Empresa
¿Quiénes somos? Visión y Valores
Herramientas
Email Checker Vigía DNS SSL Checker Password Strength HTTP Headers
Alertas
Todas las alertas Vulnerabilidades Incidentes Solo críticas En CISA KEV
Editorial
Análisis técnico ¿Cuál es mi IP?
Blog
Blog 2MCI ISO 27001 Amenazas LATAM Recursos Gratuitos eBook Gratuito Newsletter Podcast / YouTube
Empresa
Servicios Contacto Suscribirse al Newsletter
🆕 Nuevo en 2MCI
✨ Crear cuenta gratis 🛠️ Ver herramientas sin registro
Ya tengo cuenta
🔒 Iniciar sesión
Equipo
🏠 Portal interno 2MCI
Seguridad de la Información

Alertas de Seguridad de la Información

Vulnerabilidades explotadas activamente, incidentes y análisis relevantes para México y LATAM. Actualizado automáticamente desde fuentes oficiales.

48 vulnerabilidades en CISA KEV — explotación activa confirmada Ver todas →
Última alerta publicada ahora mismo
13,434
Total alertas
3054
Críticas
10108
Altas
8
Ransomware
1778
Esta semana
RSS
M Alto vulnerabilidad
10/08/2026
CVE-2024-38225 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2024-38225 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
C Alto vulnerabilidad
06/08/2026
CVE-2026-50516 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-50516 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
06/08/2026
CVE-2026-62869 Azure Entra ID Spoofing Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-62869 Azure Entra ID Spoofing Vulnerability. Tipo: Suplantación (Spoofing).
M Alto vulnerabilidad
06/08/2026
CVE-2026-63522 Azure SQL Database Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-63522 Azure SQL Database Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
30/07/2026
CVE-2026-24304 Azure Resource Manager Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-24304 Azure Resource Manager Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
24/07/2026
[CVE-2026-56167] Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privi…
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
M Alto vulnerabilidad
22/07/2026
CVE-2026-50377 Windows Kernel Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-50377 Windows Kernel Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).

📬 Alertas semanales SI directo en tu email

Las vulnerabilidades más críticas para LATAM, con contexto y recomendaciones accionables. Gratis.

Suscribirme →
M Alto vulnerabilidad
22/07/2026
[CVE-2026-50522] Vulnerabilidad explotada activamente en Microsoft SharePoint
CISA confirma explotación activa de una vulnerabilidad en Microsoft SharePoint. No se ha confirmado uso en campañas de ransomware conocidas. Fecha límite para aplicar parche según directiva CISA: 2026-07-25.
M Alto vulnerabilidad
20/07/2026
CVE-2026-50659 .NET Spoofing Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-50659 .NET Spoofing Vulnerability. Tipo: Suplantación (Spoofing).
M Alto vulnerabilidad
20/07/2026
CVE-2024-35248 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2024-35248 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
17/07/2026
[CVE-2026-56171] Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthori…
Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
M Alto vulnerabilidad
16/07/2026
[CVE-2026-59117] Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code o…
Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network.
M Alto vulnerabilidad
16/07/2026
[CVE-2026-58598] Concurrent execution using shared resource with improper synchronization ('race condition') in Windo…
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
M Alto vulnerabilidad
16/07/2026
CVE-2026-58643 Windows Admin Center Spoofing Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-58643 Windows Admin Center Spoofing Vulnerability. Tipo: Suplantación (Spoofing).
M Alto vulnerabilidad
16/07/2026
[CVE-2026-58644] Vulnerabilidad explotada activamente en Microsoft SharePoint
CISA confirma explotación activa de una vulnerabilidad en Microsoft SharePoint. No se ha confirmado uso en campañas de ransomware conocidas. Fecha límite para aplicar parche según directiva CISA: 2026-07-19.

🛡 ¿Estás expuesto a alguna de estas vulnerabilidades?

Evaluación gratuita inicial con el equipo 2MCI: identifica exposición y plan de remediación.

Habla con un experto →
M Alto vulnerabilidad
15/07/2026
CVE-2026-50375 DirectX Graphics Kernel Elevation of Privilege Vulnerability
Microsoft publica advisory de seguridad: CVE-2026-50375 DirectX Graphics Kernel Elevation of Privilege Vulnerability. Tipo: Elevación de Privilegios (EoP).
M Alto vulnerabilidad
14/07/2026
[CVE-2026-50649] Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-50650] Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized a…
Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-50646] Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code local…
Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.
M Alto vulnerabilidad
14/07/2026
[CVE-2026-47301] Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate …
Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.