CIBERPLANETA_
// threat_intelligence_dashboard

Dashboard de Amenazas

Vulnerabilidades activamente explotadas según el catálogo CISA KEV (Known Exploited Vulnerabilities)

¿Cómo se calcula el nivel de amenaza global?

El nivel de amenaza global mostrado en la barra de navegación se calcula en base al número de CVEs activamente explotados publicados en el catálogo CISA KEV (Known Exploited Vulnerabilities) durante las últimas horas:

  • 🟢 BAJA — 0 CVEs nuevos en el feed reciente
  • 🟡 MEDIA — 1 a 2 CVEs nuevos activamente explotados
  • 🟠 ALTA — 3 a 4 CVEs nuevos activamente explotados
  • 🔴 CRÍTICA — 5 o más CVEs nuevos activamente explotados

Fuente: CISA Known Exploited Vulnerabilities Catalog — actualizado cada hora.

17
CVEs añadidos este mes
1546
Total KEV catalogados
10
Vendors afectados
CVE Producto Criticidad Añadido
CVE-2026-20131 Cisco Secure Firewall Management Center (FMC) 2026-03-19
CVE-2025-66376 Synacor Zimbra Collaboration Suite (ZCS) ALTA 2026-03-18
CVE-2026-20963 Microsoft SharePoint ALTA 2026-03-18
CVE-2025-47813 Wing FTP Server Wing FTP Server MEDIA 2026-03-16
CVE-2026-3910 Google Chromium V8 ALTA 2026-03-13
CVE-2026-3909 Google Skia ALTA 2026-03-13
CVE-2025-68613 n8n n8n CRÍTICA 2026-03-11
CVE-2021-22054 Omnissa Workspace One UEM ALTA 2026-03-09
CVE-2025-26399 SolarWinds Web Help Desk CRÍTICA 2026-03-09
CVE-2026-1603 Ivanti Endpoint Manager (EPM) ALTA 2026-03-09
Microsoft
15
Cisco
5
Google
5
Apple
5
Fortinet
4
Synacor
3
SolarWinds
3
Broadcom
3
SmarterTools
3
Gladinet
3
CVE ID Producto Descripción CVSS Añadido
CVE-2016-3718 ImageMagick ImageMagick ImageMagick contains an unspecified vulnerability that allows attackers to perform server-side request forgery (SSRF) v… MEDIA 2021-11-03
CVE-2020-15505 Ivanti MobileIron Multiple Products Ivanti MobileIron's Core & Connector, Sentry, and Monitor and Reporting Database (RDB) products contain an unspecified … CRÍTICA 2021-11-03
CVE-2021-30116 Kaseya Virtual System/Server Administrator (VSA) Kaseya Virtual System/Server Administrator (VSA) contains an information disclosure vulnerability allowing an attacker … CRÍTICA 2021-11-03
CVE-2020-7961 Liferay Liferay Portal Liferay Portal contains a deserialization of untrusted data vulnerability that allows remote attackers to execute code … CRÍTICA 2021-11-03
CVE-2021-23874 McAfee McAfee Total Protection (MTP) McAfee Total Protection (MTP) contains an improper privilege management vulnerability that allows a local user to gain … ALTA 2021-11-03
CVE-2021-22506 Micro Focus Micro Focus Access Manager Micro Focus Access Manager contains an information leakage vulnerability resulting from a SAML service provider redirec… ALTA 2021-11-03
CVE-2021-22502 Micro Focus Operation Bridge Reporter (OBR) Micro Focus Operation Bridge Report (OBR) contains an unspecified vulnerability that allows for remote code execution. CRÍTICA 2021-11-03
CVE-2014-1812 Microsoft Windows Microsoft Windows Active Directory contains a privilege escalation vulnerability due to the way it distributes password… ALTA 2021-11-03
CVE-2021-38647 Microsoft Open Management Infrastructure (OMI) Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerabil… CRÍTICA 2021-11-03
CVE-2016-0167 Microsoft Win32k Microsoft Win32k contains an unspecified vulnerability that allows for privilege escalation via a crafted application ALTA 2021-11-03
CVE-2020-0878 Microsoft Edge and Internet Explorer Microsoft Edge and Internet Explorer contain a memory corruption vulnerability that allows attackers to execute code in… MEDIA 2021-11-03
