Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
296 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.1) | 1.3% | — | Mcafee Internet Security Suite | 30/10/2005 | 16/6/2026 | Multiple interpretation error in (1) McAfee Internet Security Suite 7.1.5 version 9.1.08 with the 4.4.00 engine and (2) McAfee Corporate 8.0.0 patch 10 with the 4400 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally… | |
| Modificada | Baja (2.6) | 1.5% | — | Symantec Antivirus Scan EngineSymantec Mail SecuritySymantec Norton AntivirusSymantec Norton Internet Security+3 | 2/5/2005 | 16/6/2026 | Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a… | |
| Modificada | Alta (7.5) | 3.3% | — | F-secure Anti-virusF-secure Internet SecurityF-secure Personal ExpressF-secure Internet Gatekeeper | 2/5/2005 | 16/6/2026 | Heap-based buffer overflow in multiple F-Secure Anti-Virus and Internet Security products allows remote attackers to execute arbitrary code via a crafted ARJ archive. | |
| Modificada | Baja (2.1) | 0.45% | — | Symantec Norton AntivirusSymantec Norton Internet SecuritySymantec Norton System Works | 2/5/2005 | 16/6/2026 | The SmartScan feature in the Auto-Protect module for Symantec Norton AntiVirus 2004 and 2005, as also used in Internet Security 2004/2005 and System Works 2004/2005, allows attackers to cause a denial of service (CPU consumption and system crash) by renaming a file on a network share. | |
| Modificada | Media (5) | 2.9% | — | Symantec Norton AntivirusSymantec Norton Internet SecuritySymantec Norton System Works | 2/5/2005 | 16/6/2026 | Unknown vulnerability in the Auto-Protect module in Symantec Norton AntiVirus 2004 and 2005, as also used in Internet Security 2004/2005 and System Works 2004/2005, allows attackers to cause a denial of service (system hang or crash) by triggering a scan of a certain file type. | |
| Modificada | Alta (7.2) | 0.34% | — | Mcafee Internet Security Suite | 18/4/2005 | 16/6/2026 | McAfee Internet Security Suite 2005 uses insecure default ACLs for installed files, which allows local users to gain privileges or disable protection by modifying certain files. | |
| Modificada | Alta (7.5) | 19% | — | Symantec Antivirus Scan EngineSymantec Brightmail AntispamSymantec Client SecuritySymantec Gateway Security+7 | 8/2/2005 | 16/6/2026 | Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header. | |
| Modificada | Media (6.4) | 1.7% | — | F-secure Anti-virusF-secure FOR FirewallsF-secure Internet SecurityF-secure Internet Gatekeeper | 31/12/2004 | 16/6/2026 | Buffer overflow in multiple F-Secure Anti-Virus products, including F-Secure Anti-Virus 5.42 and earlier, allows remote attackers to bypass scanning or cause a denial of service (crash or module restart), depending on the product, via a malformed LHA archive. | |
| Modificada | Media (5) | 11% | 💥 Exploit | F-secure Anti-virusF-secure FOR FirewallsF-secure Internet SecurityF-secure Personal Express+1 | 31/12/2004 | 16/6/2026 | Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Servers and Gateways 4.61 and earlier, and other products, allows remote attackers to bypass antivirus protection via a… | |
| Modificada | Media (6.4) | 4.1% | — | Clearswift MailsweeperF-secure Anti-virusF-secure FOR FirewallsF-secure Internet Security+9 | 18/8/2004 | 16/6/2026 | Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path"). | |
| Modificada | Alta (10) | 10% | — | Clearswift MailsweeperF-secure Anti-virusF-secure FOR FirewallsF-secure Internet Security+9 | 18/8/2004 | 16/6/2026 | Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the… | |
| Modificada | Media (5) | 8.8% | 💥 Exploit | Symantec Client FirewallSymantec Client SecuritySymantec Norton Internet SecuritySymantec Norton Personal Firewall | 18/8/2004 | 16/6/2026 | SYMNDIS.SYS in Symantec Norton Internet Security 2003 and 2004, Norton Personal Firewall 2003 and 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 and 1.1 allow remote attackers to cause a denial of service (infinite loop) via a TCP packet with (1) SACK option or (2) Alternate Checksum Data option… | |
| Modificada | Baja (2.6) | 11% | 💥 Exploit | Symantec Client FirewallSymantec Client SecuritySymantec Norton AntispamSymantec Norton Internet Security+1 | 7/7/2004 | 16/6/2026 | The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allows remote attackers to cause a denial of service (CPU consumption from infinite loop)… | |
| Modificada | Alta (10) | 13% | — | Symantec Client FirewallSymantec Client SecuritySymantec Norton AntispamSymantec Norton Internet Security+1 | 7/7/2004 | 16/6/2026 | Multiple vulnerabilities in SYMDNS.SYS for Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allow remote attackers to cause a denial of service or execute arbitrary… | |
| Modificada | Alta (7.5) | 3.7% | — | Symantec Norton Internet Security | 15/4/2004 | 16/6/2026 | The WrapNISUM ActiveX component (WrapUM.dll) in Norton Internet Security 2004 is marked safe for scripting, which allows remote attackers to execute arbitrary programs via the LaunchURL method. | |
| Modificada | Alta (7.2) | 0.41% | — | Symantec Norton AntivirusSymantec Norton Internet SecuritySymantec Norton System WorksSymantec Windows Liveupdate | 3/2/2004 | 16/6/2026 | The GUI functionality for an interactive session in Symantec LiveUpdate 1.70.x through 1.90.x, as used in Norton Internet Security 2001 through 2004, SystemWorks 2001 through 2004, and AntiVirus and Norton AntiVirus Pro 2001 through 2004, AntiVirus for Handhelds v3.0, allows local users to gain SYSTEM privileges. | |
| Modificada | Media (4.3) | 1.4% | — | IBM Internet Security Systems Blackice DefenderISS Blackice Server Protection | 31/12/2003 | 16/6/2026 | BlackICE Defender 2.9.cap and Server Protection 3.5.cdf, when configured to automatically block attacks, allows remote attackers to block IP addresses and cause a denial of service via spoofed packets. | |
| Modificada | Media (4.3) | 2.1% | 💥 Exploit | Symantec Norton Internet Security | 27/10/2003 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in Symantec Norton Internet Security 2003 6.0.4.34 allows remote attackers to inject arbitrary web script or HTML via a URL to a blocked site, which is displayed on the blocked sites error page. | |
| Modificada | Media (5) | 14% | — | Microsoft Internet Information ServerMicrosoft Internet Information ServicesSymantec Norton Internet Security | 31/12/2002 | 16/6/2026 | Norton Internet Security 2001 opens log files with FILE_SHARE_READ and FILE_SHARE_WRITE permissions, which could allow remote attackers to modify the log file contents while Norton Internet Security is running. | |
| Modificada | Alta (7.5) | 3.3% | — | Symantec Norton Internet SecuritySymantec Norton Personal Firewall | 26/7/2002 | 16/6/2026 | Buffer overflow in HTTP Proxy for Symantec Norton Personal Internet Firewall 3.0.4.91 and Norton Internet Security 2001 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large outgoing HTTP request. | |
| Modificada | Alta (7.2) | 0.51% | — | ISS Internet Security Scanner | 20/2/1999 | 16/6/2026 | install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change the permissions of arbitrary files via a symlink attack on a temporary file. |