Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
323 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 14% | — | Microsoft Publisher | 8/4/2014 | 17/6/2026 | pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via a crafted .pub file, aka "Arbitrary Pointer Dereference Vulnerability." | |
| Modificada | Alta (7.5) | 1.1% | 💥 Exploit | Enorth Webpublisher CMS | 9/12/2013 | 17/6/2026 | SQL injection vulnerability in m_worklog/log_searchday.jsp in Enorth Webpublisher CMS, possibly 5.0 and earlier, allows remote attackers to execute arbitrary SQL commands via the thisday parameter. | |
| Modificada | Media (4.3) | 1.0% | — | EMC Documentum TaskspaceEMC Documentum Capital ProjectsEMC Documentum WDKEMC Documentum Digital Asset Manager+3 | 6/11/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in EMC Documentum Webtop before 6.7 SP2 P07, Documentum WDK before 6.7 SP2 P07, Documentum Taskspace before 6.7 SP2 P07, Documentum Records Manager before 6.7 SP2 P07, Documentum Web Publisher before 6.5 SP7, Documentum Digital Asset Manager before 6.5 SP6, Documentum… | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Integer signedness error in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers a buffer underflow, aka "Publisher Buffer Underflow Vulnerability." | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3, 2007 SP3, and 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers incorrect pointer handling, aka "Publisher Pointer Handling Vulnerability." | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Integer signedness error in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers an improper memory allocation, aka "Publisher Signed Integer Vulnerability." | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 does not properly handle NULL values for unspecified data items, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Incorrect NULL Value Handling Vulnerability." | |
| Modificada | Alta (10) | 25% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 does not properly check table range data, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Invalid Range Check Vulnerability." | |
| Modificada | Alta (9.3) | 22% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 does not properly check the data type of an unspecified return value, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Return Value Validation Vulnerability." | |
| Modificada | Alta (10) | 29% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Buffer Overflow Vulnerability." | |
| Modificada | Alta (10) | 25% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 does not properly check the return value of an unspecified method, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Return Value Handling Vulnerability." | |
| Modificada | Alta (10) | 26% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers access to an invalid pointer, aka "Publisher Corrupt Interface Pointer Vulnerability." | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Integer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers an improper allocation-size calculation, aka "Publisher Integer Overflow Vulnerability." | |
| Modificada | Alta (9.3) | 22% | — | Microsoft Publisher | 15/5/2013 | 16/6/2026 | Microsoft Publisher 2003 SP3 does not properly validate the size of an unspecified array, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Negative Value Allocation Vulnerability." | |
| Modificada | Alta (7.5) | 2.4% | 💥 Exploit | Picopublisher | 17/11/2012 | 16/6/2026 | Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) page.php or (2) single.php. | |
| Modificada | Alta (10) | 30% | 💥 Exploit | Flexerasoftware Flexnet Publisher | 19/1/2012 | 16/6/2026 | Multiple directory traversal vulnerabilities in lmgrd in Flexera FlexNet Publisher 11.10 (aka FlexNet License Server Manager) allow remote attackers to execute arbitrary code via vectors related to save, rename, and load operations on log files. NOTE: this might overlap CVE-2011-1389. | |
| Modificada | Alta (10) | 4.7% | — | Flexerasoftware Flexnet Publisher | 19/1/2012 | 16/6/2026 | Heap-based buffer overflow in lmadmin in Flexera FlexNet Publisher 11.10 (aka FlexNet License Server Manager) allows remote attackers to execute arbitrary code via a crafted 0x2f packet. | |
| Modificada | Alta (9.3) | 26% | — | Microsoft Publisher | 14/12/2011 | 16/6/2026 | Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect memory handling, aka "Publisher Memory Corruption Vulnerability." | |
| Modificada | Alta (9.3) | 27% | — | Microsoft Publisher | 14/12/2011 | 16/6/2026 | Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect handling of values in memory, aka "Publisher Invalid Pointer Vulnerability." | |
| Modificada | Alta (9.3) | 29% | — | Microsoft Publisher | 14/12/2011 | 16/6/2026 | Array index error in Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect handling of values in memory, aka "Publisher Out-of-bounds Array Index Vulnerability." | |
| Modificada | Alta (9.3) | 14% | — | Microsoft Publisher | 14/12/2011 | 16/6/2026 | Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, does not properly manage memory allocations for function pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Function Pointer Overwrite Vulnerability." | |
| Modificada | Alta (9.3) | 19% | — | Microsoft Publisher | 16/12/2010 | 16/6/2026 | pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 does not properly perform array indexing, which allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka "Array Indexing Memory Corruption Vulnerability." | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Publisher | 16/12/2010 | 16/6/2026 | Microsoft Publisher 2002 SP3, 2003 SP3, and 2010 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Publisher file, aka "Microsoft Publisher Memory Corruption Vulnerability." | |
| Modificada | Alta (9.3) | 22% | — | Microsoft Publisher | 16/12/2010 | 16/6/2026 | Array index error in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher 97 file, aka "Memory Corruption Due To Invalid Index Into Array in Pubconv.dll Vulnerability." | |
| Modificada | Alta (9.3) | 25% | — | Microsoft Publisher | 16/12/2010 | 16/6/2026 | Heap-based buffer overflow in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, 2007 SP2, and 2010 allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka "Heap Overrun in pubconv.dll Vulnerability." |