Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
357 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.9) | 0.51% | — | HP Hspa+ Gobi 4GHP Lt4112 LTEHP Elite X2 1010 G2HP Elitebook 1040 G1+35 | 27/8/2015 | 17/6/2026 | The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before 12.500.00.15.1803 on EliteBook, ElitePad, Elite, ProBook, Spectre, ZBook, and mt41 Thin Client devices allows local users to gain privileges via unspecified vectors. | |
| Modificada | Media (4.3) | 3.4% | 💥 Exploit | Theme4press Evolve | 28/9/2011 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in the EvoLve theme before 1.2.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. | |
| Modificada | Alta (7.5) | 1.2% | 💥 Exploit | Lynx Internet Solutions Evolve Merchant | 1/12/2006 | 16/6/2026 | SQL injection vulnerability in products.asp in Evolve shopping cart (aka Evolve Merchant) allows remote attackers to execute arbitrary SQL commands via the partno parameter. NOTE: the vendor disputes this issue, stating that it is a forced SQL error | |
| Modificada | Alta (7.5) | 1.4% | — | Lynx Internet Solutions Evolve Merchant | 17/11/2006 | 16/6/2026 | SQL injection vulnerability in viewcart.asp in Evolve shopping cart (aka Evolve Merchant) allows remote attackers to execute arbitrary SQL commands via the zoneid parameter. | |
| Modificada | Media (5) | 3.5% | 💥 Exploit | Gearbox Software Halo Combat Evolved | 24/5/2005 | 16/6/2026 | Gearbox Software Halo: Combat Evolved 1.6 allows remote attackers to cause a denial of service (infinite loop) via malformed data. | |
| Modificada | Media (5) | 3.4% | 💥 Exploit | Gearbox Software Halo Combat Evolved | 31/12/2004 | 16/6/2026 | Halo: Combat Evolved 1.05 and earlier allows remote game servers to cause a denial of service (client crash) via a long value in a game server reply, which triggers a NULL dereference. | |
| Modificada | Media (5) | 1.9% | — | Gearbox Software Halo Combat Evolved | 9/9/2004 | 16/6/2026 | Off-by-one error in Halo Combat Evolved 1.04 and earlier allows remote attackers to cause a denial of service (server crash) via a long client response. |