Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2541▼ 354 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
173 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (4) | 0.10% | — | Intel Xeon Bronze 3408u FirmwareIntel Xeon Gold 5403n FirmwareIntel Xeon Gold 5411n FirmwareIntel Xeon Gold 5412u Firmware+137 | 11/8/2026 | 28/8/2026 | Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are… | |
| Analizada | Alta (8.5) | 0.12% | — | Intel Xeon 6315p FirmwareIntel Xeon 6325p FirmwareIntel Xeon 6333p FirmwareIntel Xeon 6337p Firmware+171 | 11/8/2026 | 31/8/2026 | Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) processors may allow an escalation of privilege. Startup code and SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur… | |
| Analizada | Alta (7.2) | 0.09% | — | Intel Xeon 634 FirmwareIntel Xeon 636 FirmwareIntel Xeon 638 FirmwareIntel Xeon 654 Firmware+86 | 11/8/2026 | 31/8/2026 | Improper access control for some Intel(R) Processors within Ring 3: User Applications may allow an escalation of privilege. Simple hardware adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack… | |
| En análisis | Media (4.5) | 0.10% | — | Intel Xeon ProcessorAI | 11/8/2026 | 12/8/2026 | Always-incorrect control flow implementation in some firmware for some Intel(R) Xeon(R) processors may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when… | |
| En análisis | Media (6.8) | 0.08% | — | Intel Xeon Scalable ProcessorsAI | 11/8/2026 | 12/8/2026 | Hardware logic contains race conditions for some 3rd Gen Intel(R) Xeon(R) Scalable Processors within Ring 3: unprivileged software may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially… | |
| Pendiente de análisis | Media (4.3) | 0.09% | — | Intel Xeon 6 Scalable ProcessorsAIIntel TDXAI | 11/8/2026 | 29/9/2026 | Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an information disclosure. Authorized adversary with an authenticated user combined with a high complexity attack may enable data exposure. This result may potentially occur via… | |
| Analizada | Alta (7) | 0.10% | — | Intel Xeon 6337p FirmwareIntel Xeon 6349p FirmwareIntel Xeon 6353p FirmwareIntel Xeon 6357p Firmware+69 | 11/8/2026 | 29/9/2026 | Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) TDX within SMM may allow an escalation of privilege. SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur… | |
| Analizada | Media (4.6) | 0.20% | — | Pixeon Weblaudos | 19/11/2025 | 17/6/2026 | A reflected cross-site scripting (XSS) vulnerability exists in the password change functionality of Pixeon WebLaudos 25.1 (01). The sle_sSenha parameter to the loginAlterarSenha.asp file. An attacker can craft a malicious URL that, when visited by a victim, causes arbitrary JavaScript code to be executed in the… | |
| Aplazada | Alta (7.5) | 0.35% | — | ABB FlxeonAI | 18/9/2025 | 17/6/2026 | Improper Validation of Specified Type of Input vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5. | |
| Aplazada | Alta (7.5) | 0.54% | — | ABB FlxeonAI | 18/9/2025 | 17/6/2026 | Improper Validation of Specified Type of Input vulnerability in ABB FLXEON.A remote code execution is possible due to an improper input validation. This issue affects FLXEON: through 9.3.5. | |
| Aplazada | Alta (7.3) | 0.17% | — | ABB FlxeonAI | 17/9/2025 | 17/6/2026 | Use of Hard-coded Credentials vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5 and newer versions | |
| Aplazada | Alta (8.7) | 0.22% | — | ABB FlxeonAI | 17/9/2025 | 25/9/2026 | Use of a One-Way Hash with a Predictable Salt vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5. and newer versions | |
| Aplazada | Media (4.5) | 0.14% | — | Intel Xeon 6 ProcessorsAIIntel SGXAIIntel TDXAI | 12/8/2025 | 17/6/2026 | Improperly implemented security check for standard in the DDRIO configuration for some Intel(R) Xeon(R) 6 Processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (4.5) | 0.14% | — | Intel Xeon 6AIIntel SGXAIIntel TDXAI | 12/8/2025 | 17/6/2026 | Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (7) | 0.14% | — | Intel Xeon ProcessorsAI | 12/8/2025 | 17/6/2026 | Insufficient control flow management in the Alias Checking Trusted Module (ACTM) firmware for some Intel(R) Xeon(R) processors may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (7) | 0.15% | — | Intel Xeon 6AIIntel TDXAI | 12/8/2025 | 17/6/2026 | Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processor with Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.3) | 0.14% | — | Intel Xeon 6 ScalableAI | 12/8/2025 | 17/6/2026 | Sequence of processor instructions leads to unexpected behavior for some Intel(R) Xeon(R) 6 Scalable processors may allow an authenticated user to potentially enable escalation of privilege via local access | |
| Aplazada | Alta (7.3) | 0.18% | — | Intel Xeon 6 ScalableAI | 12/8/2025 | 17/6/2026 | Insufficient granularity of access control in the OOB-MSM for some Intel(R) Xeon(R) 6 Scalable processors may allow a privileged user to potentially enable escalation of privilege via adjacent access. | |
| Aplazada | Media (4.1) | 0.15% | — | Intel XeonAI | 12/8/2025 | 17/6/2026 | Missing reference to active allocated resource for some Intel(R) Xeon(R) processors may allow an authenticated user to potentially enable denial of service via local access. | |
| Aplazada | Alta (7) | 0.15% | — | Intel Xeon Processor FirmwareAI | 12/8/2025 | 17/6/2026 | Improper buffer restrictions for some Intel(R) Xeon(R) Processor firmware with SGX enabled may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Analizada | Alta (7.5) | 1.1% | — | Pixeon Weblaudos | 2/6/2025 | 17/6/2026 | Directory Traversal vulnerability in WebLaudos 24.2 (04) allows a remote attacker to obtain sensitive information via the id parameter. | |
| Aplazada | Alta (8.7) | 0.14% | — | Intel Xeon 6AI | 13/5/2025 | 17/6/2026 | Improper access control in the memory controller configurations for some Intel(R) Xeon(R) 6 processor with E-cores may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.5) | 0.15% | — | Intel Xeon 6 Processor E-cores FirmwareAI | 13/5/2025 | 17/6/2026 | Insufficient control flow management in the Alias Checking Trusted Module for some Intel(R) Xeon(R) 6 processor E-Cores firmware may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Media (5.7) | 0.14% | — | Intel Xeon 6 Processor With E-coresAIIntel Trust Domain ExtensionsAIIntel Software Guard ExtensionsAI | 13/5/2025 | 17/6/2026 | Improper restriction of software interfaces to hardware features for some Intel(R) Xeon(R) 6 processor with E-cores when using Intel(R) Trust Domain Extensions (Intel(R) TDX) or Intel(R) Software Guard Extensions (Intel(R) SGX) may allow a privileged user to potentially enable escalation of privilege via local access. | |
| Aplazada | Alta (8.8) | 0.92% | — | FlxeonAI | 29/1/2025 | 17/6/2026 | Missing Origin Validation in WebSockets vulnerability in FLXEON. Session management was not sufficient to prevent unauthorized HTTPS requests. This issue affects FLXEON: through <= 9.3.4. |