Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
33 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 14% | — | HP Color Laserjet 3000HP Color Laserjet 3800HP Color Laserjet 4700HP Color Laserjet 4730+37 | 1/12/2011 | 16/6/2026 | The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware… | |
| Modificada | Alta (7.5) | 1.6% | — | Adbnewssender | 13/7/2009 | 16/6/2026 | Directory traversal vulnerability in maillinglist/admin/change_config.php in ADbNewsSender before 1.5.6 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the path_to_lang parameter. | |
| Modificada | Alta (7.5) | 1.9% | — | Adbnewssender | 13/7/2009 | 16/6/2026 | Directory traversal vulnerability in maillinglist/setup/step1.php.inc in ADbNewsSender before 1.5.6, and 2.0 before RC2, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the path_to_lang parameter to setup/index.php. | |
| Modificada | Alta (7.6) | 3.0% | — | HP 8100c Digital SenderHP 9100c Digital SenderHP 9200c Digital SenderHP 9250c Digital Sender+150 | 18/3/2009 | 16/6/2026 | The HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders has no management password by default, which makes it easier for remote attackers to obtain access. | |
| Modificada | Media (5.1) | 1.1% | — | HP 8100c Digital SenderHP 9100c Digital SenderHP 9200c Digital SenderHP 9250c Digital Sender+150 | 18/3/2009 | 16/6/2026 | Multiple cross-site request forgery (CSRF) vulnerabilities in the HP Embedded Web Server (EWS) on HP LaserJet Printers, Edgeline Printers, and Digital Senders allow remote attackers to hijack the intranet connectivity of arbitrary users for requests that (1) print documents via unknown vectors, (2) modify the network… | |
| Modificada | Alta (7.8) | 7.4% | — | HP 9200c Digital SenderHP Color Laserjet 4370mfpHP Color Laserjet 9500mfpHP Laserjet 2410+9 | 5/2/2009 | 16/6/2026 | Directory traversal vulnerability in the HP JetDirect web administration interface in the HP-ChaiSOE 1.0 embedded web server on the LaserJet 9040mfp, LaserJet 9050mfp, and Color LaserJet 9500mfp before firmware 08.110.9; LaserJet 4345mfp and 9200C Digital Sender before firmware 09.120.9; Color LaserJet 4730mfp before… | |
| Modificada | Media (4.3) | 1.0% | — | Adbnewssender | 4/2/2009 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) subscribing and (2) unsubscribing. | |
| Modificada | Alta (7.5) | 1.0% | — | Adbnewssender Project Adbnewssender | 4/2/2009 | 16/6/2026 | SQL injection vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in (1) opt_in_out.php.inc, (2) confirmation.php.inc, and (3) renewal.php.inc in mailinglist/. |