Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
1970 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 13% | — | Microsoft Internet Explorer | 10/10/2018 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-8460. | |
| Modificada | Alta (7.5) | 21% | — | Microsoft Internet Explorer | 10/10/2018 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-8491. | |
| Modificada | Crítica (9.8) | 25% | 💥 Exploit | Extplorer | 7/10/2018 | 16/6/2026 | ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php. | |
| Modificada | Media (6.1) | 2.3% | — | Zohocorp Manageengine Assetexplorer | 2/10/2018 | 17/6/2026 | In Zoho ManageEngine AssetExplorer, a Stored XSS vulnerability was discovered in the 6.2.0 version via the /AssetDef.do ciName or assetName parameter. | |
| Modificada | Media (6.1) | 3.3% | — | Microsoft Internet Explorer | 13/9/2018 | 17/6/2026 | A security feature bypass vulnerability exists in Internet Explorer due to how scripts are handled that allows a universal cross-site scripting (UXSS) condition, aka "Internet Explorer Security Feature Bypass Vulnerability." This affects Internet Explorer 11. | |
| Modificada | Alta (7.5) | 13% | — | Microsoft Internet Explorer | 13/9/2018 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-8447. | |
| Modificada | Alta (7.5) | 13% | — | Microsoft Internet ExplorerMicrosoft Edge | 13/9/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 11, Microsoft Edge, Internet Explorer 10. This CVE ID is unique from CVE-2018-8354, CVE-2018-8391,… | |
| Modificada | Media (4.3) | 5.6% | — | Microsoft Internet ExplorerMicrosoft ChakracoreMicrosoft Edge | 13/9/2018 | 17/6/2026 | An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft browsers, aka "Scripting Engine Information Disclosure Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge. | |
| Modificada | Alta (7.5) | 13% | — | Microsoft Internet Explorer | 13/9/2018 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8461. | |
| Modificada | Media (4.2) | 3.1% | — | Microsoft Internet ExplorerMicrosoft ChakracoreMicrosoft Edge | 13/9/2018 | 17/6/2026 | An information disclosure vulnerability exists when the browser scripting engine improperly handle object types, aka "Microsoft Scripting Engine Information Disclosure Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge, Internet Explorer 10. | |
| Modificada | Baja (3.3) | 2.5% | 💥 Exploit | Fspro Event LOG Explorer | 5/9/2018 | 17/6/2026 | FsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML External Entity Injection. | |
| Modificada | Alta (7.5) | 13% | — | Microsoft Internet ExplorerMicrosoft Edge | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka "Microsoft Browser Memory Corruption Vulnerability." This affects Internet Explorer 11, Microsoft Edge, Internet Explorer 10. | |
| Modificada | Alta (7.5) | 29% | 💥 PoC | Microsoft Internet Explorer | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8353,… | |
| Modificada | Alta (7.5) | 14% | — | Microsoft Internet ExplorerMicrosoft ChakracoreMicrosoft Edge | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, ChakraCore, Internet Explorer 11, Microsoft Edge, Internet Explorer 10. This CVE ID is unique from… | |
| Analizada | Alta (7.5) | 62% | ⚠ Explotación activa | Microsoft Internet Explorer | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8353,… | |
| Modificada | Alta (7.5) | 25% | — | Microsoft Internet ExplorerMicrosoft EdgeMicrosoft Chakracore | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge. This CVE ID is unique from CVE-2018-8353, CVE-2018-8355, CVE-2018-8359,… | |
| Modificada | Alta (7.5) | 14% | — | Microsoft Internet Explorer | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8353,… | |
| Modificada | Alta (8.3) | 7.8% | — | Microsoft Internet ExplorerMicrosoft Edge | 15/8/2018 | 17/6/2026 | An elevation of privilege vulnerability exists in Microsoft browsers allowing sandbox escape, aka "Microsoft Browser Elevation of Privilege Vulnerability." This affects Internet Explorer 11, Microsoft Edge. | |
| Modificada | Alta (7.5) | 68% | 💥 Exploit | Microsoft Internet ExplorerMicrosoft ChakracoreMicrosoft Edge | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge. This CVE ID is unique from CVE-2018-8353, CVE-2018-8359, CVE-2018-8371,… | |
| Modificada | Alta (7.5) | 68% | 💥 Exploit | Microsoft Internet Explorer | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8355,… | |
| Modificada | Media (6.5) | 7.9% | — | Microsoft Internet ExplorerMicrosoft Edge | 15/8/2018 | 17/6/2026 | An information disclosure vulnerability exists when affected Microsoft browsers improperly allow cross-frame interaction, aka "Microsoft Browser Information Disclosure Vulnerability." This affects Internet Explorer 11, Microsoft Edge, Internet Explorer 10. | |
| Modificada | Alta (7.5) | 14% | — | Microsoft Internet Explorer | 15/8/2018 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly validates hyperlinks before loading executable libraries, aka "Internet Explorer Remote Code Execution Vulnerability." This affects Internet Explorer 11, Internet Explorer 10. | |
| Modificada | Media (5.5) | 0.40% | — | X File Explorer Project X File ExplorerDebian Linux | 16/7/2018 | 17/6/2026 | X File Explorer (aka xfe) might allow local users to bypass intended access restrictions and gain access to arbitrary files by leveraging failure to use directory masks when creating files on Samba and NFS shares. | |
| Modificada | Alta (7.5) | 17% | — | Microsoft Internet Explorer | 11/7/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-8242, CVE-2018-8283, CVE-2018-8287, CVE-2018-8288,… | |
| Modificada | Alta (7.5) | 69% | 💥 Exploit | Microsoft Internet ExplorerMicrosoft EdgeMicrosoft Chakracore | 11/7/2018 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge. This CVE ID is unique from CVE-2018-8242, CVE-2018-8283, CVE-2018-8287,… |