Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

2526 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)53%💥 ExploitMicrosoft Internet ExplorerMicrosoft Edge15/2/201817/6/2026
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the scripting engine handles…
ModificadaMedia (6.5)0.91%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, using IGS Interpreter service.
ModificadaAlta (8.8)1.5%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user may retrieve information on SAP Internet Graphic Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, overwrite existing image or corrupt other type of files.
ModificadaMedia (6.5)1.0%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions an unauthenticated malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, services and/or system files.
ModificadaAlta (7.5)15%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions SAP Internet Graphics Server (IGS) 7.20, 7.20EXT, 7.45, 7.49, 7.53, fails to validate XML External Entity appropriately causing the SAP Internet Graphics Server (IGS) to become unavailable.
ModificadaAlta (7.5)41%💥 ExploitSAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions SAP Internet Graphics Server (IGS) 7.20, 7.20EXT, 7.45, 7.49, 7.53, fails to validate XML External Entity appropriately causing the SAP Internet Graphics Server (IGS) to become unavailable.
ModificadaMedia (6.5)0.91%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, via IGS portwatcher service.
ModificadaMedia (6.5)0.91%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, via IGS Chart service.
ModificadaMedia (5.7)0.70%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user can inject log files of SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53, hiding important information in the log file.
ModificadaMedia (6.1)0.64%—SAP Internet Graphics Server14/2/201817/6/2026
Stored cross-site scripting vulnerability in SAP internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53.
ModificadaMedia (6.5)0.85%—SAP Internet Graphics Server14/2/201817/6/2026
A vulnerability in the SAP internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, could allow a malicious user to obtain information on ports, which is not available to the user otherwise.
ModificadaMedia (6.5)0.98%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user provoking an out of bounds buffer overflow can prevent legitimate users from accessing the SAP Internet Graphics Server (IGS), 7.20, 7.20EXT, 7.45, 7.49, 7.53.
ModificadaMedia (6.5)0.91%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user provoking a divide by zero crash can prevent legitimate users from accessing the SAP Internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, and its services.
ModificadaMedia (6.5)0.91%—SAP Internet Graphics Server14/2/201817/6/2026
Under certain conditions a malicious user provoking a Null Pointer dereference can prevent legitimate users from accessing the SAP Internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, and its services.
ModificadaMedia (6.1)0.64%—SAP Internet Graphics Server14/2/201817/6/2026
Reflected cross-site scripting vulnerability in SAP internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53.
ModificadaMedia (6.5)0.85%—SAP Internet Graphics Server14/2/201817/6/2026
A vulnerability in the SAP internet Graphics Server, 7.20, 7.20EXT, 7.45, 7.49, 7.53, could allow a malicious user to store graphics in a controlled area and as such gain information from system area, which is not available to the user otherwise.
ModificadaAlta (7.5)9.8%—Microsoft Internet Explorer8/2/201817/6/2026
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2810, CVE-2014-2811, CVE-2014-2822, CVE-2014-2823, CVE-2014-4057,…
ModificadaAlta (7.5)8.7%—Microsoft Internet Explorer8/2/201817/6/2026
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2810, CVE-2014-2811, CVE-2014-2822, CVE-2014-2823, CVE-2014-4057,…
ModificadaAlta (7.5)8.4%—Microsoft Internet Explorer8/2/201817/6/2026
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0304.
ModificadaAlta (7.5)7.7%—Microsoft Internet Explorer8/2/201817/6/2026
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2787, CVE-2014-2790, CVE-2014-2802, and CVE-2014-2806.
ModificadaAlta (8)1.7%—Oracle Internet Directory18/1/201817/6/2026
Vulnerability in the Oracle Internet Directory component of Oracle Fusion Middleware (subcomponent: Oracle Directory Services Manager). Supported versions that are affected are 11.1.1.7.0, 11.1.1.9.0 and 12.2.1.3.0. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to…
ModificadaMedia (5.5)0.29%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
In K7 Antivirus Premium before 15.1.0.53, user-controlled input to the K7Sentry device is not sufficiently authenticated: a local user with a LOW integrity process can access a raw hard disk by sending a specific IOCTL.
ModificadaAlta (7)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
ModificadaMedia (5.5)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
In K7 Antivirus Premium before 15.1.0.53, user-controlled input can be used to allow local users to write to arbitrary memory locations.
ModificadaAlta (7)0.27%—K7computing AntivirusK7computing EndpointK7computing Internet SecurityK7computing Total Security+116/1/201817/6/2026
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.