Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

33 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.0%💥 ExploitPolypager6/8/200816/6/2026
SQL injection vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to execute arbitrary SQL commands via the nr parameter to the default URI.
ModificadaMedia (6.8)2.6%—Jcoppens CbrpagerFedoraproject Fedora6/6/200816/6/2026
cbrPager before 0.9.17 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a (1) ZIP (aka .cbz) or (2) RAR (aka .cbr) archive filename.
ModificadaMedia (6.8)1.2%—Barry Jaspan Image Pager21/2/200716/6/2026
Cross-site scripting (XSS) vulnerability in the Barry Jaspan Image Pager 4.7.x-1.x-dev and 5.x-1.x-dev before 2007-02-08 module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to HTML entities and the IMG element.
ModificadaMedia (4.3)0.94%—Ajax Softwares Alipager3/7/200616/6/2026
Cross-site scripting (XSS) vulnerability in AliPAGER, possibly 1.5 and earlier, allows remote attackers to inject arbitrary web script or HTML via a chat line.
ModificadaMedia (4.3)1.1%—Roostercode Ajax Softwares Alipager12/5/200616/6/2026
Cross-site scripting (XSS) vulnerability in inc/elementz.php in AliPAGER 1.5 allows remote attackers to inject arbitrary web script or HTML via the ubild parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. NOTE: this issue might be resultant from SQL…
ModificadaMedia (6.4)1.3%—Ajax Softwares Alipager12/5/200616/6/2026
SQL injection vulnerability in inc/elementz.php in AliPAGER 1.5, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the ubild parameter.
ModificadaAlta (7.5)7.1%💥 ExploitAllegro ROM Pager1/6/200016/6/2026
Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request.
ModificadaMedia (5)1.9%—Yahoo Pager1/10/199916/6/2026
Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL within a message.
Orbitaley — Vulnerabilidades