Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2598▼ 321 respecto a la semana anterior
Críticas / altas1342▲ 74 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
943 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.71% | — | Javamelody Project Javamelody | 14/6/2018 | 17/6/2026 | JavaMelody through 1.60.0 has XSS via the counter parameter in a clear_counter action to the /monitoring URI. | |
| Modificada | Alta (7.5) | 2.4% | — | SAP Hana DatabaseSAP UISAP UI5SAP UI5 Java | 12/6/2018 | 17/6/2026 | SAP UI5 did not validate user input before adding it to the DOM structure. This may lead to malicious user-provided JavaScript code being added to the DOM that could steal user information. Software components affected are: SAP Hana Database 1.00, 2.00; SAP UI5 1.00; SAP UI5 (Java) 7.30, 7.31, 7.40, 7,50; SAP UI 7.40,… | |
| Modificada | Crítica (9.8) | 4.0% | — | Themidnightcoders Weborb FOR Java | 11/6/2018 | 17/6/2026 | The Java implementation of AMF3 deserializers used by WebORB for Java by Midnight Coders, version 5.1.1.0, allows external entity references (XXEs) from XML documents embedded within AMF3 messages. If the XML parsing is handled incorrectly it could potentially expose sensitive data on the server, denial of service, or… | |
| Modificada | Crítica (9.8) | 8.2% | — | Themidnightcoders Weborb FOR Java | 11/6/2018 | 17/6/2026 | The Java implementations of AMF3 deserializers in WebORB for Java by Midnight Coders, version 5.1.1.0, derive class instances from java.io.Externalizable rather than the AMF3 specification's recommendation of flash.utils.IExternalizable. A remote attacker with the ability to spoof or control an RMI server connection… | |
| Modificada | Alta (7.5) | 3.6% | — | Bouncycastle Bc-javaBouncycastle Fips Java APIDebian LinuxOracle API Gateway+16 | 5/6/2018 | 17/6/2026 | Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and earlier have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added certainty may have less M-R tests than expected. This appears to be fixed in versions BC 1.60 beta 4 and later, BC-FJA… | |
| Modificada | Alta (7.4) | 2.2% | — | Bouncycastle Bc-java | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the ECIES implementation allowed the use of ECB mode. This mode is regarded as unsafe and support for it has been removed from the provider. | |
| Modificada | Baja (3.7) | 2.2% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the other party DH public key is not fully validated. This can cause issues as invalid keys can be used to reveal details about the other party's private key where static Diffie-Hellman is in use. As of release 1.56 the key parameters are checked on agreement… | |
| Modificada | Media (5.9) | 2.6% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the DHIES/ECIES CBC mode vulnerable to padding oracle attack. For BC 1.55 and older, in an environment where timings can be easily observed, it is possible with enough observations to identify when the decryption is failing due to padding. | |
| Modificada | Alta (7.4) | 2.2% | — | Bouncycastle Bc-java | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the DHIES implementation allowed the use of ECB mode. This mode is regarded as unsafe and support for it has been removed from the provider. | |
| Modificada | Alta (7.5) | 3.2% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the DSA key pair generator generates a weak private key if used with default values. If the JCA key pair generator is not explicitly initialised with DSA parameters, 1.55 and earlier generates a private value assuming a 1024 bit key size. In earlier releases… | |
| Modificada | Alta (7.5) | 1.8% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier ECDSA does not fully validate ASN.1 encoding of signature on verification. It is possible to inject extra elements in the sequence making up the signature and still have it validate, which in some cases may allow the introduction of 'invisible' data into a… | |
| Modificada | Media (5.9) | 2.6% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier DSA signature generation is vulnerable to timing attack. Where timings can be closely observed for the generation of signatures, the lack of blinding in 1.55, or earlier, may allow an attacker to gain information about the signature's k value and ultimately… | |
| Modificada | Alta (7.5) | 2.3% | — | Bouncycastle Bc-java | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider versions 1.51 to 1.55, a carry propagation bug was introduced in the implementation of squaring for several raw math classes have been fixed (org.bouncycastle.math.raw.Nat???). These classes are used by our custom elliptic curve implementations (org.bouncycastle.math.ec.custom.**), so… | |
