Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

374 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)1.6%—Biblioscape Biblioweb Server3/5/200116/6/2026
Directory traversal vulnerability in BiblioWeb web server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) or ... attack in an HTTP GET request.
ModificadaMedia (5)1.7%—Biblioscape Biblioweb Server3/5/200116/6/2026
Buffer overflow in BiblioWeb web server 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.
ModificadaBaja (2.1)0.75%—Moby Netsuite WEB Server3/5/200116/6/2026
Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request.
ModificadaMedia (5)20%💥 ExploitMicrosoft FrontpageMicrosoft Personal WEB Server12/3/200116/6/2026
Buffer overflow in Microsoft FrontPage Server Extensions (PWS) 3.0.2.926 on Windows 95, and possibly other versions, allows remote attackers to cause a denial of service via a long URL.
ModificadaAlta (10)3.1%—Iplanet WEB Server11/12/200023/9/2026
Buffer overflow in the SHTML logging functionality of iPlanet Web Server 4.x allows remote attackers to execute arbitrary commands via a long filename with a .shtml extension.
ModificadaAlta (10)6.0%—SUN Java System WEB Server14/11/200016/6/2026
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.
ModificadaAlta (7.5)3.8%—SUN Java System WEB Server12/7/200016/6/2026
The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet.
ModificadaAlta (7.5)12%💥 ExploitMicrosoft FrontpageMicrosoft Personal WEB ServerMicrosoft Windows NT19/4/200016/6/2026
Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability.
ModificadaMedia (5)2.0%—Iplanet WEB Server23/2/200016/6/2026
iPlanet Web Server 4.1 allows remote attackers to cause a denial of service via a large number of GET commands, which consumes memory and causes a kernel panic.
ModificadaMedia (5)7.4%💥 ExploitZeus Technologies Zeus WEB Server8/2/200016/6/2026
Zeus web server allows remote attackers to view the source code for CGI programs via a null character (%00) at the end of a URL.
ModificadaMedia (5)1.9%—Falcon WEB Server28/10/199916/6/2026
Falcon web server allows remote attackers to determine the absolute path of the web root via long file names.
ModificadaMedia (5)1.3%—Blueface Falcon WEB Server26/10/199916/6/2026
Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
ModificadaMedia (5)0.78%—Zeus Technologies Zeus WEB Server25/10/199916/6/2026
The Zeus web server administrative interface uses weak encryption for its passwords.
ModificadaAlta (10)2.6%—Zeus Technologies Zeus WEB Server25/10/199916/6/2026
Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine.
ModificadaMedia (5)3.0%💥 ExploitT. Hauck Jana WEB Server8/10/199916/6/2026
Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack.
ModificadaMedia (5)6.6%💥 ExploitT. Hauck Jana WEB Server8/10/199916/6/2026
Directory traversal vulnerability in Jana proxy web server 1.40 allows remote attackers to ready arbitrary files via a "......" (modified dot dot) attack.
ModificadaMedia (5)1.1%—Roxen WEB Server7/10/199916/6/2026
Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 and earlier, possibly related to recursive parsing and referer tags in RXML.
ModificadaMedia (5)14%—Microsoft FrontpageMicrosoft Personal WEB Server26/3/199916/6/2026
FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack.
ModificadaMedia (5)19%💥 ExploitMicrosoft FrontpageMicrosoft Personal WEB Server1/3/199916/6/2026
Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL.
ModificadaAlta (10)8.9%💥 ExploitJava WEB ServerAI1/1/199916/6/2026
The Java Web Server would allow remote users to obtain the source code for CGI programs.
ModificadaMedia (5)7.6%—C2net Stonghold WEB ServerHP Open Market Secure WebserverMicrosoft Exchange ServerMicrosoft Internet Information Server+926/6/199816/6/2026
Information from SSL-encrypted sessions via PKCS #1.
ModificadaAlta (7)19%—Microsoft FrontpageMicrosoft Internet Information ServerMicrosoft Personal WEB ServerNetscape Enterprise Server+16/2/199816/6/2026
Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
ModificadaMedia (5)6.2%💥 ExploitNovell WEB Server1/7/199616/6/2026
The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server.
ModificadaAlta (10)6.6%💥 ExploitNcsa WEB Server17/2/199516/6/2026
Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote access.
Orbitaley — Vulnerabilidades