Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2640▼ 268 respecto a la semana anterior
Críticas / altas1348▲ 90 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 468 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 1.8% | — | Dell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management CenterDell EMC Data Domain OS+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A remote high privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying… | |
| Modificada | Media (6.1) | 0.76% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a DOM-based Cross-Site Scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the injection of malicious HTML or JavaScript code to a victim user's DOM… | |
| Modificada | Alta (7.8) | 0.22% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an improper access control vulnerability. A local malicious user with low privileges could potentially exploit this vulnerability leading to escalation of privilege. | |
| Modificada | Media (4.3) | 0.57% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an SQL Injection vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized… | |
| Modificada | Media (6.7) | 0.62% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A local high privileged attacker could potentially exploit this vulnerability, to bypass security restrictions. Exploitation may lead to a system take over by… | |
| Modificada | Media (6.7) | 0.29% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a path traversal vulnerability. A local high privileged attacker could potentially exploit this vulnerability, to gain unauthorized read and write access to the OS files stored on the server filesystem, with the… | |
| Modificada | Alta (7.8) | 0.60% | — | Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+1 | 14/12/2023 | 17/6/2026 | Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in the CLI. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with… | |
| Modificada | Media (6.7) | 0.22% | — | Dell EMC Avamar ServerDell EMC Powerprotect Data Protection Appliance | 21/12/2021 | 17/6/2026 | Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application… |