Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
22,181
Total alertas
4701
Críticas
16892
Altas
8
Ransomware
1051
Esta semana
RSS
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-79798] SQL injection vulnerabilities in the web-based management interface of ClearPass Policy Manager coul…
SQL injection vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow a low-privileged authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation could allow an attacker to run arbitrary database commands.
M Alto vulnerabilidad
Hace 3 días
[CVE-2026-79799] A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an una…
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.
M Alto vulnerabilidad
Hace 3 días
[CVE-2026-79800] An authenticated path traversal vulnerability exists in the command line interface of ClearPass Poli…
An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges on the underlying operating system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-79801] A missing integrity verification vulnerability in the client agent software of HPE Networking ClearP…
A missing integrity verification vulnerability in the client agent software of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to introduce untrusted code. Successful exploitation could allow an attacker to execute arbitrary code on the affected client system.
M Alto vulnerabilidad
Hace 3 días
[CVE-2026-79802] A command injection vulnerability exists in the client software of ClearPass Policy Manager. Success…
A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated privileges on the affected host.
M Alto vulnerabilidad
Hace 3 días
[CVE-2026-79803] A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploita…
A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76747] Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation co…
Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to expose sensitive memory contents and cause a denial of service on the device.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
Hace 3 días
[CVE-2026-76748] A privilege escalation vulnerability exists in the API of AOS-S. Successful exploitation could allow…
A privilege escalation vulnerability exists in the API of AOS-S. Successful exploitation could allow an authenticated read-only user to escalate their privileges and gain administrative access to the affected system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76750] Deserialization of untrusted data vulnerabilities exist in the web interface of HPE Networking Clear…
Deserialization of untrusted data vulnerabilities exist in the web interface of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code on the affected system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76751] A missing integrity verification vulnerability exists in the OnGuard agent of ClearPass Policy Manag…
A missing integrity verification vulnerability exists in the OnGuard agent of ClearPass Policy Manager. Successful exploitation could allow an unauthenticated, remote attacker to execute arbitrary code on the affected endpoint with the elevated privileges of the agent.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76752] Authentication bypass vulnerabilities exist in the web-based management and API interfaces of HPE Ne…
Authentication bypass vulnerabilities exist in the web-based management and API interfaces of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an unauthenticated remote attacker to circumvent existing authentication controls and gain administrative access to the affected system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76753] A format string vulnerability in an affected service interface of HPE Networking ClearPass Policy Ma…
A format string vulnerability in an affected service interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to corrupt process memory. Successful exploitation could allow an attacker to execute arbitrary code.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76754] A vulnerability in an affected interface of ClearPass Policy Manager could allow an unauthenticated …
A vulnerability in an affected interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation could allow an attacker to run arbitrary database commands.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-79794] A SQL injection vulnerability in the web-based management interface of ClearPass Policy Manager coul…
A SQL injection vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. Successful exploitation could allow an attacker to run arbitrary database commands.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76742] Authentication bypass vulnerabilities exist in the web management interface of AOS-S. Successful exp…
Authentication bypass vulnerabilities exist in the web management interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to gain unauthorized access to the affected system.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76743] A vulnerability have been identified in the management interface of AOS-S that could potentially all…
A vulnerability have been identified in the management interface of AOS-S that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls if certain preconditions outside of the attacker's control are met. Successful exploitation could allow an attacker to gain unauthorized access to the affected system.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76744] Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation co…
Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76745] Memory corruption vulnerabilities exist in AOS-S that are reachable by an unauthenticated adjacent a…
Memory corruption vulnerabilities exist in AOS-S that are reachable by an unauthenticated adjacent attacker. Successful exploitation could allow an attacker to execute arbitrary code.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-76746] An unauthenticated buffer overflow vulnerability exists in AOS-S. Successful exploitation could allo…
An unauthenticated buffer overflow vulnerability exists in AOS-S. Successful exploitation could allow an unauthenticated adjacent attacker to expose sensitive memory contents and cause a denial of service on the affected device.
M Crítico vulnerabilidad
Hace 3 días
[CVE-2026-106446] Handlebars provides the power necessary to let users build semantic templates. From 4.0.0 until 4.7.…
Handlebars provides the power necessary to let users build semantic templates. From 4.0.0 until 4.7.10, Handlebars.compile() and Handlebars.precompile() accept pre-parsed AST objects while validating only selected PathExpression, NumberLiteral, and BooleanLiteral values. This issue bypasses the AST validation introduced in version 4.7.9 for CVE-2026-33937. An attacker who can supply an object inst…