Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
Nuevo en 2MCI
Crear cuenta gratis Ver herramientas sin registro
Ya tengo cuenta
Iniciar sesión
Equipo
Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
Buscando: "Quest" — 1674 resultados ✕ Limpiar búsqueda
22,181
Total alertas
4701
Críticas
16892
Altas
8
Ransomware
1052
Esta semana
RSS
M Alto vulnerabilidad
16/09/2026
[CVE-2026-90009] In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Fix TOCTOU in io_uri…
In the Linux kernel, the following vulnerability has been resolved: scsi: bsg: Fix TOCTOU in io_uring passthrough command setup scsi_bsg_uring_cmd() reads bsg_uring_cmd from the shared mmap'd SQE. Userspace can change a field after we check it and before we use it. request_len is the sharp case: it can grow past sizeof(scmd->cmnd) after the bound check and overflow scmd->cmnd in copy_from_user()…
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89973] In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direct…
In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: check the data direction of a C2HData PDU nvme_tcp_handle_c2h_data() finds the request by command id and checks that it has a payload, but it does not check that the command asked for data to be read. A controller that answers a write command with C2HData therefore reaches nvme_tcp_recv_data(), where _copy_to_iter() h…
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89980] In the Linux kernel, the following vulnerability has been resolved: ALSA: harmony: initialize locks…
In the Linux kernel, the following vulnerability has been resolved: ALSA: harmony: initialize locks before requesting IRQ snd_harmony_create() registers the IRQ before initializing h->lock and h->mixer_lock. A pending interrupt can invoke the handler while these locks are uninitialized. Initialize both locks before requesting the IRQ so the handler always sees valid lock state.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89938] In the Linux kernel, the following vulnerability has been resolved: iio: chemical: atlas-sensor: us…
In the Linux kernel, the following vulnerability has been resolved: iio: chemical: atlas-sensor: use iio_trigger_poll_nested() to fix remove UAF The atlas driver requests its hardware data-ready IRQ with devm_request_threaded_irq(); its threaded handler queues an irq_work, atlas_work_handler(), that calls iio_trigger_poll(data->trig). The IRQ is devm-managed, so free_irq() runs from the devres …
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89877] In the Linux kernel, the following vulnerability has been resolved: media: saa7164: fix cleanup on …
In the Linux kernel, the following vulnerability has been resolved: media: saa7164: fix cleanup on resource allocation failure saa7164_dev_setup() adds the device to the global saa7164_devlist before requesting the PCI BAR memory regions. If get_resources() fails, saa7164_dev_setup() decrements the device count and returns an error, but leaves the device on saa7164_devlist. The probe error path…
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89848] In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Quiesce response…
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Quiesce response IRQ before freeing request queue qla2xxx_delete_qpair() deletes the request queue before the response queue. qla25xx_delete_req_que() frees the request queue memory (kfree(req) in qla25xx_free_req_que()), but the response-queue MSI-X is only released later, in qla25xx_free_rsp_que(). In that windo…
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89793] In the Linux kernel, the following vulnerability has been resolved: ublk: clear VM_MAYWRITE on read…
In the Linux kernel, the following vulnerability has been resolved: ublk: clear VM_MAYWRITE on read-only ublk char device mmap ublk_ch_mmap() rejects mmap requests with VM_WRITE set, but never clears VM_MAYWRITE on the resulting read-only mapping. This allows a userspace daemon to mmap the per-queue command buffer PROT_READ, then upgrade it to PROT_WRITE via mprotect(), since VM_MAYWRITE was nev…

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
16/09/2026
[CVE-2026-89782] In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: reject restart table …
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: reject restart table growth beyond U16_MAX entries During $LogFile replay, log_replay() indexes the transaction table by the transact_id taken from the log record header. check_log_rec() only verifies that transact_id is non-zero and properly aligned, not its magnitude, so a crafted image can request an arbitrarily la…
M Alto vulnerabilidad
16/09/2026
Vulnerabilidad alta en Arista EOS con gNSI permite escalada de privilegios (CVE-2026-73454)
Plataformas Arista EOS con interfaz gRPC Network Security Interface (gNSI) Credentialz configurada son vulnerables a solicitudes especialmente diseñadas que modifican propiedades de cuentas de usuario. Un atacante podría asignar privilegios elevados a cuentas existentes, comprometiendo el control de acceso en infraestructura de red alta. El impacto afecta directamente a proveedores de servicios y centros de datos en LATAM que dependen de equipos Arista para segmentación y control de tráfico.
