Oracle
Oracle Solaris: vulnerabilidades y CVE
Oracle Solaris tiene 565 vulnerabilidades publicadas, 16 de ellas en los últimos 12 meses. 18 son críticas y 6 figuran en el catálogo de explotación activa de CISA.
CVE565
Últimos 12 meses16
Críticas18
Explotadas activamente6
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-3010 | Alta (8.8) | 13% | ⚠ Explotación activa | 16 oct 2019 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: XScreenSaver). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2015-4495 | Alta (8.8) | 69% | ⚠ Explotación activa | 8 ago 2015 | The PDF reader in Mozilla Firefox before 39.0.3, Firefox ESR 38.x before 38.1.1, and Firefox OS before 2.2 allows remote attackers to bypass the Same Origin Policy, and read arbitrary files or gain privileges, via… |
| CVE-2008-2992 | Alta (7.8) | 98% | ⚠ Explotación activa | 4 nov 2008 | Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string… |
| CVE-2020-14871 | Crítica (10) | 80% | ⚠ Explotación activa | 21 oct 2020 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows unauthenticated… |
| CVE-2016-3718 | Media (5.5) | 77% | ⚠ Explotación activa | 5 may 2016 | The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image. |
| CVE-2016-3715 | Media (5.5) | 75% | ⚠ Explotación activa | 5 may 2016 | The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image. |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-16606 | Crítica (9.3) | 1.1% | — | 22 jul 2026 | A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote code execution (pre-auth RCE) on GNU/Linux or Oracle Solaris. The Fsas… |
| CVE-2026-61202 | Alta (7.5) | 0.13% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 11.3 and 11.4. Difficult to exploit vulnerability allows low privileged attacker with logon to… |
| CVE-2026-61052 | Media (5.5) | 0.15% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-60834 | Alta (7.1) | 0.24% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11.4. Difficult to exploit vulnerability allows low privileged attacker with network access… |
| CVE-2026-60833 | Alta (7) | 0.13% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11.4. Difficult to exploit vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-60661 | Alta (7.8) | 0.13% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Difficult to exploit vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-60659 | Alta (7.1) | 0.14% | — | 21 jul 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-46978 | Crítica (10) | 0.43% | — | 17 jun 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Remote Administration Daemon). The supported version that is affected is 11.4. Easily exploitable vulnerability allows unauthenticated attacker… |
| CVE-2026-46914 | Alta (7.1) | 0.16% | — | 17 jun 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-34281 | Media (6.5) | 0.15% | — | 21 abr 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11.4. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2026-21942 | Media (5) | 0.14% | — | 20 ene 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystems). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows low privileged attacker with logon to… |
| CVE-2026-21935 | Media (5.8) | 0.22% | — | 20 ene 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Driver). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2026-21928 | Media (5.3) | 0.33% | — | 20 ene 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows unauthenticated attacker with network access via… |
| CVE-2026-21927 | Media (5.8) | 0.22% | — | 20 ene 2026 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Driver). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2025-53070 | Media (5.5) | 0.15% | — | 21 oct 2025 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2025-53068 | Media (6.5) | 0.15% | — | 21 oct 2025 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2025-30700 | Baja (3.5) | 0.49% | — | 15 abr 2025 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker… |
| CVE-2025-30690 | Alta (7.2) | 0.21% | — | 15 abr 2025 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Difficult to exploit vulnerability allows high privileged attacker with logon to the… |
| CVE-2025-21551 | Media (6) | 0.19% | — | 21 ene 2025 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: File system). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2024-21151 | Baja (3.3) | 0.20% | — | 16 jul 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2024-21105 | Baja (2) | 0.26% | — | 16 abr 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2024-21059 | Alta (7.8) | 0.17% | — | 16 abr 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the… |
| CVE-2024-20999 | Alta (8.2) | 0.27% | — | 16 abr 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Zones). The supported version that is affected is 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |
| CVE-2024-20946 | Media (5.5) | 0.18% | — | 16 ene 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2024-20920 | Baja (3.8) | 0.19% | — | 16 ene 2024 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2023-22129 | Media (5.5) | 0.18% | — | 17 oct 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with logon to the… |
| CVE-2023-22128 | Baja (3.1) | 0.34% | — | 17 oct 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). Supported versions that are affected are 10 and 11. Difficult to exploit vulnerability allows unauthenticated attacker with network… |
| CVE-2023-22023 | Alta (7.8) | 0.19% | — | 18 jul 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Device Driver Interface). The supported version that is affected is 11. Easily exploitable vulnerability allows low privileged attacker with… |
| CVE-2023-22003 | Baja (3.3) | 0.22% | — | 18 abr 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows unauthenticated attacker with logon to the… |
| CVE-2023-21985 | Alta (7.7) | 0.23% | — | 18 abr 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows high privileged attacker with logon to the… |