Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▼ 485 respecto a la semana anterior
Críticas / altas1305▼ 185 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
264 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.0% | 💥 Exploit | Eliteladders Elite Gaming Ladders | 23/9/2009 | 16/6/2026 | SQL injection vulnerability in ladders.php in Elite Gaming Ladders 3.2 allows remote attackers to execute arbitrary SQL commands via the platform parameter. | |
| Modificada | Alta (9.3) | 2.9% | — | Cyclomedia Cycloscopelite | 18/5/2009 | 16/6/2026 | Multiple unspecified vulnerabilities in CycloMedia CycloScopeLite 2.50.3.0 allow remote attackers to execute arbitrary code via the ReturnConnection method in (1) CM_ADOConnection.dll, (2) CM_AddressInfoDBC.dll, and (3) CM_RecordingLocationDBC.dll, related to improper dereferencing. NOTE: the provenance of this… | |
| Modificada | Alta (7.2) | 0.93% | 💥 Exploit | Isecsoft Anti-keylogger Elite | 13/11/2008 | 16/6/2026 | Buffer overflow in AKEProtect.sys 3.3.3.0 in ISecSoft Anti-Keylogger Elite 3.3.0 and earlier, and possibly other versions including 3.3.3, allows local users to gain privileges via long inputs to the (1) 0x002224A4, (2) 0x002224C0, and (3) 0x002224CC IOCTL. | |
| Modificada | Alta (7.2) | 0.84% | 💥 Exploit | Isecsoft Anti-trojan Elite | 13/11/2008 | 16/6/2026 | Buffer overflow in Atepmon.sys in ISecSoft Anti-Trojan Elite 4.2.1 and earlier, and possibly 4.2.2, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via long inputs to the 0x00222494 IOCTL. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | Elitecms | 11/9/2008 | 16/6/2026 | SQL injection vulnerability in index.php in eliteCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter. | |
| Modificada | Media (6.8) | 1.8% | 💥 Exploit | Sitebuilder Elite | 3/3/2008 | 16/6/2026 | Multiple PHP remote file inclusion vulnerabilities in SiteBuilder Elite 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the CarpPath parameter to (1) files/carprss.php and (2) files/amazon-bestsellers.php. | |
| Modificada | Alta (10) | 5.4% | — | Brooks Internet Software RPM Remote Print Manager EliteBrooks Internet Software RPM Remote Print Manager Select | 13/2/2008 | 16/6/2026 | Stack-based buffer overflow in RpmSrvc.exe in Brooks Remote Print Manager (RPM) 4.5.1.11 and earlier (Elite and Select) for Windows allows remote attackers to execute arbitrary code via a long filename in a "Receive data file" LPD command. NOTE: some of these details are obtained from third party information. | |
| Modificada | Media (6.5) | 2.4% | — | Redhat Network Satelite Server | 30/8/2007 | 16/6/2026 | Unspecified vulnerability in Red Hat Network Satellite Server 5.0.0 allows remote authenticated users to execute arbitrary code via unknown vectors in a "back-end XMLRPC handler." | |
| Modificada | Media (4.3) | 1.0% | — | Elite Forum | 25/7/2007 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in index.php in Elite Forum 1.0.0.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter in a ptopic action, a different vulnerability than CVE-2005-3412. | |
| Modificada | Media (5) | 1.2% | — | Elite Bulletin Board | 6/7/2007 | 16/6/2026 | Unspecified vulnerability in Profile.php in Elite Bulletin Board before 1.0.10 allows remote attackers to modify profile information via unspecified vectors related to "a remote form," probably related to direct requests and missing authorization checks. | |
| Modificada | Media (6.5) | 1.1% | — | Elite Bulletin Board | 6/7/2007 | 16/6/2026 | PM.php in Elite Bulletin Board before 1.0.10 allows remote authenticated users to delete arbitrary PM messages and conduct other attacks via modified id fields. | |
| Modificada | Media (6.8) | 1.6% | — | Elite-board | 30/5/2006 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in search.html in Bulletin Board Elite-Board (E-Board) 1.1 allows remote attackers to inject arbitrary web script or HTML via the search box. | |
| Modificada | Media (4.3) | 2.2% | 💥 Exploit | Elite Forum | 1/11/2005 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in Elite Forum 1.0.0.0 allows remote attackers to inject arbitrary web script or HTML via a Post Reply to a topic, in which the reply contains a javascript: URL in an <img> tag. | |
| Modificada | Alta (7.2) | 0.73% | — | ADP Elite System MAX 9000 | 2/5/2005 | 16/6/2026 | ADP Elite System Max 9000 allows remote authenticated users to gain privileges by uploading a .profile that sets the ADPROOT environment variable to the root directory. |