Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3069▲ 549 respecto a la semana anterior
Críticas / altas1455▲ 270 respecto a la semana anterior
Nueva explotación activa (KEV)8▼ 2 respecto a la semana anterior
Sin puntuar (sin CVSS)383▲ 176 respecto a la semana anterior
–

38 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (4.3)0.17%—HPE OneviewAI29/9/202629/9/2026
A vulnerability in HPE OneView can be remotely exploited to cause a URL redirect.
Pendiente de análisisAlta (8.2)0.18%—HPE OneviewAI29/9/202629/9/2026
A security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions.
Pendiente de análisisAlta (8.2)0.24%—HPE OneviewAI29/9/202629/9/2026
A potential security vulnerability in HPE OneView can be exploited to allow remote session hijacking or other unauthorized actions.
AnalizadaCrítica (9.8)90%⚠ Explotación activaHPE Oneview16/12/202517/6/2026
A remote code execution issue exists in HPE OneView.
AplazadaAlta (8.7)0.30%—HPE Oneview FOR Vmware VcenterAI26/6/202517/6/2026
A potential security vulnerability has been identified in HPE OneView for VMware vCenter (OV4VC). This vulnerability could be exploited allowing an attacker with read only privilege to cause Vertical Privilege Escalation (operator can perform admin actions).
AnalizadaMedia (5.5)0.16%—HPE Oneview18/10/202417/6/2026
This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users.
ModificadaMedia (5.5)0.19%—HP Oneview23/1/202417/6/2026
HPE OneView may have a missing passphrase during restore.
ModificadaAlta (7.5)1.0%—HP Oneview23/1/202417/6/2026
HPE OneView may allow clusterService Authentication Bypass resulting in denial of service.
ModificadaAlta (7.8)0.69%—HP Oneview23/1/202417/6/2026
HPE OneView may allow command injection with local privilege escalation.
ModificadaCrítica (9.8)1.2%—HPE Oneview25/10/202317/6/2026
A remote code execution issue exists in HPE OneView.
ModificadaCrítica (9.8)1.5%—HP Oneview14/9/202317/6/2026
A remote authentication bypass issue exists in some OneView APIs.
ModificadaCrítica (9.8)1.4%—HP Oneview7/9/202317/6/2026
A remote authentication bypass issue exists in a OneView API.
ModificadaMedia (5.5)0.19%—HP OneviewHPE Oneview Global Dashboard25/4/202317/6/2026
HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens
ModificadaMedia (5.5)0.17%—HP Oneview25/4/202317/6/2026
An HPE OneView appliance dump may expose SNMPv3 read credentials
ModificadaAlta (7.1)0.17%—HP Oneview25/4/202317/6/2026
An HPE OneView appliance dump may expose FTP credentials for c7000 Interconnect Modules
ModificadaAlta (7.8)0.17%—HP Oneview25/4/202317/6/2026
An HPE OneView appliance dump may expose SAN switch administrative credentials
ModificadaMedia (5.5)0.17%—HP Oneview25/4/202317/6/2026
An HPE OneView appliance dump may expose OneView user accounts
ModificadaMedia (5.5)0.17%—HP Oneview25/4/202317/6/2026
An HPE OneView appliance dump may expose proxy credential settings
ModificadaMedia (5.5)0.19%—HP Oneview14/4/202317/6/2026
HPE OneView virtual appliance "Migrate server hardware" option may expose sensitive information in an HPE OneView support dump
ModificadaMedia (5.5)0.18%—HPE Oneview Global Dashboard14/4/202317/6/2026
An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials
ModificadaMedia (5.5)0.20%—HP Oneview FOR Vmware Vcenter1/3/202317/6/2026
HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password.
ModificadaMedia (6.1)0.38%—HPE Oneview Global Dashboard12/12/202217/6/2026
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Hewlett Packard Enterprise HPE OneView Global Dashboard (OVGD).
ModificadaMedia (5.5)0.21%—HP Oneview31/8/202217/6/2026
A local disclosure of sensitive information vulnerability was discovered in HPE OneView version(s): Prior to 7.0 or 6.60.01. A low privileged user could locally exploit this vulnerability to disclose sensitive information resulting in a complete loss of confidentiality, integrity, and availability. To exploit this…
ModificadaCrítica (9.8)1.4%—HP Oneview17/5/202217/6/2026
A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.
ModificadaCrítica (9.8)2.1%—HP Oneview17/5/202217/6/2026
A remote bypass security restrictions vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView.