Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3005▼ 69 respecto a la semana anterior
Críticas / altas1419▲ 52 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

43 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.3)3.2%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 has an Integer Overflow during Memory Allocation that causes an Out-of-Bounds Write.
ModificadaMedia (6.5)2.1%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.28 has a DHCP Out-of-bounds Read.
ModificadaAlta (7.3)9.3%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 has an IPv6OverIPv4 tunneling Out-of-bounds Read.
ModificadaCrítica (9)21%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 allows Remote Code execution via a single invalid DNS response.
ModificadaAlta (8.2)13%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.41 has an IPv4 tunneling Double Free.
AnalizadaMedia (5.4)18%⚠ Explotación activaTreck Tcp/ipDell Wyse 5050 All-in-one FirmwareDell Wyse 7030 FirmwareDell Wyse 5030 Firmware17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read.
ModificadaCrítica (9.1)19%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote attackers to trigger an information leak.
ModificadaCrítica (10)9.1%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 5.0.1.35 has an Out-of-Bounds Write via multiple malformed IPv6 packets.
ModificadaCrítica (10)37%—Treck Tcp/ip17/6/202017/6/2026
The Treck TCP/IP stack before 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.
ModificadaMedia (5.3)29%—Cisco Nx-osCisco UCS ManagerDigi SarosHP X3220nr Firmware+22/6/202017/6/2026
IP-in-IP protocol specifies IP Encapsulation within IP standard (RFC 2003, STD 1) that decapsulate and route IP-in-IP traffic is vulnerable to spoofing, access-control bypass and other unexpected behavior due to the lack of validation to verify network packets before decapsulation and routing.
ModificadaMedia (5)2.3%—HP TCP IP Services Openvms17/12/201417/6/2026
Multiple unspecified vulnerabilities in the POP implementation in HP OpenVMS TCP/IP 5.7 before ECO5 allow remote attackers to cause a denial of service via unspecified vectors.
ModificadaMedia (5)2.1%—HP TCP IP Services Openvms7/11/201116/6/2026
Unspecified vulnerability in the SMTP service implementation in HP TCP/IP Services 5.6 and 5.7 for OpenVMS allows remote attackers to cause a denial of service via unknown vectors.
ModificadaMedia (5)2.0%—HP TCP IP Services Openvms7/11/201116/6/2026
Unspecified vulnerability in the POP and IMAP service implementations in HP TCP/IP Services 5.6 and 5.7 for OpenVMS allows remote attackers to obtain sensitive information via unknown vectors.
ModificadaAlta (10)4.3%—HP Open VMS Tcp-ip Services28/3/200816/6/2026
Unspecified vulnerability in the SSH server in HP OpenVMS TCP/IP Services on OpenVMS on the Alpha platform with 5.4 before ECO 7, and on the Integrity and Alpha platforms with 5.5 before ECO 3 and 5.6 before ECO 2, allows remote attackers to obtain unspecified access via unknown vectors.
ModificadaMedia (4.6)0.78%—Compaq Tcp-ip Services2/4/200316/6/2026
The UCX POP server in HP TCP/IP services for OpenVMS 4.2 through 5.3 allows local users to truncate arbitrary files via the -logfile command line option, which overrides file system permissions because the server runs with the SYSPRV and BYPASS privileges.
ModificadaAlta (7.5)1.3%—Apple TCP IP Configuration Utility31/12/200216/6/2026
The default configuration of the TCP/IP printer configuration utility in Apple LaserWriter 12/640 PS printer contains a blank Telnet password, which allows remote attackers to gain access.
ModificadaMedia (5)75%—Digital OSF 1IBM AIXLinux KernelSCO Internet Faststart+518/12/199616/6/2026
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
ModificadaAlta (7.2)0.78%—InetBsdi BSD OSFreebsdIBM AIX+624/7/199616/6/2026
Local user gains root privileges via buffer overflow in rdist, via lookup() function.