CIBERPLANETA_
// threat_intelligence_dashboard

Dashboard de Amenazas

Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)

¿Cómo se calcula el nivel de amenaza global?

El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:

  • 🟢 BAJA — 0 CVEs nuevos en el feed reciente
  • 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
  • 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
  • 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados

Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.

16
CVEs añadidos este mes
1545
Total KEV catalogados
10
Vendors afectados
CVE Producto Criticidad Añadido
CVE-2025-66376 Synacor Zimbra Collaboration Suite (ZCS) ALTA 2026-03-18
CVE-2026-20963 Microsoft SharePoint ALTA 2026-03-18
CVE-2025-47813 Wing FTP Server Wing FTP Server MEDIA 2026-03-16
CVE-2026-3910 Google Chromium V8 ALTA 2026-03-13
CVE-2026-3909 Google Skia ALTA 2026-03-13
CVE-2025-68613 n8n n8n CRÍTICA 2026-03-11
CVE-2021-22054 Omnissa Workspace One UEM ALTA 2026-03-09
CVE-2025-26399 SolarWinds Web Help Desk CRÍTICA 2026-03-09
CVE-2026-1603 Ivanti Endpoint Manager (EPM) ALTA 2026-03-09
CVE-2017-7921 Hikvision Multiple Products CRÍTICA 2026-03-05
Microsoft
15
Apple
6
Google
5
Cisco
4
Fortinet
4
Synacor
3
SolarWinds
3
Broadcom
3
SmarterTools
3
Gladinet
3
CVE ID Producto Descripción CVSS Añadido
CVE-2015-7645 Adobe Flash Player Adobe Flash Player allows remote attackers to execute arbitrary code via a crafted SWF file. ALTA 2022-03-03
CVE-2015-5119 Adobe Flash Player A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an at… CRÍTICA 2022-03-03
CVE-2015-4902 Oracle Java SE Unspecified vulnerability in Oracle Java SE allows remote attackers to affect integrity via Unknown vectors related to … MEDIA 2022-03-03
CVE-2015-3043 Adobe Flash Player A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution. CRÍTICA 2022-03-03
CVE-2015-2590 Oracle Java SE An unspecified vulnerability exists within Oracle Java Runtime Environment that allows an attacker to perform remote co… CRÍTICA 2022-03-03
CVE-2015-2545 Microsoft Office Microsoft Office allows remote attackers to execute arbitrary code via a crafted EPS image. ALTA 2022-03-03
CVE-2015-2424 Microsoft PowerPoint Microsoft PowerPoint allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… ALTA 2022-03-03
CVE-2015-2387 Microsoft ATM Font Driver ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server allows local users to gain privileges via a… ALTA 2022-03-03
CVE-2015-1701 Microsoft Win32k An unspecified vulnerability exists in the Win32k.sys kernel-mode driver in Microsoft Windows Server that allows a loca… ALTA 2022-03-03
CVE-2015-1642 Microsoft Office Microsoft Office contains a memory corruption vulnerability that allows remote attackers to execute arbitrary code via … ALTA 2022-03-03
CVE-2014-4114 Microsoft Windows A vulnerability exists in Windows Object Linking & Embedding (OLE) that could allow remote code execution if a user ope… ALTA 2022-03-03
CVE-2014-0496 Adobe Reader and Acrobat Adobe Reader and Acrobat contain a use-after-free vulnerability which can allow for code execution. ALTA 2022-03-03
CVE-2013-5065 Microsoft Windows Microsoft Windows NDProxy.sys in the kernel contains an improper input validation vulnerability which can allow a local… ALTA 2022-03-03
CVE-2013-3897 Microsoft Internet Explorer A use-after-free vulnerability exists within CDisplayPointer in Microsoft Internet Explorer that allows an attacker to … ALTA 2022-03-03
CVE-2013-3346 Adobe Reader and Acrobat Adobe Reader and Acrobat contain a memory corruption vulnerability which can allow attackers to execute arbitrary code … CRÍTICA 2022-03-03
CVE-2013-1675 Mozilla Firefox Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoom… MEDIA 2022-03-03
CVE-2013-1347 Microsoft Internet Explorer This vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of… ALTA 2022-03-03
CVE-2013-0641 Adobe Reader A buffer overflow vulnerability exists in Adobe Reader which allows an attacker to perform remote code execution. ALTA 2022-03-03
CVE-2013-0640 Adobe Reader and Acrobat An memory corruption vulnerability exists in the acroform.dll in Adobe Reader that allows an attacker to perform remote… ALTA 2022-03-03
CVE-2013-0632 Adobe ColdFusion An authentication bypass vulnerability exists in Adobe ColdFusion which could result in an unauthorized user gaining ad… CRÍTICA 2022-03-03
CVE-2012-4681 Oracle Java SE The Java Runtime Environment (JRE) component in Oracle Java SE allow for remote code execution. CRÍTICA 2022-03-03
CVE-2012-1856 Microsoft Office The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to exec… ALTA 2022-03-03
CVE-2012-1723 Oracle Java SE Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE allows remote attackers to … CRÍTICA 2022-03-03
CVE-2012-1535 Adobe Flash Player Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of … ALTA 2022-03-03
CVE-2012-0507 Oracle Java SE An incorrect type vulnerability exists in the Concurrency component of Oracle's Java Runtime Environment allows an atta… CRÍTICA 2022-03-03
← Anterior Página 46 / 62 (1545 CVEs total) Siguiente →
[INFO] CVE-2026-20963: Vulnerabilidad Crítica en Microsoft SharePoint Explotada Activamente  ·  [INFO] La OFAC sanciona a una red de trabajadores de TI de la RPDC que financia programas de armas de destrucción masiva mediante falsos ...  ·  [INFO] CVE-2025-66376: Vulnerabilidad XSS en Synacor Zimbra Collaboration Suite  ·  [INFO] El ransomware Interlock aprovecha el CVE-2026-20131 de día cero de Cisco FMC para acceder a la raíz...  ·  [INFO] Nueve fallos críticos de KVM IP permiten el acceso root no autenticado en cuatro proveedores...  ·  [INFO] CVE-2026-20963: Vulnerabilidad Crítica en Microsoft SharePoint Explotada Activamente  ·  [INFO] La OFAC sanciona a una red de trabajadores de TI de la RPDC que financia programas de armas de destrucción masiva mediante falsos ...  ·  [INFO] CVE-2025-66376: Vulnerabilidad XSS en Synacor Zimbra Collaboration Suite  ·  [INFO] El ransomware Interlock aprovecha el CVE-2026-20131 de día cero de Cisco FMC para acceder a la raíz...  ·  [INFO] Nueve fallos críticos de KVM IP permiten el acceso root no autenticado en cuatro proveedores...  ·