Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
1100 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4) | 4.3% | — | Redhat Enterprise LinuxOracle SolarisOracle LinuxOpensuse Leap+12 | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors related to Optimizer. | |
| Modificada | Media (4) | 4.3% | — | Redhat Enterprise Linux DesktopRedhat Enterprise Linux HPC NodeRedhat Enterprise Linux HPC Node EUSRedhat Enterprise Linux Server+12 | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier and 5.6.27 and earlier and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via vectors related to DML. | |
| Modificada | Alta (7.2) | 0.59% | — | Canonical Ubuntu LinuxMariadbRedhat Enterprise LinuxOracle Mysql+12 | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Client. NOTE: the previous information is from… | |
| Modificada | Media (4.3) | 1.6% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows remote attackers to affect availability via vectors related to RPC. | |
| Modificada | Media (6.8) | 7.5% | — | Redhat Enterprise Linux DesktopRedhat Enterprise Linux HPC NodeRedhat Enterprise Linux HPC Node EUSRedhat Enterprise Linux Server+12 | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors related to Options. | |
| Modificada | Baja (3.3) | 0.34% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availability via unknown vectors related to Kernel Cryptography. | |
| Modificada | Media (4) | 0.33% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via vectors related to Kernel DAX. | |
| Modificada | Alta (7.8) | 2.5% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability via vectors related to NFSv4. | |
| Modificada | Baja (1.2) | 0.33% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to Solaris Kernel Zones, a different vulnerability than CVE-2016-0419. | |
| Modificada | Media (4.9) | 0.38% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to Verified Boot. | |
| Modificada | Baja (3.6) | 0.39% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality and availability via unknown vectors related to Solaris Kernel Zones. | |
| Modificada | Media (4.9) | 0.38% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to Solaris Kernel Zones, a different vulnerability than CVE-2016-0431. | |
| Modificada | Media (6.1) | 0.40% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Solaris Kernel Zones, a different vulnerability than CVE-2016-0414. | |
| Modificada | Media (4.6) | 0.40% | — | Oracle Solaris Cluster | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 3.3 and 4.2 allows local users to affect confidentiality, integrity, and availability via vectors related to HA for MySQL. | |
| Modificada | Media (5) | 1.6% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect integrity via unknown vectors related to System Archive Utility. | |
| Modificada | Alta (7.2) | 0.41% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Solaris Kernel Zones, a different vulnerability than CVE-2016-0418. | |
| Modificada | Baja (3.3) | 0.35% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity and availability via vectors related to Libc. | |
| Modificada | Alta (7.8) | 2.0% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect availability via vectors related to SMB Utilities. | |
| Modificada | Baja (2.1) | 0.38% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via vectors related to Boot. | |
| Modificada | Baja (2.1) | 0.37% | — | Oracle Solaris | 21/1/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect integrity via vectors related to NDMP Backup Service. | |
| Modificada | Media (5.4) | 2.9% | — | Openstack Orchestration APIRedhat OpenstackFedoraproject FedoraOracle Solaris | 20/1/2016 | 17/6/2026 | The template-validate command in OpenStack Orchestration API (Heat) before 2015.1.3 (kilo) and 5.0.x before 5.0.1 (liberty) allows remote authenticated users to cause a denial of service (memory consumption) or determine the existence of local files via the resource type in a template, as demonstrated by… | |
| Modificada | Alta (8.1) | 21% | — | Oracle LinuxOracle SolarisOpenbsd OpensshApple MAC OS X+2 | 14/1/2016 | 17/6/2026 | The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer… | |
| Modificada | Media (6.5) | 63% | 💥 PoC | Sophos Unified Threat Management SoftwareOracle LinuxOracle SolarisOpenbsd Openssh+2 | 14/1/2016 | 17/6/2026 | The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a private key. | |
| Modificada | Crítica (9.8) | 7.8% | — | PcrePHPFedoraproject FedoraOracle Solaris | 3/1/2016 | 17/6/2026 | The pcre_compile2 function in pcre_compile.c in PCRE 8.38 mishandles the /((?:F?+(?:^(?(R)a+\"){99}-))(?J)(?'R'(?'R'<((?'RR'(?'R'\){97)?J)?J)(?'R'(?'R'\){99|(:(?|(?'R')(\k'R')|((?'R')))H'R'R)(H'R))))))/ pattern and related patterns with named subgroups, which allows remote attackers to cause a denial of service… | |
| Modificada | Media (5) | 55% | — | Oracle LinuxOracle SolarisOracle VM ServerISC Bind | 16/12/2015 | 17/6/2026 | db.c in named in ISC BIND 9.x before 9.9.8-P2 and 9.10.x before 9.10.3-P2 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a malformed class attribute. |