Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

33 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)3.2%💥 ExploitQualcomm Eudora27/6/200116/6/2026
Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.
ModificadaAlta (7.5)2.7%💥 ExploitQualcomm Eudora29/5/200116/6/2026
Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via an HTML email with a form that is activated from an image that the attacker spoofs as a link, which causes the user to execute the form and…
ModificadaMedia (5)0.83%—Qualcomm Eudora14/11/200016/6/2026
Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF).
ModificadaAlta (7.5)1.2%—Qualcomm EudoraQualcomm Eudora LightQualcomm Eudora PRO1/5/200016/6/2026
Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.
ModificadaAlta (7.5)3.5%💥 ExploitQualcomm Eudora28/4/200016/6/2026
Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka "Stealth Attachment."
ModificadaMedia (5)7.7%💥 ExploitMicrosoft FrontpageMicrosoft Internet ExplorerMicrosoft Outlook ExpressQualcomm Eudora27/8/199916/6/2026
Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell.
ModificadaMedia (5)0.79%—Qualcomm EudoraQualcomm Eudora Light29/7/199816/6/2026
Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mail message with certain dates, such as (1) dates before 1970, which cause a Divide By Zero error, or (2) dates that are 100 years after the current date, which causes a segmentation fault.
ModificadaMedia (5)5.5%💥 ExploitEudora Internet Mail Server14/4/199816/6/2026
Buffer overflow in Eudora Internet Mail Server (EIMS) 2.01 and earlier on MacOS systems allows remote attackers to cause a denial of service via a long USER command to port 106.
Orbitaley — Vulnerabilidades