CVE-2021-31955 Microsoft Windows Microsoft Windows Kernel contains an unspecified vulnerability that allows for information disclosure. Successful explo… MEDIA 2021-11-03
CVE-2021-1647 Microsoft Defender Microsoft Defender contains an unspecified vulnerability that allows for remote code execution. ALTA 2021-11-03
CVE-2021-33739 Microsoft Windows Microsoft Desktop Window Manager (DWM) Core Library contains an unspecified vulnerability that allows for privilege esc… ALTA 2021-11-03
CVE-2016-0185 Microsoft Windows Microsoft Windows Media Center contains a remote code execution vulnerability when Windows Media Center opens a special… ALTA 2021-11-03
CVE-2020-0683 Microsoft Windows Microsoft Windows Installer contains a privilege escalation vulnerability when MSI packages process symbolic links, whi… ALTA 2021-11-03
CVE-2020-17087 Microsoft Windows Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation. ALTA 2021-11-03
CVE-2021-33742 Microsoft Windows Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for remote code execution. ALTA 2021-11-03
CVE-2021-31199 Microsoft Enhanced Cryptographic Provider Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allows for privilege escalation. MEDIA 2021-11-03
CVE-2021-33771 Microsoft Windows Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation. ALTA 2021-11-03
CVE-2021-31956 Microsoft Windows Microsoft Windows New Technology File System (NTFS) contains an unspecified vulnerability that allows attackers to esca… ALTA 2021-11-03
CVE-2021-31201 Microsoft Enhanced Cryptographic Provider Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allows for privilege escalation. MEDIA 2021-11-03
CVE-2021-31979 Microsoft Windows Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation. ALTA 2021-11-03
CVE-2020-0938 Microsoft Windows Microsoft Windows Adobe Font Manager Library contains an unspecified vulnerability when handling specially crafted mult… ALTA 2021-11-03
CVE-2020-17144 Microsoft Exchange Server Microsoft Exchange Server improperly validates cmdlet arguments which allow an attacker to perform remote code executio… ALTA 2021-11-03
← Anterior Página 56 / 62 (1546 CVEs total) Siguiente →
[INFO] Boletín del Día de las Amenazas: RaaS de FortiGate, exploits de Citrix, abuso de MCP, suplantación de identidad de chat en vivo y ...  ·  [INFO] El nuevo malware bancario Android de Perseus monitorea las aplicaciones de notas para extraer datos confidenciales...  ·  [INFO] El kit de exploits DarkSword para iOS utiliza 6 defectos y 3 días cero para apoderarse por completo del dispositivo...  ·  [INFO] Cómo Ceros brinda visibilidad y control a los equipos de seguridad en Claude Code...  ·  [INFO] La CISA advierte sobre las vulnerabilidades de Zimbra y SharePoint; los ataques de ransomware son un éxito de día cero para Cisco...  ·  [INFO] Boletín del Día de las Amenazas: RaaS de FortiGate, exploits de Citrix, abuso de MCP, suplantación de identidad de chat en vivo y ...  ·  [INFO] El nuevo malware bancario Android de Perseus monitorea las aplicaciones de notas para extraer datos confidenciales...  ·  [INFO] El kit de exploits DarkSword para iOS utiliza 6 defectos y 3 días cero para apoderarse por completo del dispositivo...  ·  [INFO] Cómo Ceros brinda visibilidad y control a los equipos de seguridad en Claude Code...  ·  [INFO] La CISA advierte sobre las vulnerabilidades de Zimbra y SharePoint; los ataques de ransomware son un éxito de día cero para Cisco...  ·