Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2640▼ 268 respecto a la semana anterior
Críticas / altas1348▲ 90 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 468 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)1.8%—Dell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management CenterDell EMC Data Domain OS+114/12/202317/6/2026
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A remote high privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying…
ModificadaMedia (6.1)0.76%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a DOM-based Cross-Site Scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the injection of malicious HTML or JavaScript code to a victim user's DOM…
ModificadaAlta (7.8)0.22%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an improper access control vulnerability. A local malicious user with low privileges could potentially exploit this vulnerability leading to escalation of privilege.
ModificadaMedia (4.3)0.57%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an SQL Injection vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized…
ModificadaMedia (6.7)0.62%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A local high privileged attacker could potentially exploit this vulnerability, to bypass security restrictions. Exploitation may lead to a system take over by…
ModificadaMedia (6.7)0.29%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a path traversal vulnerability. A local high privileged attacker could potentially exploit this vulnerability, to gain unauthorized read and write access to the OS files stored on the server filesystem, with the…
ModificadaAlta (7.8)0.60%—Dell Powerprotect Data ProtectionDell Apex Protection StorageDell Powerprotect Data DomainDell Powerprotect Data Domain Management Center+114/12/202317/6/2026
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in the CLI. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with…
ModificadaMedia (6.7)0.22%—Dell EMC Avamar ServerDell EMC Powerprotect Data Protection Appliance21/12/202117/6/2026
Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application…