Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

330 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)2.5%💥 ExploitNetscape Messaging Server29/10/199916/6/2026
Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands.
ModificadaBaja (2.6)0.84%—Netscape Communicator28/10/199916/6/2026
Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key.
ModificadaAlta (7.5)2.0%—Netscape Communicator5/10/199916/6/2026
Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these…
ModificadaMedia (5)4.8%💥 ExploitNetscape Enterprise Server13/9/199916/6/2026
Buffer overflow in Accept command in Netscape Enterprise Server 3.6 with the SSL Handshake Patch.
ModificadaMedia (5.1)1.6%💥 ExploitNetscape Communicator2/9/199916/6/2026
Buffer overflow in Netscape Communicator via EMBED tags in the pluginspage option.
ModificadaMedia (5)3.1%💥 ExploitNetscape Enterprise Server30/7/199916/6/2026
Default configuration of the search engine in Netscape Enterprise Server 3.5.1, and possibly other versions, allows remote attackers to read the source of JHTML files by specifying a search command using the HTML-tocrec-demo1.pat pattern file.
ModificadaMedia (5)1.4%—Netscape Communicator9/7/199916/6/2026
Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
ModificadaMedia (5)4.5%💥 ExploitNetscape Enterprise Server6/7/199916/6/2026
Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.
ModificadaBaja (2.6)1.4%—Netscape CommunicatorNetscape Navigator24/5/199916/6/2026
When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information.
ModificadaMedia (5)1.8%—Netscape Enterprise ServerHp-ux7/5/199916/6/2026
Denial of service in Netscape Enterprise Server (NES) in HP Virtual Vault (VVOS) via a long URL.
ModificadaAlta (7.2)0.40%—Netscape Directory Server1/5/199916/6/2026
The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users.
ModificadaMedia (6.4)1.3%—Netscape Communicator18/3/199916/6/2026
talkback in Netscape 4.5 allows a local user to kill an arbitrary process of another user whose Netscape crashes.
ModificadaBaja (2.1)0.38%—Netscape Communicator18/3/199916/6/2026
talkback in Netscape 4.5 allows a local user to overwrite arbitrary files of another user whose Netscape crashes.
ModificadaAlta (7.5)3.6%—Netscape CommunicatorNetscape NavigatorSUN Java1/3/199916/6/2026
The byte code verifier component of the Java Virtual Machine (JVM) allows remote execution through malicious web pages.
ModificadaMedia (5)1.8%—Netscape Enterprise ServerHp-ux1/3/199916/6/2026
Denial of service Netscape Enterprise Server with VirtualVault on HP-UX VVOS systems.
ModificadaBaja (2.6)17%💥 ExploitMicrosoft Internet ExplorerNetscape Navigator1/12/199816/6/2026
Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka frame spoofing.
ModificadaMedia (5)5.1%💥 ExploitNetscape Enterprise Server1/8/199816/6/2026
Netscape Enterprise servers may list files through the PageServices query.
ModificadaAlta (10)18%💥 ExploitNetscape Messaging ServerUniversity OF Washington Imap20/7/199816/6/2026
Arbitrary command execution via IMAP buffer overflow in authenticate command.
ModificadaMedia (5)7.6%—C2net Stonghold WEB ServerHP Open Market Secure WebserverMicrosoft Exchange ServerMicrosoft Internet Information Server+926/6/199816/6/2026
Information from SSL-encrypted sessions via PKCS #1.
ModificadaAlta (7.5)6.0%—Microsoft Internet ExplorerNetscape Communicator1/4/199816/6/2026
A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc.
ModificadaAlta (7)19%—Microsoft FrontpageMicrosoft Internet Information ServerMicrosoft Personal WEB ServerNetscape Enterprise Server+16/2/199816/6/2026
Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
ModificadaAlta (7.5)7.6%💥 ExploitNetscape Fasttrack Server1/1/199816/6/2026
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
ModificadaMedia (5.1)1.6%—Netscape Communicator1/8/199716/6/2026
Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the applet was loaded, which violates the Java security model and could allow remote attackers to conduct unauthorized activities.
ModificadaBaja (2.6)18%—Microsoft Internet ExplorerNetscape Communicator8/7/199716/6/2026
JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability.
ModificadaAlta (7.2)1.5%—ISC INNNetscape News ServerSUN SparcRedhat Linux+220/2/199716/6/2026
ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.
Orbitaley — Vulnerabilidades