Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

474 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)2.8%—Surina Soundtouch16/9/201817/6/2026
The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.
ModificadaAlta (8.8)2.8%—Surina Soundtouch16/9/201817/6/2026
The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.
ModificadaMedia (6.5)2.3%—Surina Soundtouch16/9/201817/6/2026
The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.
ModificadaCrítica (9.8)50%💥 ExploitCodemenschen Gift Vouchers30/8/201817/6/2026
The Gift Vouchers plugin through 2.0.1 for WordPress allows SQL Injection via the template_id parameter in a wp-admin/admin-ajax.php wpgv_doajax_front_template request.
ModificadaAlta (8.8)2.9%—Couchbase Server24/8/201817/6/2026
Couchbase Server exposed the '/diag/eval' endpoint which by default is available on TCP/8091 and/or TCP/18091. Authenticated users that have 'Full Admin' role assigned could send arbitrary Erlang code to the 'diag/eval' endpoint of the API and the code would subsequently be executed in the underlying operating system…
ModificadaAlta (8.8)2.4%—Surina Soundtouch20/8/201817/6/2026
soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.
ModificadaAlta (7.2)8.2%—Apache Couchdb8/8/201817/6/2026
CouchDB administrative users before 2.2.0 can configure the database server via HTTP(S). Due to insufficient validation of administrator-supplied configuration settings via the HTTP API, it is possible for a CouchDB administrator user to escalate their privileges to that of the operating system's user under which…
ModificadaCrítica (9.8)5.4%—Aveva Intouch 2014Aveva Intouch 201724/7/201817/6/2026
AVEVA InTouch 2014 R2 SP1 and prior, InTouch 2017, InTouch 2017 Update 1, and InTouch 2017 Update 2 allow an unauthenticated user to send a specially crafted packet that could overflow the buffer on a locale not using a dot floating point separator. Exploitation could allow remote code execution under the privileges…
ModificadaCrítica (9.8)4.2%—Aveva Indusoft WEB StudioAveva Intouch Machine 201719/7/201817/6/2026
AVEVA InduSoft Web Studio v8.1 and v8.1SP1, and InTouch Machine Edition v2017 8.1 and v2017 8.1 SP1 a remote user could send a carefully crafted packet to exploit a stack-based buffer overflow vulnerability during tag, alarm, or event related actions such as read and write, with potential for code to be executed.
ModificadaCrítica (9.8)49%💥 ExploitTrivum Webtouch Setup V9 Firmware17/7/201817/6/2026
Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allow unauthorized remote attackers to reset the authentication via the "/xml/system/setAttribute.xml" URL, using the GET request "?id=0&attr=protectAccess&newValue=0" (a successful attack will allow attackers to login without…
ModificadaCrítica (9.8)2.3%—Trivum Webtouch Setup V9 Firmware17/7/201817/6/2026
Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system/control.xml" URL, using the GET request "?action=reboot" for example.
ModificadaAlta (7.5)2.6%—Surina Soundtouch13/7/201817/6/2026
The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.
ModificadaAlta (7.5)2.6%—Surina Soundtouch13/7/201817/6/2026
The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.
ModificadaAlta (7.2)12%—Apache Couchdb11/7/201817/6/2026
Apache CouchDB administrative users can configure the database server via HTTP(S). Due to insufficient validation of administrator-supplied configuration settings via the HTTP API, it is possible for a CouchDB administrator user to escalate their privileges to that of the operating system's user that CouchDB runs…
ModificadaCrítica (9.8)2.6%—Pouchdb31/5/201817/6/2026
An arbitrary code injection vector was found in PouchDB 6.0.4 and lesser via the map/reduce functions used in PouchDB temporary views and design documents. The code execution engine for this branch is not properly sandboxed and may be used to run arbitrary JavaScript as well as system commands.
ModificadaCrítica (9.8)8.6%—Indusoft WEB StudioIndustrial-software Intouch Machine Edition 201718/4/201817/6/2026
A remote attacker could send a carefully crafted packet in InduSoft Web Studio v8.1 and prior versions, and/or InTouch Machine Edition 2017 v8.1 and prior versions during a tag, alarm, or event related action such as read and write, which may allow remote code execution.
ModificadaCrítica (9.8)2.2%—Contec-touch Smart Home Firmware31/3/201817/6/2026
Contec Smart Home 4.15 devices do not require authentication for new_user.php, edit_user.php, delete_user.php, and user.php, as demonstrated by changing the admin password and then obtaining control over doors.
ModificadaAlta (8.8)1.0%—Bose Soundtouch24/3/201817/6/2026
Bose SoundTouch devices allows remote attackers to achieve remote control via a crafted web site that uses the WebSocket Protocol.
ModificadaMedia (5.4)0.51%—Bose Soundtouch24/3/201817/6/2026
Bose SoundTouch devices allow XSS via a crafted public playlist from Spotify.
ModificadaMedia (5.4)0.51%—Bose Soundtouch24/3/201817/6/2026
Bose SoundTouch devices allow XSS via crafted song data from a music service, as demonstrated by Pandora.
ModificadaMedia (5.3)47%💥 ExploitCouchcms Couch4/3/201817/6/2026
Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.
ModificadaAlta (7.8)2.0%💥 ExploitApache Couchdb12/2/201817/6/2026
The Windows installer that the Apache CouchDB team provides was vulnerable to local privilege escalation. All files in the install inherit the file permissions of the parent directory and therefore a non-privileged user can substitute any executable for the nssm.exe service launcher, or CouchDB batch or binary files.…
ModificadaMedia (5.1)0.62%—Synaptics Touchpad Driver15/12/201717/6/2026
A debug tool in Synaptics TouchPad drivers allows local users with administrative access to obtain sensitive information about keyboard scan codes by modifying registry keys.
ModificadaAlta (7.2)90%💥 ExploitApache Couchdb14/11/201717/6/2026
CouchDB administrative users can configure the database server via HTTP(S). Some of the configuration options include paths for operating system-level binaries that are subsequently launched by CouchDB. This allows an admin user in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to execute arbitrary shell commands as…
ModificadaCrítica (9.8)100%💥 ExploitApache Couchdb14/11/201717/6/2026
Due to differences in the Erlang-based JSON parser and JavaScript-based JSON parser, it is possible in Apache CouchDB before 1.7.0 and 2.x before 2.1.1 to submit _users documents with duplicate keys for 'roles' used for access control within the database, including the special case '_admin' role, that denotes…