| Modificada | Media (5.3) | 2.7% | — | Bouncycastle Bc-javaDebian Linux | 4/6/2018 | 17/6/2026 | In the Bouncy Castle JCE Provider version 1.55 and earlier the primary engine class used for AES was AESFastEngine. Due to the highly table driven approach used in the algorithm it turns out that if the data channel on the CPU can be monitored the lookup table accesses are sufficient to leak information on the AES key… | |
| Analizada | Alta (7.5) | 1.9% | — | Bouncycastle Legion-of-the-bouncy-castle-java-crytography-apiRedhat SatelliteRedhat Satellite CapsuleCanonical Ubuntu Linux+1 | 1/6/2018 | 17/6/2026 | In Bouncy Castle JCE Provider version 1.55 and earlier the DSA does not fully validate ASN.1 encoding of signature on verification. It is possible to inject extra elements in the sequence making up the signature and still have it validate, which in some cases may allow the introduction of 'invisible' data into a… | |
| Modificada | Media (4.7) | 1.1% | — | SAP Netweaver Java WEB Container AND Http Service EngineSAP J2ee Engine Server Core | 9/5/2018 | 17/6/2026 | SAP NetWeaver Application Server Java Web Container and HTTP Service (Engine API, from 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; J2EE Engine Server Core 7.11, 7.30, 7.31, 7.40, 7.50) do not sufficiently encode user controlled inputs, resulting in a content spoofing vulnerability when error pages are displayed. | |
| Modificada | Media (5.6) | 1.2% | — | Microsoft C Software Development KITMicrosoft Csharp Software Development KITMicrosoft Java Software Development KIT | 9/5/2018 | 17/6/2026 | A spoofing vulnerability exists when the Azure IoT Device Provisioning AMQP Transport library improperly validates certificates over the AMQP protocol, aka "Azure IoT SDK Spoofing Vulnerability." This affects C# SDK, C SDK, Java SDK. | |
| Modificada | Media (4.4) | 0.26% | — | Bouncycastle Bc-javaRedhat SatelliteRedhat Satellite Capsule | 16/4/2018 | 17/6/2026 | The default BKS keystore use an HMAC that is only 16 bits long, which can allow an attacker to compromise the integrity of a BKS keystore. Bouncy Castle release 1.47 changes the BKS format to a format which uses a 160 bit HMAC instead. This applies to any BKS keystore generated prior to BC 1.47. For situations where… | |
| Modificada | Media (5.3) | 4.4% | — | Sparkjava Spark | 31/3/2018 | 17/6/2026 | In Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or relative pathnames, as demonstrated by file: URLs and directory traversal sequences. NOTE: this product is unrelated to Ignite Realtime Spark. | |
| Modificada | Alta (8.1) | 2.1% | — | IBM Java SDK | 22/2/2018 | 17/6/2026 | Under certain circumstances, a flaw in the J9 JVM (IBM SDK, Java Technology Edition 7.1 and 8.0) allows untrusted code running under a security manager to elevate its privileges. IBM X-Force ID: 138823. | |
| Modificada | Media (6.1) | 0.96% | — | SAP Netweaver Java WEB Application | 14/2/2018 | 17/6/2026 | The SAML 2.0 service provider of SAP Netweaver AS Java Web Application, 7.50, does not sufficiently encode user controlled inputs, which results in Cross-Site Scripting (XSS) vulnerability. | |
| Modificada | Baja (3.7) | 1.9% | — | Oracle Java Advanced Management Console | 18/1/2018 | 17/6/2026 | Vulnerability in the Java Advanced Management Console component of Oracle Java SE (subcomponent: Server). The supported version that is affected is Java Advanced Management Console: 2.8. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java… | |
| Modificada | Alta (7.8) | 0.54% | — | Oracle Java ME | 18/1/2018 | 17/6/2026 | Vulnerability in the Java ME SDK component of Oracle Java Micro Edition (subcomponent: Installer). The supported version that is affected is 8.3. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Java ME SDK executes to compromise Java ME SDK. Successful attacks… | |
| Modificada | Media (5.9) | 24% | — | Bouncycastle Bc-java | 13/12/2017 | 17/6/2026 | BouncyCastle TLS prior to version 1.0.3, when configured to use the JCE (Java Cryptography Extension) for cryptographic functions, provides a weak Bleichenbacher oracle when any TLS cipher suite using RSA key exchange is negotiated. An attacker can recover the private key from a vulnerable application. This… | |
| Modificada | Alta (7.5) | 17% | — | Apache Xerces2 Java | 30/10/2017 | 16/6/2026 | Apache Xerces2 Java Parser before 2.12.0 allows remote attackers to cause a denial of service (CPU consumption) via a crafted message to an XML service, which triggers hash table collisions. |