | CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infrastructure Managers (aka SystemEDGE) 12.6, 12.7, 12.8, and… | |
| Modificada | Media (4.6) | 0.37% | — | CA Client AutomationCA Network AND Systems ManagementCA NSM JOB Management OptionCA Universal JOB Management Agent+2 | 17/6/2015 | 17/6/2026 | CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infrastructure Managers (aka SystemEDGE) 12.6, 12.7, 12.8, and… | |
| Modificada | Media (4.6) | 0.46% | — | Broadcom Network AND Systems ManagementCA Client AutomationCA Network AND Systems ManagementCA NSM JOB Management Option+3 | 17/6/2015 | 17/6/2026 | CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infrastructure Managers (aka SystemEDGE) 12.6, 12.7, 12.8, and… |