Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
804 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in tiff12_print_page() in devices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 1.8% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A Division by Zero vulnerability in bj10v_print_page() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Analizada | Media (5.5) | 2.3% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in FloydSteinbergDitheringC() in contrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.1% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in GetNumWrongData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 1.8% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A null pointer dereference vulnerability in clj_media_size() in devices/gdevclj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 1.9% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 1.8% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A null pointer dereference vulnerability in compose_group_nonknockout_nonblend_isolated_allmask_common() in base/gxblend.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Analizada | Media (5.5) | 2.3% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Media (5.5) | 1.9% | — | Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux | 13/8/2020 | 17/6/2026 | A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51. | |
| Modificada | Crítica (9.8) | 94% | 💥 Exploit | Articatech WEB Proxy | 12/8/2020 | 17/6/2026 | Artica Web Proxy 4.30.00000000 allows remote attacker to bypass privilege detection and gain web backend administrator privileges through SQL injection of the apikey parameter in fw.login.php. | |
| Modificada | Alta (8.8) | 82% | 💥 Exploit | Articatech WEB Proxy | 12/8/2020 | 17/6/2026 | Artica Web Proxy 4.30.000000 allows an authenticated remote attacker to inject commands via the service-cmds parameter in cyrus.php. These commands are executed with root privileges via service_cmds_peform. | |
| Modificada | Crítica (9.8) | 5.2% | — | Artifex GhostscriptCanonical Ubuntu LinuxOpensuse Leap | 28/7/2020 | 17/6/2026 | A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52. Use of a non-standard PostScript operator can allow overriding of file access controls. The 'rsearch' calculation for the 'post' size resulted in a size that was too large, and could underflow to max uint32_t. This was fixed in commit… | |
| Modificada | Media (6.1) | 1.8% | 💥 PoC | Articatech Artica Proxy | 20/7/2020 | 17/6/2026 | An issue was discovered in Artica Proxy CE before 4.28.030.418. Reflected XSS exists via these search fields: real time request, System Events, Proxy Events, Proxy Objects, and Firewall objects. | |
| Modificada | Alta (7.5) | 2.2% | 💥 PoC | Articatech Artica Proxy | 20/7/2020 | 17/6/2026 | An issue was discovered in Artica Proxy CE before 4.28.030.418. SQL Injection exists via the Netmask, Hostname, and Alias fields. | |
| Modificada | Media (6.1) | 2.5% | 💥 PoC | Articatech Artica Proxy | 15/7/2020 | 17/6/2026 | An issue was discovered in Artica Proxy before 4.30.000000. Stored XSS exists via the Server Domain Name, Your Email Address, Group Name, MYSQL Server, Database, MYSQL Username, Group Name, and Task Description fields. | |
| Modificada | Crítica (9.8) | 9.3% | 💥 PoC | Articatech Artica Proxy | 22/6/2020 | 17/6/2026 | Artica Proxy before 4.30.000000 Community Edition allows OS command injection via the Netbios name, Server domain name, dhclient_mac, Hostname, or Alias field. NOTE: this may overlap CVE-2020-10818. | |
| Modificada | Alta (7.5) | 54% | 💥 Exploit | Articatech Artica Proxy | 22/6/2020 | 17/6/2026 | Artica Proxy before 4.30.000000 Community Edition allows Directory Traversal via the fw.progrss.details.php popup parameter. | |
| Modificada | Media (6.1) | 6.2% | — | Jenkins Subversion Partial Release Manager | 3/6/2020 | 17/6/2026 | Jenkins Subversion Partial Release Manager Plugin 1.0.1 and earlier does not escape the error message for the repository URL field form validation, resulting in a reflected cross-site scripting vulnerability. | |
| Modificada | Media (6.5) | 0.85% | — | Jenkins Copy Artifact | 6/5/2020 | 17/6/2026 | Jenkins Copy Artifact Plugin 1.43.1 and earlier performs improper permission checks, allowing attackers to copy artifacts from jobs they have no permission to access. | |
| Modificada | Crítica (9.8) | 2.7% | — | Artifex Jbig2decDebian LinuxOpensuse Leap | 27/4/2020 | 17/6/2026 | jbig2_image_compose in jbig2_image.c in Artifex jbig2dec before 0.18 has a heap-based buffer overflow. |