Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2722▼ 518 respecto a la semana anterior
Críticas / altas1296▼ 206 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
231 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 3.8% | — | Padl Software PAM Ldap | 29/5/2002 | 16/6/2026 | Format string vulnerability in the logging function for the pam_ldap PAM LDAP module before version 144 allows attackers to execute arbitrary code via format strings in the configuration file name. | |
| Modificada | Alta (7.5) | 2.2% | — | OpenldapRedhat Linux | 31/1/2002 | 16/6/2026 | slapd in OpenLDAP 2.0 through 2.0.19 allows local users, and anonymous users before 2.0.8, to conduct a "replace" action on access controls without any values, which causes OpenLDAP to delete non-mandatory attributes that would otherwise be protected by ACLs. | |
| Modificada | Media (5) | 4.1% | — | Mandrakesoft Mandrake Single Network FirewallOpenldapDebian LinuxMandrakesoft Mandrake Linux+2 | 16/7/2001 | 16/6/2026 | slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. | |
| Modificada | Baja (1.2) | 0.60% | — | Padl Software NSS Ldap | 11/12/2000 | 16/6/2026 | nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests. | |
| Modificada | Media (4.6) | 0.35% | — | Openldap | 20/10/2000 | 16/6/2026 | OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse. | |
| Modificada | Baja (2.1) | 0.90% | 💥 Exploit | OpenldapMandrakesoft Mandrake LinuxRedhat LinuxTurbolinux | 21/4/2000 | 16/6/2026 | Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack. |