Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
46 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.6) | 2.7% | 💥 Exploit | Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 10/12/1999 | 16/6/2026 | The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed. | |
| Modificada | Alta (7.8) | 7.9% | — | Microsoft Windows 95Microsoft Windows 98 | 29/11/1999 | 16/6/2026 | A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords. | |
| Modificada | Alta (7.6) | 15% | 💥 Exploit | Microsoft Windows 95Microsoft Windows 98 | 12/11/1999 | 16/6/2026 | The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability. | |
| Modificada | Alta (7.5) | 12% | — | Microsoft Terminal ServerMicrosoft Windows 95Microsoft Windows 98seMicrosoft Windows NT | 20/9/1999 | 16/6/2026 | Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed Route Pointer" vulnerability. | |
| Modificada | Baja (2.6) | 8.0% | 💥 Exploit | Microsoft Windows 95Microsoft Windows 98 | 16/8/1999 | 16/6/2026 | Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument. | |
| Modificada | Alta (7.5) | 10% | 💥 Exploit | Microsoft Windows 2000Microsoft Windows 95Microsoft Windows 98seSUN Solaris+1 | 11/8/1999 | 16/6/2026 | DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes. | |
| Modificada | Alta (7.8) | 26% | 💥 Exploit | Microsoft Windows 2000Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 3/7/1999 | 16/6/2026 | Denial of service in various Windows systems via malformed, fragmented IGMP packets. | |
| Modificada | Baja (2.6) | 5.8% | — | Microsoft ExcelMicrosoft Windows 2000Microsoft Windows 95Microsoft Windows 98+1 | 7/5/1999 | 16/6/2026 | A remote attacker can disable the virus warning mechanism in Microsoft Excel 97. | |
| Modificada | Media (5) | 17% | — | Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 12/4/1999 | 16/6/2026 | Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files. | |
| Modificada | Media (5) | 13% | — | Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 8/3/1999 | 16/6/2026 | Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables. | |
| Modificada | Media (5) | 14% | — | Microsoft Windows 95Microsoft Windows 98 | 6/2/1999 | 16/6/2026 | Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing. | |
| Modificada | Media (5) | 13% | — | Microsoft Windows 95Microsoft Windows NT | 5/10/1998 | 16/6/2026 | TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target's last sequence number from the resulting packet, then spoofing a reset to the target. | |
| Modificada | Media (5) | 6.0% | — | Microsoft Windows 95Microsoft Windows NT | 13/2/1998 | 16/6/2026 | Bonk variation of teardrop IP fragmentation denial of service. | |
| Modificada | Alta (7.5) | 73% | 💥 Exploit | Jgaa WarftpdMicrosoft Windows 95Microsoft Windows NT | 1/2/1998 | 16/6/2026 | Buffer overflow in War FTP allows remote execution of commands. | |
| Modificada | Media (5) | 35% | 💥 Exploit | Hp-uxMicrosoft Windows 95Microsoft Windows NTNetbsd+1 | 16/12/1997 | 16/6/2026 | Teardrop IP denial of service. | |
| Modificada | Media (5) | 9.3% | — | Caldera OpenlinuxHp-uxMicrosoft Windows 95Microsoft Windows NT+1 | 16/12/1997 | 16/6/2026 | A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2. | |
| Modificada | Media (5) | 96% | 💥 Exploit | Cisco IOSGNU InetMicrosoft WinsockHp-ux+4 | 1/12/1997 | 16/6/2026 | Land IP denial of service. | |
| Modificada | Media (5) | 21% | 💥 Exploit | Microsoft Windows 2000Microsoft Windows 95Microsoft Windows NTSCO Openserver | 1/7/1997 | 16/6/2026 | Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke. | |
| Modificada | Media (5) | 6.0% | — | Microsoft Windows 95Microsoft Windows NT | 1/1/1997 | 16/6/2026 | Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share. | |
| Modificada | Alta (7.5) | 5.6% | — | Microsoft OutlookMicrosoft Windows 2000Microsoft Windows 95Microsoft Windows NT | 1/1/1997 | 16/6/2026 | A NETBIOS/SMB share password is the default, null, or missing. | |
| Modificada | Alta (7.5) | 4.8% | — | Microsoft Windows 95 | 1/1/1997 | 16/6/2026 | A NETBIOS/SMB share password is guessable. |