Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▼ 480 respecto a la semana anterior
Críticas / altas1308▼ 182 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
326 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.9% | — | Lotus Domino R5 Server | 2/8/2001 | 16/6/2026 | Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices. | |
| Modificada | Media (5) | 1.3% | — | Lotus Domino R5 Server | 2/8/2001 | 16/6/2026 | Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via URL requests (>8Kb) containing a large number of '/' characters. | |
| Modificada | Media (5) | 1.3% | — | Lotus Domino R5 Server | 2/8/2001 | 16/6/2026 | Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated URL requests with the same HTTP headers, such as (1) Accept, (2) Accept-Charset, (3) Accept-Encoding, (4) Accept-Language, and (5) Content-Type. | |
| Modificada | Media (5) | 1.9% | — | Lotus Domino R5 Server | 2/8/2001 | 16/6/2026 | Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via HTTP requests containing certain combinations of UNICODE characters. | |
| Modificada | Alta (7.5) | 3.0% | — | IBM Lotus Notes | 21/7/2001 | 16/6/2026 | A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email. | |
| Modificada | Alta (7.5) | 3.9% | — | IBM Lotus Domino R5 | 16/7/2001 | 16/6/2026 | Lotus Domino R5 before R5.0.7a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via miscellaneous packets with semi-valid BER encodings, as demonstrated by the PROTOS LDAPv3 test suite. | |
| Modificada | Alta (7.5) | 7.0% | — | IBM Lotus Domino R5 | 16/7/2001 | 16/6/2026 | Buffer overflows in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | |
| Modificada | Alta (7.5) | 4.5% | — | IBM Lotus Domino R5 | 16/7/2001 | 16/6/2026 | Format string vulnerabilities in Lotus Domino R5 before R5.0.7a allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | |
| Modificada | Alta (7.5) | 3.6% | — | Lotus Domino R5 Server | 2/7/2001 | 16/6/2026 | Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script. | |
| Modificada | Alta (7.5) | 3.9% | — | Lotus Domino Mail Server | 2/6/2001 | 16/6/2026 | Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long "RCPT TO" command. | |
| Modificada | Alta (10) | 3.1% | — | Lotus Domino R5 ClientLotus Domino R5 Server | 12/3/2001 | 16/6/2026 | Buffer overflow in HTML parser of the Lotus R5 Domino Server before 5.06, and Domino Client before 5.05, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed font size specifier. | |
| Modificada | Media (5) | 1.7% | — | IBM Lotus Domino Server | 12/3/2001 | 16/6/2026 | Buffer overflow in Lotus Notes LDAP (NLDAP) allows an attacker to conduct a denial of service through the ldap_search request. | |
| Modificada | Alta (7.5) | 1.9% | — | Lotus Domino Mail Server | 1/3/2001 | 16/6/2026 | Unknown vulnerability in the SMTP server in Lotus Domino 5.0 through 5.7 allows remote attackers to bypass mail relaying restrictions via crafted e-mail addresses in "RCPT TO" commands. | |
| Modificada | Media (5) | 9.3% | 💥 Exploit | Lotus Domino Server | 12/2/2001 | 16/6/2026 | Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack. | |
| Modificada | Alta (7.5) | 1.2% | — | IBM Lotus Notes | 9/1/2001 | 16/6/2026 | Lotus Notes R5 client R5.0.5 and earlier does not properly warn users when an S/MIME email message has been modified, which could allow an attacker to modify the email in transit without being detected. | |
| Modificada | Media (5) | 2.9% | — | IBM Lotus Notes | 9/1/2001 | 16/6/2026 | The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the client by measuring delays in the execution of the getSystemResource method. | |
| Modificada | Alta (10) | 4.4% | — | Lotus Domino Enterprise ServerLotus Domino Mail Server | 11/12/2000 | 16/6/2026 | Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command. | |
| Modificada | Alta (10) | 6.1% | 💥 Exploit | Lotus Domino | 11/12/2000 | 23/9/2026 | Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) "RCPT TO," (2) "SAML FROM," or (3) "SOML FROM" commands. | |
| Modificada | Media (5) | 7.7% | 💥 Exploit | Lotus Domino Enterprise ServerLotus Domino Mail Server | 18/5/2000 | 16/6/2026 | Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command. | |
| Modificada | Media (5) | 1.1% | — | Lotus Domino Server | 21/12/1999 | 16/6/2026 | Lotus Domino HTTP server does not properly disable anonymous access for the cgi-bin directory. | |
| Modificada | Media (5) | 1.4% | — | Lotus Domino Server | 21/12/1999 | 16/6/2026 | Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL. | |
| Modificada | Media (5) | 1.4% | — | Lotus Domino Server | 1/12/1999 | 16/6/2026 | Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin. | |
| Modificada | Media (5) | 1.3% | — | Lotus Domino | 4/5/1999 | 16/6/2026 | SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string. | |
| Modificada | Alta (7.5) | 1.4% | — | IBM Lotus Notes | 1/3/1999 | 16/6/2026 | The Lotus Notes 4.5 client may send a copy of encrypted mail in the clear across the network if the user does not set the "Encrypt Saved Mail" preference. | |
| Modificada | Alta (7.5) | 12% | 💥 Exploit | IBM Lotus Domino Mail ServerMicrosoft Exchange Server | 1/1/1998 | 16/6/2026 | Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command. |