Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3069▲ 549 respecto a la semana anterior
Críticas / altas1455▲ 270 respecto a la semana anterior
Nueva explotación activa (KEV)8▼ 2 respecto a la semana anterior
Sin puntuar (sin CVSS)383▲ 176 respecto a la semana anterior
38 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (4.3) | 0.17% | — | HPE OneviewAI | 29/9/2026 | 29/9/2026 | A vulnerability in HPE OneView can be remotely exploited to cause a URL redirect. | |
| Pendiente de análisis | Alta (8.2) | 0.18% | — | HPE OneviewAI | 29/9/2026 | 29/9/2026 | A security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions. | |
| Pendiente de análisis | Alta (8.2) | 0.24% | — | HPE OneviewAI | 29/9/2026 | 29/9/2026 | A potential security vulnerability in HPE OneView can be exploited to allow remote session hijacking or other unauthorized actions. | |
| Analizada | Crítica (9.8) | 90% | ⚠ Explotación activa | HPE Oneview | 16/12/2025 | 17/6/2026 | A remote code execution issue exists in HPE OneView. | |
| Aplazada | Alta (8.7) | 0.30% | — | HPE Oneview FOR Vmware VcenterAI | 26/6/2025 | 17/6/2026 | A potential security vulnerability has been identified in HPE OneView for VMware vCenter (OV4VC). This vulnerability could be exploited allowing an attacker with read only privilege to cause Vertical Privilege Escalation (operator can perform admin actions). | |
| Analizada | Media (5.5) | 0.16% | — | HPE Oneview | 18/10/2024 | 17/6/2026 | This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users. | |
| Modificada | Media (5.5) | 0.19% | — | HP Oneview | 23/1/2024 | 17/6/2026 | HPE OneView may have a missing passphrase during restore. | |
| Modificada | Alta (7.5) | 1.0% | — | HP Oneview | 23/1/2024 | 17/6/2026 | HPE OneView may allow clusterService Authentication Bypass resulting in denial of service. | |
| Modificada | Alta (7.8) | 0.69% | — | HP Oneview | 23/1/2024 | 17/6/2026 | HPE OneView may allow command injection with local privilege escalation. | |
| Modificada | Crítica (9.8) | 1.2% | — | HPE Oneview | 25/10/2023 | 17/6/2026 | A remote code execution issue exists in HPE OneView. | |
| Modificada | Crítica (9.8) | 1.5% | — | HP Oneview | 14/9/2023 | 17/6/2026 | A remote authentication bypass issue exists in some OneView APIs. | |
| Modificada | Crítica (9.8) | 1.4% | — | HP Oneview | 7/9/2023 | 17/6/2026 | A remote authentication bypass issue exists in a OneView API. | |
| Modificada | Media (5.5) | 0.19% | — | HP OneviewHPE Oneview Global Dashboard | 25/4/2023 | 17/6/2026 | HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens | |
| Modificada | Media (5.5) | 0.17% | — | HP Oneview | 25/4/2023 | 17/6/2026 | An HPE OneView appliance dump may expose SNMPv3 read credentials | |
| Modificada | Alta (7.1) | 0.17% | — | HP Oneview | 25/4/2023 | 17/6/2026 | An HPE OneView appliance dump may expose FTP credentials for c7000 Interconnect Modules | |
| Modificada | Alta (7.8) | 0.17% | — | HP Oneview | 25/4/2023 | 17/6/2026 | An HPE OneView appliance dump may expose SAN switch administrative credentials | |
| Modificada | Media (5.5) | 0.17% | — | HP Oneview | 25/4/2023 | 17/6/2026 | An HPE OneView appliance dump may expose OneView user accounts | |
| Modificada | Media (5.5) | 0.17% | — | HP Oneview | 25/4/2023 | 17/6/2026 | An HPE OneView appliance dump may expose proxy credential settings | |
| Modificada | Media (5.5) | 0.19% | — | HP Oneview | 14/4/2023 | 17/6/2026 | HPE OneView virtual appliance "Migrate server hardware" option may expose sensitive information in an HPE OneView support dump | |
| Modificada | Media (5.5) | 0.18% | — | HPE Oneview Global Dashboard | 14/4/2023 | 17/6/2026 | An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials | |
| Modificada | Media (5.5) | 0.20% | — | HP Oneview FOR Vmware Vcenter | 1/3/2023 | 17/6/2026 | HPE OneView for VMware vCenter, in certain circumstances, may disclose the “HPE OneView” Username and Password. | |
| Modificada | Media (6.1) | 0.38% | — | HPE Oneview Global Dashboard | 12/12/2022 | 17/6/2026 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Hewlett Packard Enterprise HPE OneView Global Dashboard (OVGD). | |
| Modificada | Media (5.5) | 0.21% | — | HP Oneview | 31/8/2022 | 17/6/2026 | A local disclosure of sensitive information vulnerability was discovered in HPE OneView version(s): Prior to 7.0 or 6.60.01. A low privileged user could locally exploit this vulnerability to disclose sensitive information resulting in a complete loss of confidentiality, integrity, and availability. To exploit this… | |
| Modificada | Crítica (9.8) | 1.4% | — | HP Oneview | 17/5/2022 | 17/6/2026 | A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView. | |
| Modificada | Crítica (9.8) | 2.1% | — | HP Oneview | 17/5/2022 | 17/6/2026 | A remote bypass security restrictions vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provided a software update to resolve this vulnerability in HPE OneView. |