Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
374 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.6% | — | Biblioscape Biblioweb Server | 3/5/2001 | 16/6/2026 | Directory traversal vulnerability in BiblioWeb web server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) or ... attack in an HTTP GET request. | |
| Modificada | Media (5) | 1.7% | — | Biblioscape Biblioweb Server | 3/5/2001 | 16/6/2026 | Buffer overflow in BiblioWeb web server 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request. | |
| Modificada | Baja (2.1) | 0.75% | — | Moby Netsuite WEB Server | 3/5/2001 | 16/6/2026 | Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request. | |
| Modificada | Media (5) | 20% | 💥 Exploit | Microsoft FrontpageMicrosoft Personal WEB Server | 12/3/2001 | 16/6/2026 | Buffer overflow in Microsoft FrontPage Server Extensions (PWS) 3.0.2.926 on Windows 95, and possibly other versions, allows remote attackers to cause a denial of service via a long URL. | |
| Modificada | Alta (10) | 3.1% | — | Iplanet WEB Server | 11/12/2000 | 23/9/2026 | Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension. | |
| Modificada | Alta (10) | 6.0% | — | SUN Java System WEB Server | 14/11/2000 | 16/6/2026 | The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag. | |
| Modificada | Alta (7.5) | 3.8% | — | SUN Java System WEB Server | 12/7/2000 | 16/6/2026 | The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet. | |
| Modificada | Alta (7.5) | 12% | 💥 Exploit | Microsoft FrontpageMicrosoft Personal WEB ServerMicrosoft Windows NT | 19/4/2000 | 16/6/2026 | Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability. | |
| Modificada | Media (5) | 2.0% | — | Iplanet WEB Server | 23/2/2000 | 16/6/2026 | iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic. | |
| Modificada | Media (5) | 7.4% | 💥 Exploit | Zeus Technologies Zeus WEB Server | 8/2/2000 | 16/6/2026 | Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL. | |
| Modificada | Media (5) | 1.9% | — | Falcon WEB Server | 28/10/1999 | 16/6/2026 | Falcon web server allows remote attackers to determine the absolute path of the web root via long file names. | |
| Modificada | Media (5) | 1.3% | — | Blueface Falcon WEB Server | 26/10/1999 | 16/6/2026 | Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |
| Modificada | Media (5) | 0.78% | — | Zeus Technologies Zeus WEB Server | 25/10/1999 | 16/6/2026 | The Zeus web server administrative interface uses weak encryption for its passwords. | |
| Modificada | Alta (10) | 2.6% | — | Zeus Technologies Zeus WEB Server | 25/10/1999 | 16/6/2026 | Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine. | |
| Modificada | Media (5) | 3.0% | 💥 Exploit | T. Hauck Jana WEB Server | 8/10/1999 | 16/6/2026 | Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack. | |
| Modificada | Media (5) | 6.6% | 💥 Exploit | T. Hauck Jana WEB Server | 8/10/1999 | 16/6/2026 | Directory traversal vulnerability in Jana proxy web server 1.40 allows remote attackers to ready arbitrary files via a "......" (modified dot dot) attack. | |
| Modificada | Media (5) | 1.1% | — | Roxen WEB Server | 7/10/1999 | 16/6/2026 | Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 and earlier, possibly related to recursive parsing and referer tags in RXML. | |
| Modificada | Media (5) | 14% | — | Microsoft FrontpageMicrosoft Personal WEB Server | 26/3/1999 | 16/6/2026 | FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack. | |
| Modificada | Media (5) | 19% | 💥 Exploit | Microsoft FrontpageMicrosoft Personal WEB Server | 1/3/1999 | 16/6/2026 | Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL. | |
| Modificada | Alta (10) | 8.9% | 💥 Exploit | Java WEB ServerAI | 1/1/1999 | 16/6/2026 | The Java Web Server would allow remote users to obtain the source code for CGI programs. | |
| Modificada | Media (5) | 7.6% | — | C2net Stonghold WEB ServerHP Open Market Secure WebserverMicrosoft Exchange ServerMicrosoft Internet Information Server+9 | 26/6/1998 | 16/6/2026 | Information from SSL-encrypted sessions via PKCS #1. | |
| Modificada | Alta (7) | 19% | — | Microsoft FrontpageMicrosoft Internet Information ServerMicrosoft Personal WEB ServerNetscape Enterprise Server+1 | 6/2/1998 | 16/6/2026 | Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names. | |
| Modificada | Media (5) | 6.2% | 💥 Exploit | Novell WEB Server | 1/7/1996 | 16/6/2026 | The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server. | |
| Modificada | Alta (10) | 6.6% | 💥 Exploit | Ncsa WEB Server | 17/2/1995 | 16/6/2026 | Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote access. |