Skip to content
Toggle Navigation
ISO/IEC 27001
Introducción a ISO 27001
Requisitos Normativos
ISO 27001 – GAP Analysis (Tool)
Concientización
Todos el contenido
Ciberseguridad
Introducción a la ciberseguridad
Defensa de sistemas informáticos
Amenazas y tendencias
Eventos de ciberseguridad
Glosario
Todos los artículos
Vulnerabilidades CVE
Desarrollo seguro (SDLC)
Desarrollo de software seguro
Normativa y Leyes
Leyes de protección de datos
Agencias nacionales de ciberseguridad
Contacto
Vulnerabilidades CVE
Vulnerabilidades CVE
drmunozcl
2025-06-04T18:44:58-04:00
Vulnerabilidades CVE
A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:
Filtrar por severidad:
Todas
NONE
LOW
MEDIUM
HIGH
CRITICAL
UNKNOWN
Filtrar
CVE ID
Publicado
Severidad
CVSS
Descripción
CVE-2022-35769
2022-08-09
HIGH
7.5
Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability
CVE-2022-35768
2022-08-09
HIGH
7.8
Windows Kernel Elevation of Privilege Vulnerability
CVE-2022-35767
2022-08-09
HIGH
8.1
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2022-35766
2022-08-09
HIGH
8.1
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2022-35765
2022-08-09
HIGH
7.8
Storage Spaces Direct Elevation of Privilege Vulnerability
CVE-2022-35764
2022-08-09
HIGH
7.8
Storage Spaces Direct Elevation of Privilege Vulnerability
CVE-2022-35763
2022-08-09
HIGH
7.8
Storage Spaces Direct Elevation of Privilege Vulnerability
CVE-2022-35762
2022-08-09
HIGH
7.8
Storage Spaces Direct Elevation of Privilege Vulnerability
CVE-2022-35761
2022-08-09
HIGH
7.8
Windows Kernel Elevation of Privilege Vulnerability
CVE-2022-34716
2022-08-09
MEDIUM
5.9
.NET Spoofing Vulnerability
CVE-2024-5246
2024-05-23
HIGH
8.8
NETGEAR ProSAFE Network Management System Tomcat Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on…
CVE-2024-40505
2024-07-16
CRITICAL
9.3
Directory Traversal vulnerability in D-Link DAP-1650 Firmware v.1.03 allows a local attacker to escalate privileges via the hedwig.cgi component.
CVE-2025-29690
2025-05-14
MEDIUM
6.1
A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via…
CVE-2025-29689
2025-05-14
MEDIUM
6.1
A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via…
CVE-2025-29688
2025-05-14
MEDIUM
6.1
A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via…
CVE-2025-29686
2025-05-14
MEDIUM
6.1
A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via…
CVE-2025-29691
2025-05-14
MEDIUM
6.1
A cross-site scripting (XSS) vulnerability in OA System before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via…
CVE-2024-21084
2024-04-16
MEDIUM
5.8
Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Service Gateway). Supported versions that are affected are 7.0.0.0.0…
CVE-2024-21091
2024-04-16
MEDIUM
6.5
Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Data Import). The supported…
CVE-2024-21002
2024-04-16
LOW
2.5
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported versions that…
CVE-2025-45475
2025-05-27
MEDIUM
5.4
maccms10 v2025.1000.4047 is vulnerable to Server-Side request forgery (SSRF) in Friend Link Management.
CVE-2025-22377
2025-05-27
MEDIUM
6.5
An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200,…
CVE-2024-56193
2025-05-27
MEDIUM
5.1
There is a possible disclosure of Bluetooth adapter details due to a permissions bypass. This could lead to local information…
CVE-2024-49197
2025-05-27
MEDIUM
6.5
An issue was discovered in Wi-Fi in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380,…
CVE-2024-49196
2025-05-27
HIGH
7.5
An issue was discovered in the GPU in Samsung Mobile Processor Exynos 1480 and 2400. Type confusion leads to a…
CVE-2022-41238
2022-09-21
CRITICAL
9.8
A missing permission check in Jenkins DotCi Plugin 2.40.00 and earlier allows unauthenticated attackers to trigger builds of jobs corresponding…
CVE-2022-37347
2022-09-19
MEDIUM
5.5
Trend Micro Security 2021 and 2022 (Consumer) is vulnerable to an Out-Of-Bounds Read Information Disclosure Vulnerability that could allow an…
CVE-2022-35782
2022-08-09
MEDIUM
6.5
Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-35781
2022-08-09
MEDIUM
6.5
Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-35780
2022-08-09
MEDIUM
6.5
Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-35779
2022-08-09
HIGH
7.8
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
CVE-2022-35777
2022-08-09
HIGH
8.8
Visual Studio Remote Code Execution Vulnerability
CVE-2022-32839
2022-08-24
CRITICAL
9.8
The issue was addressed with improved bounds checks. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8,…
CVE-2022-32812
2022-08-24
HIGH
7.8
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8,…
CVE-2022-35776
2022-08-09
MEDIUM
6.2
Azure Site Recovery Denial of Service Vulnerability
CVE-2022-35775
2022-08-09
MEDIUM
6.5
Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-35774
2022-08-09
MEDIUM
4.9
Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-35773
2022-08-09
HIGH
7.8
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
CVE-2022-32811
2022-08-24
HIGH
7.8
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS Big Sur…
CVE-2022-23948
2022-09-21
HIGH
7.5
A flaw was found in Keylime before 6.3.0. The logic in the Keylime agent for checking for a secure mount…
CVE-2024-21004
2024-04-16
LOW
2.5
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported versions that…
CVE-2025-5278
2025-05-27
MEDIUM
4.4
A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The…
CVE-2025-39407
2025-05-19
HIGH
7.1
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Caseproof, LLC Memberpress allows Reflected XSS.This issue affects…
CVE-2024-2905
2024-04-25
MEDIUM
6.2
A security vulnerability has been discovered within rpm-ostree, pertaining to the /etc/shadow file in default builds having the world-readable bit…
CVE-2022-32857
2022-08-24
MEDIUM
4.3
This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in macOS Monterey…
CVE-2022-32840
2022-08-24
HIGH
7.8
This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5, watchOS 8.7, iOS 15.6 and…
CVE-2022-32838
2022-08-24
MEDIUM
5.5
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.5, macOS Big Sur…
CVE-2022-32837
2022-08-24
HIGH
7.8
This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5, tvOS 15.6, iOS 15.6 and…
CVE-2022-32834
2022-08-24
MEDIUM
5.5
An access issue was addressed with improvements to the sandbox. This issue is fixed in macOS Monterey 12.5, macOS Big…
CVE-2022-32813
2022-08-24
HIGH
7.8
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8,…
« Anterior
Página 340 de 3515
Siguiente »
Page load link
Go to Top