Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▲ 36 respecto a la semana anterior
Críticas / altas1474▲ 366 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 464 respecto a la semana anterior
20 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.37% | — | Microsoft PC Manager | 14/7/2026 | 21/7/2026 | Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.8) | 0.37% | — | Microsoft PC Manager | 14/7/2026 | 17/7/2026 | Improper link resolution before file access ('link following') in Window PC Manager allows an authorized attacker to elevate privileges locally. | |
| Aplazada | Media (6.4) | 0.16% | — | Tencent PC ManagerAI | 13/7/2026 | 15/7/2026 | A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown processing in the library qmudisk64.sys of the component QMUDisk Driver. The manipulation leads to uncontrolled search path. The attack must be carried out locally. The attack is considered to have high… | |
| Modificada | Alta (7.8) | 0.30% | — | Microsoft PC Manager | 9/6/2026 | 23/7/2026 | Missing authentication for critical function in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.8) | 0.37% | — | Microsoft PC Manager | 9/6/2026 | 23/7/2026 | Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.8) | 0.30% | — | Microsoft PC Manager | 9/6/2026 | 23/7/2026 | Improper access control in Microsoft PC Manager allows an authorized attacker to bypass a security feature locally. | |
| Aplazada | Alta (7.7) | 0.21% | — | Lenovo PC ManagerAILenovo APP StoreAILenovo BrowserAILenovo Legion ZoneAI | 12/11/2025 | 17/6/2026 | A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code. | |
| Analizada | Media (4) | 0.24% | — | Microsoft PC Manager | 16/9/2025 | 17/6/2026 | Cleartext storage of sensitive information in Microsoft PC Manager allows an unauthorized attacker to bypass a security feature locally. | |
| Analizada | Crítica (9.8) | 0.61% | — | Microsoft PC Manager | 21/8/2025 | 17/6/2026 | Improper authorization in Microsoft PC Manager allows an unauthorized attacker to elevate privileges over a network. | |
| Aplazada | Alta (8.4) | 0.16% | — | Lenovo Protection DriverAILenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 17/7/2025 | 17/6/2026 | A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code. | |
| Analizada | Alta (7.8) | 0.35% | — | Microsoft PC Manager | 8/7/2025 | 17/6/2026 | Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (8.8) | 0.42% | — | Honor PC Manager | 30/6/2025 | 17/6/2026 | Several services in Honor Device Co., Ltd Honor PC Manager v16.0.0.118 was discovered to connect services to the named pipe iMateBookAssistant with default or overly permissive security attributes, leading to a privilege escalation. | |
| Analizada | Alta (7.8) | 0.51% | — | Microsoft PC Manager | 13/5/2025 | 17/6/2026 | Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. | |
| Analizada | Alta (7.8) | 0.69% | — | Microsoft PC Manager | 11/2/2025 | 17/6/2026 | Microsoft PC Manager Elevation of Privilege Vulnerability | |
| Aplazada | Media (4.7) | 0.13% | — | Lenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 14/1/2025 | 17/6/2026 | A potential buffer overflow vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash. | |
| Aplazada | Media (4.7) | 0.12% | — | Lenovo PC ManagerAILenovo BrowserAILenovo APP StoreAI | 14/1/2025 | 17/6/2026 | A potential TOCTOU vulnerability was reported in PC Manager, Lenovo Browser, and Lenovo App Store that could allow a local attacker to cause a system crash. | |
| Analizada | Alta (7.8) | 0.63% | — | Microsoft PC Manager | 12/11/2024 | 17/6/2026 | Microsoft PC Manager Elevation of Privilege Vulnerability | |
| Aplazada | Alta (7.8) | 0.18% | — | Lenovo PC ManagerAI | 11/10/2024 | 17/6/2026 | A DLL hijack vulnerability was reported in Lenovo PC Manager AI intelligent scenario that could allow a local attacker to execute code with elevated privileges. | |
| Modificada | Media (5.5) | 0.15% | — | Samsung Gear Iconx PC Manager | 8/12/2022 | 17/6/2026 | Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers to create arbitrary file using symbolic link. | |
| Modificada | Alta (7.8) | 0.25% | — | Samsung Gear Iconx PC Manager | 3/5/2022 | 17/6/2026 | DLL hijacking vulnerability in Gear IconX PC Manager prior to version 2.1.220405.51 allows attacker to execute arbitrary code. The patch adds proper absolute path to prevent dll hijacking. |