Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
474 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 2.8% | — | Surina Soundtouch | 16/9/2018 | 17/6/2026 | The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch. | |
| Modificada | Alta (8.8) | 2.8% | — | Surina Soundtouch | 16/9/2018 | 17/6/2026 | The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch. | |
| Modificada | Media (6.5) | 2.3% | — | Surina Soundtouch | 16/9/2018 | 17/6/2026 | The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch. | |
| Modificada | Crítica (9.8) | 50% | 💥 Exploit | Codemenschen Gift Vouchers | 30/8/2018 | 17/6/2026 | The Gift Vouchers plugin through 2.0.1 for WordPress allows SQL Injection via the template_id parameter in a wp-admin/admin-ajax.php wpgv_doajax_front_template request. | |
| Modificada | Alta (8.8) | 2.9% | — | Couchbase Server | 24/8/2018 | 17/6/2026 | Couchbase Server exposed the '/diag/eval' endpoint which by default is available on TCP/8091 and/or TCP/18091. Authenticated users that have 'Full Admin' role assigned could send arbitrary Erlang code to the 'diag/eval' endpoint of the API and the code would subsequently be executed in the underlying operating system… | |
| Modificada | Alta (8.8) | 2.4% | — | Surina Soundtouch | 20/8/2018 | 17/6/2026 | soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility. | |
| Modificada | Alta (7.2) | 8.2% | — | Apache Couchdb | 8/8/2018 | 17/6/2026 | CouchDB administrative users before 2.2.0 can configure the database server via HTTP(S). Due to insufficient validation of administrator-supplied configuration settings via the HTTP API, it is possible for a CouchDB administrator user to escalate their privileges to that of the operating system's user under which… | |
| Modificada | Crítica (9.8) | 5.4% | — | Aveva Intouch 2014Aveva Intouch 2017 | 24/7/2018 | 17/6/2026 | AVEVA InTouch 2014 R2 SP1 and prior, InTouch 2017, InTouch 2017 Update 1, and InTouch 2017 Update 2 allow an unauthenticated user to send a specially crafted packet that could overflow the buffer on a locale not using a dot floating point separator. Exploitation could allow remote code execution under the privileges… | |
| Modificada | Crítica (9.8) | 4.2% | — | Aveva Indusoft WEB StudioAveva Intouch Machine 2017 | 19/7/2018 | 17/6/2026 | AVEVA InduSoft Web Studio v8.1 and v8.1SP1, and InTouch Machine Edition v2017 8.1 and v2017 8.1 SP1 a remote user could send a carefully crafted packet to exploit a stack-based buffer overflow vulnerability during tag, alarm, or event related actions such as read and write, with potential for code to be executed. | |
| Modificada | Crítica (9.8) | 49% | 💥 Exploit | Trivum Webtouch Setup V9 Firmware | 17/7/2018 | 17/6/2026 | Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allow unauthorized remote attackers to reset the authentication via the "/xml/system/setAttribute.xml" URL, using the GET request "?id=0&attr=protectAccess&newValue=0" (a successful attack will allow attackers to login without… | |
| Modificada | Crítica (9.8) | 2.3% | — | Trivum Webtouch Setup V9 Firmware | 17/7/2018 | 17/6/2026 | Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system/control.xml" URL, using the GET request "?action=reboot" for example. | |
| Modificada | Alta (7.5) | 2.6% | — | Surina Soundtouch | 13/7/2018 | 17/6/2026 | The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch. | |
| Modificada | Alta (7.5) | 2.6% | — | Surina Soundtouch | 13/7/2018 | 17/6/2026 | The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch. | |
| Modificada | Alta (7.2) | 12% | — | Apache Couchdb | 11/7/2018 | 17/6/2026 | Apache CouchDB administrative users can configure the database server via HTTP(S). Due to insufficient validation of administrator-supplied configuration settings via the HTTP API, it is possible for a CouchDB administrator user to escalate their privileges to that of the operating system's user that CouchDB runs… | |
| Modificada | Crítica (9.8) | 2.6% | — | Pouchdb | 31/5/2018 | 17/6/2026 | An arbitrary code injection vector was found in PouchDB 6.0.4 and lesser via the map/reduce functions used in PouchDB temporary views and design documents. The code execution engine for this branch is not properly sandboxed and may be used to run arbitrary JavaScript as well as system commands. | |
| Modificada | Crítica (9.8) | 8.6% | — | Indusoft WEB StudioIndustrial-software Intouch Machine Edition 2017 | 18/4/2018 | 17/6/2026 | A remote attacker could send a carefully crafted packet in InduSoft Web Studio v8.1 and prior versions, and/or InTouch Machine Edition 2017 v8.1 and prior versions during a tag, alarm, or event related action such as read and write, which may allow remote code execution. | |
| Modificada | Crítica (9.8) | 2.2% | — | Contec-touch Smart Home Firmware | 31/3/2018 | 17/6/2026 | Contec Smart Home 4.15 devices do not require authentication for new_user.php, edit_user.php, delete_user.php, and user.php, as demonstrated by changing the admin password and then obtaining control over doors. | |
| Modificada | Alta (8.8) | 1.0% | — | Bose Soundtouch | 24/3/2018 | 17/6/2026 | Bose SoundTouch devices allows remote attackers to achieve remote control via a crafted web site that uses the WebSocket Protocol. | |
| Modificada | Media (5.4) | 0.51% | — | Bose Soundtouch | 24/3/2018 | 17/6/2026 | Bose SoundTouch devices allow XSS via a crafted public playlist from Spotify. | |
| Modificada | Media (5.4) | 0.51% | — | Bose Soundtouch | 24/3/2018 | 17/6/2026 | Bose SoundTouch devices allow XSS via crafted song data from a music service, as demonstrated by Pandora. | |
| Modificada | Media (5.3) | 47% | 💥 Exploit | Couchcms Couch | 4/3/2018 | 17/6/2026 | Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php. | |
| Modificada | Alta (7.8) | 2.0% | 💥 Exploit | Apache Couchdb | 12/2/2018 | 17/6/2026 | The Windows installer that the Apache CouchDB team provides was vulnerable to local privilege escalation. All files in the install inherit the file permissions of the parent directory and therefore a non-privileged user can substitute any executable for the nssm.exe service launcher, or CouchDB batch or binary files.… | |
| Modificada | Media (5.1) | 0.62% | — | Synaptics Touchpad Driver | 15/12/2017 | 17/6/2026 | A debug tool in Synaptics TouchPad drivers allows local users with administrative access to obtain sensitive information about keyboard scan codes by modifying registry keys. | |
| Modificada | Alta (7.2) | 90% | 💥 Exploit | Apache Couchdb | 14/11/2017 | 17/6/2026 | CouchDB administrative users can configure the database server via HTTP(S). Some of the configuration options include paths for operating system-level binaries that are subsequently launched by CouchDB. This allows an admin user in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to execute arbitrary shell commands as… | |
| Modificada | Crítica (9.8) | 100% | 💥 Exploit | Apache Couchdb | 14/11/2017 | 17/6/2026 | Due to differences in the Erlang-based JSON parser and JavaScript-based JSON parser, it is possible in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to submit _users documents with duplicate keys for 'roles' used for access control within the database, including the special case '_admin' role, that denotes… |