M Alto vulnerabilidad
16/09/2026
Vulnerabilidad de autenticación en plataformas EOS con gRPC y OpenConfig
Plataformas EOS afectadas que implementan autenticación AAA para gRPC en OpenConfig pueden asignar niveles de privilegio incorrectos a usuarios autenticados, permitiendo autorización mediante métodos AAA no autorizados. Este fallo afecta específicamente peticiones gRPC, dejando intacta la seguridad de solicitudes NETCONF y OpenConfig tradicionales, impactando infraestructuras de red que dependen de control granular de acceso en LATAM.
M Alto vulnerabilidad
16/09/2026
Vulnerabilidad alta en Arista EOS permite ejecución remota de código con privilegios root
Arista EOS presenta una vulnerabilidad (CVSS 8.8) en la interfaz gRPC Network Management Interface (gNMI) que permite a clientes autenticados ejecutar código arbitrario con privilegios root en switches de red. Afecta infraestructuras altas de centros de datos y proveedores de servicios en LATAM que utilizan equipos Arista con gNMI habilitado. El riesgo es elevado en entornos de nube privada y redes corporativas donde estos switches gestionan tráfico sensible.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-2380] Vulnerabilidad de registro no autorizado en Arista EOS con servicios OpenConfig
Plataformas Arista EOS ejecutando servicios OpenConfig (gNMI, gNSI, RESTCONF, NETCONF) registran inadecuadamente solicitudes y respuestas sensibles en el dispositivo local o servidores de contabilidad remota, exponiendo credenciales y configuraciones altas. La vulnerabilidad afecta infraestructuras de redes datacenter y carriers en LATAM que utilizan automatización basada en OpenConfig para gestión de equipos Arista.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-27561] A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/con…
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted GET request with admin credentials allowing execution of commands with root privileges on the device.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-27562] A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/con…
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/iodd/config endpoint by sending a crafted PUT request with admin credentials allowing execution of commands with root privileges on the device.
M Alto vulnerabilidad
16/09/2026
Inyección de comandos alta en endpoint /api/datastorage/data permite ejecución como root
Un atacante remoto con credenciales administrativas puede explotar una vulnerabilidad de inyección de comandos en el endpoint /api/datastorage/data enviando solicitudes GET manipuladas para ejecutar comandos con privilegios root en dispositivos afectados. Esta vulnerabilidad impacta infraestructuras altas en empresas LATAM que almacenan datos sensibles en dispositivos con esta interfaz expuesta.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
16/09/2026
[CVE-2026-27564] A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastor…
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with admin credentials allowing execution of commands with root privileges on the device.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-27559] A low-privileged remote attacker can exploit a command injection vulnerability in the /api/status/da…
A low-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted GET request with user credentials allowing execution of commands with root privileges on the device.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-27560] A high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/d…
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/status/data endpoint by sending a crafted DELETE request with admin credentials allowing execution of commands with root privileges on the device.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-78252] GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.3 before 19.1.8, 19.2 …
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an authenticated user could have induced a targeted user to perform unintended state-changing HTTP requests due to improper sanitization of user-controlled data in the Markdown JSON table renderer.
M Alto vulnerabilidad
16/09/2026
[CVE-2026-18595] The WP-Lister Lite for eBay plugin for WordPress is vulnerable to Stored Cross-Site Scripting via AJ…
The WP-Lister Lite for eBay plugin for WordPress is vulnerable to Stored Cross-Site Scripting via AJAX Cron Handler Request Parameter in all versions up to, and including, 3.8.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.