Base de datos CVE
Archivo de vulnerabilidades conocidas (CVE) con puntuación CVSS, gravedad, productos y fabricantes afectados. Filtra por año y severidad.
- CVE-2026-21385Alta7.8
Memory corruption while using alignments for memory allocation.
- CVE-2026-22719Alta8.1
VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this issue to execute arbitrary commands which may lead to remote code execution in VMware Aria Operations while support-assisted product migration is in progress. To remediate CVE-2026-22719, apply the patches listed in the 'Fixed Version' column of the ' Response Matrix https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947 ' in VMSA-2026-0001 Workarounds for CVE-2026-22719 are documented in the 'Workarounds' column of the ' Response Matrix https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947 ' in VMSA-2026-0001
- CVE-2026-20133Media6.5
A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. This vulnerability is due to insufficient file system restrictions. An authenticated attacker with netadmin privileges could exploit this vulnerability by accessing the vshell of an affected system. A successful exploit could allow the attacker to read sensitive information on the underlying operating system.
- CVE-2026-20128Alta7.5
A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affected system. This vulnerability is due to the presence of a credential file for the DCA user on an affected system. An attacker could exploit this vulnerability by sending a crafted HTTP request and reading the file that contains the DCA password from that affected system. A successful exploit could allow the attacker to access another affected system and gain DCA user privileges. Note: Cisco Catalyst SD-WAN Manager releases 20.18 and later are not affected by this vulnerability.
- CVE-2026-20127Crítica10.0
A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to an affected system. A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-root user account. Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.
- CVE-2026-20122Media5.4
A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local file system. To exploit this vulnerability, the attacker must have valid read-only credentials with API access on the affected system. This vulnerability is due to improper file handling on the API interface of an affected system. An attacker could exploit this vulnerability by uploading a malicious file on the local file system. A successful exploit could allow the attacker to overwrite arbitrary files on the affected system and gain vmanage user privileges.
- CVE-2026-22769Crítica10.0
Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability. This is considered critical as an unauthenticated remote attacker with knowledge of the hardcoded credential could potentially exploit this vulnerability leading to unauthorized access to the underlying operating system and root-level persistence. Dell recommends that customers upgrade or apply one of the remediations as soon as possible.
- CVE-2026-2441Alta8.8
Use after free en CSS en Google Chrome anterior a 145.0.7632.75 permitía a un atacante remoto ejecutar código arbitrario dentro de un sandbox a través de una página HTML manipulada. (Gravedad de seguridad de Chromium: Alta)
- CVE-2026-25108Alta8.8
FileZen contains an OS command injection vulnerability. When FileZen Antivirus Check Option is enabled, a logged-in user may send a specially crafted HTTP request to execute an arbitrary OS command.
- CVE-2025-9293Alta8.1
Una vulnerabilidad en la lógica de validación de certificados puede permitir a las aplicaciones aceptar identidades de servidor no confiables o validadas incorrectamente durante la comunicación TLS. Un atacante en una posición de red privilegiada podría interceptar o modificar el tráfico si consigue posicionarse dentro del canal de comunicación. Una explotación exitosa podría comprometer la confidencialidad, la integridad y la disponibilidad de los datos de la aplicación.
- CVE-2026-20700Alta7.8
Se solucionó un problema de corrupción de memoria con una gestión de estado mejorada. Este problema se ha corregido en iOS 26.3 y iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. Un atacante con capacidad de escritura en memoria podría ejecutar código arbitrario. Apple tiene conocimiento de un informe según el cual este problema podría haber sido explotado en un ataque extremadamente sofisticado contra personas específicas determinadas en versiones de iOS anteriores a iOS 26. CVE-2025-14174 y CVE-2025-43529 también se emitieron en respuesta a este informe.
- CVE-2026-21533Alta7.8
Improper privilege management in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
- CVE-2026-21525Media6.2
Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.
- CVE-2026-21519Alta7.8
Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
- CVE-2026-21514Alta7.8
Reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to bypass a security feature locally.
- CVE-2026-21513Alta8.8
Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network.
- CVE-2026-21510Alta8.8
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
- CVE-2026-1603Alta8.6
An authentication bypass in Ivanti Endpoint Manager before version 2024 SU5 allows a remote unauthenticated attacker to leak specific stored credential data.
- CVE-2025-68686Media5.9
Una vulnerabilidad de exposición de información sensible a un actor no autorizado [CWE-200] en Fortinet FortiOS 7.6.0 a 7.6.1, FortiOS 7.4.0 a 7.4.6, FortiOS 7.2 todas las versiones, FortiOS 7.0 todas las versiones, FortiOS 6.4 todas las versiones podría permitir a un atacante remoto no autenticado eludir el parche desarrollado para el mecanismo de persistencia mediante enlaces simbólicos observado en algunos casos post-explotación, mediante solicitudes HTTP manipuladas. Un atacante necesitaría primero haber comprometido el producto a través de otra vulnerabilidad, a nivel de sistema de archivos.
- CVE-2026-25939Crítica9.1
FUXA es un software de visualización de procesos basado en web (SCADA/HMI/Dashboard). Desde la versión 1.2.8 hasta la versión 1.2.10, una vulnerabilidad de elusión de autorización en FUXA permite a un atacante remoto no autenticado crear y modificar programadores arbitrarios, exponiendo los entornos ICS/SCADA conectados a acciones posteriores. Esto ha sido corregido en la versión 1.2.11 de FUXA.
This product uses the NVD API but is not endorsed or certified by the NVD.