Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
33 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 3.2% | 💥 Exploit | Qualcomm Eudora | 27/6/2001 | 16/6/2026 | Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags. | |
| Modificada | Alta (7.5) | 2.7% | 💥 Exploit | Qualcomm Eudora | 29/5/2001 | 16/6/2026 | Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via an HTML email with a form that is activated from an image that the attacker spoofs as a link, which causes the user to execute the form and… | |
| Modificada | Media (5) | 0.83% | — | Qualcomm Eudora | 14/11/2000 | 16/6/2026 | Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF). | |
| Modificada | Alta (7.5) | 1.2% | — | Qualcomm EudoraQualcomm Eudora LightQualcomm Eudora PRO | 1/5/2000 | 16/6/2026 | Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names. | |
| Modificada | Alta (7.5) | 3.5% | 💥 Exploit | Qualcomm Eudora | 28/4/2000 | 16/6/2026 | Eudora 4.x allows remote attackers to bypass the user warning for executable attachments such as .exe, .com, and .bat by using a .lnk file that refers to the attachment, aka "Stealth Attachment." | |
| Modificada | Media (5) | 7.7% | 💥 Exploit | Microsoft FrontpageMicrosoft Internet ExplorerMicrosoft Outlook ExpressQualcomm Eudora | 27/8/1999 | 16/6/2026 | Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote malicious web site or HTML emails to cause a denial of service (100% CPU consumption) via large HTML form fields such as text inputs in a table cell. | |
| Modificada | Media (5) | 0.79% | — | Qualcomm EudoraQualcomm Eudora Light | 29/7/1998 | 16/6/2026 | Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mail message with certain dates, such as (1) dates before 1970, which cause a Divide By Zero error, or (2) dates that are 100 years after the current date, which causes a segmentation fault. | |
| Modificada | Media (5) | 5.5% | 💥 Exploit | Eudora Internet Mail Server | 14/4/1998 | 16/6/2026 | Buffer overflow in Eudora Internet Mail Server (EIMS) 2.01 and earlier on MacOS systems allows remote attackers to cause a denial of service via a long USER command to port 106. |