Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2541▼ 354 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

173 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (4)0.10%—Intel Xeon Bronze 3408u FirmwareIntel Xeon Gold 5403n FirmwareIntel Xeon Gold 5411n FirmwareIntel Xeon Gold 5412u Firmware+13711/8/202628/8/2026
Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are…
AnalizadaAlta (8.5)0.12%—Intel Xeon 6315p FirmwareIntel Xeon 6325p FirmwareIntel Xeon 6333p FirmwareIntel Xeon 6337p Firmware+17111/8/202631/8/2026
Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) processors may allow an escalation of privilege. Startup code and SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur…
AnalizadaAlta (7.2)0.09%—Intel Xeon 634 FirmwareIntel Xeon 636 FirmwareIntel Xeon 638 FirmwareIntel Xeon 654 Firmware+8611/8/202631/8/2026
Improper access control for some Intel(R) Processors within Ring 3: User Applications may allow an escalation of privilege. Simple hardware adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack…
En análisisMedia (4.5)0.10%—Intel Xeon ProcessorAI11/8/202612/8/2026
Always-incorrect control flow implementation in some firmware for some Intel(R) Xeon(R) processors may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when…
En análisisMedia (6.8)0.08%—Intel Xeon Scalable ProcessorsAI11/8/202612/8/2026
Hardware logic contains race conditions for some 3rd Gen Intel(R) Xeon(R) Scalable Processors within Ring 3: unprivileged software may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially…
Pendiente de análisisMedia (4.3)0.09%—Intel Xeon 6 Scalable ProcessorsAIIntel TDXAI11/8/202629/9/2026
Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an information disclosure. Authorized adversary with an authenticated user combined with a high complexity attack may enable data exposure. This result may potentially occur via…
AnalizadaAlta (7)0.10%—Intel Xeon 6337p FirmwareIntel Xeon 6349p FirmwareIntel Xeon 6353p FirmwareIntel Xeon 6357p Firmware+6911/8/202629/9/2026
Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) TDX within SMM may allow an escalation of privilege. SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur…
AnalizadaMedia (4.6)0.20%—Pixeon Weblaudos19/11/202517/6/2026
A reflected cross-site scripting (XSS) vulnerability exists in the password change functionality of Pixeon WebLaudos 25.1 (01). The sle_sSenha parameter to the loginAlterarSenha.asp file. An attacker can craft a malicious URL that, when visited by a victim, causes arbitrary JavaScript code to be executed in the…
AplazadaAlta (7.5)0.35%—ABB FlxeonAI18/9/202517/6/2026
Improper Validation of Specified Type of Input vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5.
AplazadaAlta (7.5)0.54%—ABB FlxeonAI18/9/202517/6/2026
Improper Validation of Specified Type of Input vulnerability in ABB FLXEON.A remote code execution is possible due to an improper input validation. This issue affects FLXEON: through 9.3.5.
AplazadaAlta (7.3)0.17%—ABB FlxeonAI17/9/202517/6/2026
Use of Hard-coded Credentials vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5 and newer versions
AplazadaAlta (8.7)0.22%—ABB FlxeonAI17/9/202525/9/2026
Use of a One-Way Hash with a Predictable Salt vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5. and newer versions
AplazadaMedia (4.5)0.14%—Intel Xeon 6 ProcessorsAIIntel SGXAIIntel TDXAI12/8/202517/6/2026
Improperly implemented security check for standard in the DDRIO configuration for some Intel(R) Xeon(R) 6 Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaMedia (4.5)0.14%—Intel Xeon 6AIIntel SGXAIIntel TDXAI12/8/202517/6/2026
Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaAlta (7)0.14%—Intel Xeon ProcessorsAI12/8/202517/6/2026
Insufficient control flow management in the Alias Checking Trusted Module (ACTM) firmware for some Intel(R) Xeon(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaAlta (7)0.15%—Intel Xeon 6AIIntel TDXAI12/8/202517/6/2026
Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processor with Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaMedia (5.3)0.14%—Intel Xeon 6 ScalableAI12/8/202517/6/2026
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Xeon(R) 6 Scalable processors may allow an authenticated user to potentially enable escalation of privilege via local access
AplazadaAlta (7.3)0.18%—Intel Xeon 6 ScalableAI12/8/202517/6/2026
Insufficient granularity of access control in the OOB-MSM for some Intel(R) Xeon(R) 6 Scalable processors may allow a privileged user to potentially enable escalation of privilege via adjacent access.
AplazadaMedia (4.1)0.15%—Intel XeonAI12/8/202517/6/2026
Missing reference to active allocated resource for some Intel(R) Xeon(R) processors may allow an authenticated user to potentially enable denial of service via local access.
AplazadaAlta (7)0.15%—Intel Xeon Processor FirmwareAI12/8/202517/6/2026
Improper buffer restrictions for some Intel(R) Xeon(R) Processor firmware with SGX enabled may allow a privileged user to potentially enable escalation of privilege via local access.
AnalizadaAlta (7.5)1.1%—Pixeon Weblaudos2/6/202517/6/2026
Directory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter.
AplazadaAlta (8.7)0.14%—Intel Xeon 6AI13/5/202517/6/2026
Improper access control in the memory controller configurations for some Intel(R) Xeon(R) 6 processor with E-cores may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaAlta (8.5)0.15%—Intel Xeon 6 Processor E-cores FirmwareAI13/5/202517/6/2026
Insufficient control flow management in the Alias Checking Trusted Module for some Intel(R) Xeon(R) 6 processor E-Cores firmware may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaMedia (5.7)0.14%—Intel Xeon 6 Processor With E-coresAIIntel Trust Domain ExtensionsAIIntel Software Guard ExtensionsAI13/5/202517/6/2026
Improper restriction of software interfaces to hardware features for some Intel(R) Xeon(R) 6 processor with E-cores when using Intel(R) Trust Domain Extensions (Intel(R) TDX) or Intel(R) Software Guard Extensions (Intel(R) SGX) may allow a privileged user to potentially enable escalation of privilege via local access.
AplazadaAlta (8.8)0.92%—FlxeonAI29/1/202517/6/2026
Missing Origin Validation in WebSockets vulnerability in FLXEON. Session management was not sufficient to prevent unauthorized HTTPS requests. This issue affects FLXEON: through <= 9.3.4.