Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
332 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 14% | 💥 Exploit | GNU Privacy Guard | 14/8/2001 | 16/6/2026 | Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privileges via format strings in the original filename that is stored in an encrypted file. | |
| Modificada | Media (5) | 2.0% | — | GNU Privacy Guard | 12/2/2001 | 16/6/2026 | gpg (aka GnuPG) 1.0.4 and other versions imports both public and private keys from public key servers without notifying the user about the private keys, which could allow an attacker to break the web of trust. | |
| Modificada | Baja (2.1) | 0.40% | — | GNU Privacy Guard | 12/2/2001 | 16/6/2026 | gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify the contents of a file without detection. | |
| Modificada | Alta (7.5) | 3.0% | — | GNU Privacy Guard | 19/12/2000 | 23/9/2026 | GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection. | |
| Modificada | Baja (3.6) | 0.33% | — | PGP Personal Privacy | 20/10/2000 | 16/6/2026 | The BAIR program does not properly restrict access to the Internet Explorer Internet options menu, which allows local users to obtain access to the menu by modifying the registry key that starts BAIR. | |
| Modificada | Alta (10) | 6.0% | 💥 Exploit | Atrius Trivalie SN Time Sync | 1/6/2000 | 16/6/2026 | Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string. | |
| Modificada | Alta (7.5) | 1.4% | — | Cisco PIX Private Link | 31/12/1999 | 16/6/2026 | Cisco PIX Private Link 4.1.6 and earlier does not properly process certain commands in the configuration file, which reduces the effective key length of the DES key to 48 bits instead of 56 bits, which makes it easier for an attacker to find the proper key via a brute force attack. |