Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,434
Total alertas
3054
Críticas
10108
Altas
8
Ransomware
1778
Esta semana
RSS
M Alto vulnerabilidad
11/08/2026
[CVE-2026-70344] Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges…
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-68817] Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute cod…
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-68816] Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute cod…
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-68795] Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute cod…
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-66807] Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code loca…
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64919] Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute co…
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64912] Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute co…
Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-64907] Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code…
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-63526] Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code loca…
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-63527] Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code…
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62877] Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges lo…
Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
M Crítico vulnerabilidad
11/08/2026
[CVE-2026-62878] Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a ne…
Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62824] Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code…
Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62792] Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a…
Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62768] Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges…
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
11/08/2026
[CVE-2026-62755] Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileg…
Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
11/08/2026
[CVE-2026-59086] A vulnerability has been identified in Simcenter Nastran (All versions < V2606). The affected applic…
A vulnerability has been identified in Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process.
M Alto vulnerabilidad
09/08/2026
Vulnerabilidad alta en UTT HiPER 1200GW permite desbordamiento de búfer remoto
Se ha identificado un desbordamiento de búfer basado en stack en los modelos UTT HiPER 1200GW versiones hasta 2.5.3-170306, mediante manipulación del parámetro EncryptionMode en la función strcpy del archivo /goform/pptpSrvGlobalConfig. La vulnerabilidad permite ejecución remota de código sin autenticación previa, con CVSS 8.8. El exploit ha sido divulgado públicamente, aumentando el riesgo inmediato para equipos de red altas en LATAM que utilizan este modelo de puerta de enlace.
M Alto vulnerabilidad
07/08/2026
[CVE-2026-20345] A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attac…
A vulnerability in the GPT file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition or possibly other expanded impacts as a result of&nbsp;memory corruption on an affected device. This vulnerability is due to improper handling of an endian conversion operation, which may result in an out-of-bounds buffer write. An attacker could exploit this vulnerab…
M Alto vulnerabilidad
05/08/2026
[CVE-2026-71265] Domoticz's MochadTCP::MatchLine() handler for MOCHAD_RFSEC messages (hardware/MochadTCP.cpp) copies …
Domoticz's MochadTCP::MatchLine() handler for MOCHAD_RFSEC messages (hardware/MochadTCP.cpp) copies network-received data from the up-to-1028-byte m_mochadbuffer into a fixed 50-byte stack buffer tempRFSECbuf using strcpy() with no length check, across three separate code branches (DS10A/KR10A/MS10A device types). An attacker on the local network segment able to reach the Mochad TCP bridge (defaul…