Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▲ 10 respecto a la semana anterior
Críticas / altas1458▲ 322 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
14 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.36% | — | ABB Ability ZenonAI | 13/8/2025 | 17/6/2026 | Missing Authentication for Critical Function vulnerability in ABB ABB AbilityTM zenon.This issue affects ABB AbilityTM zenon: from 7.50 through 14. | |
| Aplazada | Media (6.4) | 0.30% | — | Zenon LiteAI | 18/7/2024 | 17/6/2026 | The Zenon Lite theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter within the theme's Button shortcode in all versions up to, and including, 1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level… | |
| Modificada | Alta (7.5) | 0.33% | — | ABB Zenon | 24/7/2023 | 17/6/2026 | A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects… | |
| Modificada | Media (5.4) | 0.30% | — | ABB Zenon | 24/7/2023 | 17/6/2026 | A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects… | |
| Modificada | Alta (8.1) | 0.31% | — | ABB Zenon | 24/7/2023 | 17/6/2026 | A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects… | |
| Modificada | Alta (8.8) | 0.37% | — | ABB Zenon | 24/7/2023 | 17/6/2026 | A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects… | |
| Modificada | Alta (8.4) | 0.15% | — | ABB Zenon | 24/8/2022 | 17/6/2026 | Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add or alter data points and corresponding attributes. Once such engineering data is used the data visualization will be altered for the end user. | |
| Modificada | Media (6.1) | 0.15% | — | ABB Zenon | 24/8/2022 | 17/6/2026 | Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add more network clients that may monitor various activities of the Zenon. | |
| Modificada | Alta (8.2) | 0.62% | — | ABB Zenon | 24/8/2022 | 17/6/2026 | Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user also can add own log messages and e.g., flood the log entries. An attacker who successfully exploit the vulnerability could access the Zenon runtime activities such as the start and stop of various… | |
| Modificada | Alta (7.8) | 0.34% | — | Copadata Zenon | 4/12/2019 | 17/6/2026 | COPA-DATA zenone32 zenon Editor through 8.10 has an Uncontrolled Search Path Element. | |
| Modificada | Media (4) | 0.34% | — | Copadata Zenon Dnp3 NG DriverCopadata Zenon Dnp3 Process Gateway | 5/6/2014 | 17/6/2026 | COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow physically proximate attackers to cause a denial of service (infinite loop and process crash) via crafted input over a serial line. | |
| Modificada | Alta (7.1) | 1.8% | — | Copadata Zenon Dnp3 NG DriverCopadata Zenon Dnp3 Process Gateway | 5/6/2014 | 17/6/2026 | COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow remote attackers to cause a denial of service (infinite loop and process crash) by sending a crafted DNP3 packet over TCP. | |
| Modificada | Alta (7.5) | 2.4% | — | Copadata Zenon | 10/2/2012 | 16/6/2026 | ZenSysSrv.exe in Ing. Punzenberger COPA-DATA zenon 6.51 SP0 allows remote attackers to cause a denial of service (service crash) or possibly execute arbitrary code via a series of connections and disconnections on TCP port 1101, aka Reference Number 25212. | |
| Modificada | Alta (7.5) | 2.9% | — | Copadata Zenon | 10/2/2012 | 16/6/2026 | zenAdminSrv.exe in Ing. Punzenberger COPA-DATA zenon 6.51 SP0 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted packet to TCP port 50777, aka Reference Number 25240. |