Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2647▼ 688 respecto a la semana anterior
Críticas / altas1257▼ 290 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 277 respecto a la semana anterior
–

593 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaBaja (2.1)0.31%—FreebsdKDELinux Kernel18/11/199816/6/2026
KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable.
ModificadaAlta (7.2)0.42%—FreebsdKDELinux Kernel18/11/199816/6/2026
KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables.
ModificadaMedia (4.6)0.32%—FreebsdKDELinux Kernel18/11/199816/6/2026
KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.
ModificadaAlta (7.5)8.2%—Eric Allman VacationFreebsdHp-uxHP Vvos+316/11/199816/6/2026
Vacation program allows command execution by remote users through a sendmail command.
ModificadaAlta (7.5)2.1%—Bsdi BSD OSFreebsdOpenbsd4/11/199816/6/2026
IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash.
ModificadaMedia (5)1.7%—Freebsd13/10/199816/6/2026
TCP RST denial of service in FreeBSD.
ModificadaMedia (5.5)0.76%—Freebsd16/6/199816/6/2026
FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file on an NFS file system.
ModificadaAlta (7.5)1.1%—Freebsd1/5/199816/6/2026
FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks.
ModificadaAlta (10)1.4%—Bsdi BSD OSFreebsdNetbsdOpenbsd20/2/199816/6/2026
FreeBSD mmap function allows users to modify append-only or immutable files.
ModificadaAlta (7.2)0.36%—Bsdi BSD OSFreebsdNetbsdOpenbsd1/2/199816/6/2026
mmap function in BSD allows local attackers in the kmem group to modify memory through devices.
ModificadaMedia (5)1.4%—Bsdi BSD OSFreebsdOpenbsd1/2/199816/6/2026
The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.
ModificadaMedia (5)71%💥 ExploitDigital UnixFreebsdHp-uxIBM AIX+45/1/199816/6/2026
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
ModificadaAlta (7.5)2.0%—GNU InetWashington University Wu-ftpdCaldera OpenlinuxFreebsd+710/12/199716/6/2026
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
ModificadaBaja (2.1)0.30%—Freebsd29/10/199716/6/2026
The open() function in FreeBSD allows local attackers to write to arbitrary files.
ModificadaMedia (5.1)2.5%—Bsdi BSD OSFreebsdLinux KernelOpenbsd2/10/199716/6/2026
File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).
ModificadaBaja (2.1)0.30%—SGI IrixBSDFreebsdNetbsd+115/9/199716/6/2026
The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID.
ModificadaMedia (5)1.5%—FreebsdIBM AIXLinux KernelNetbsd1/7/199716/6/2026
The rwho/rwhod service is running, which exposes machine status and user information.
ModificadaMedia (6.4)8.3%—FreebsdLinux KernelMicrosoft Windows NTNetbsd1/7/199716/6/2026
Listening TCP ports are sequentially allocated, allowing spoofing attacks.
ModificadaAlta (7.5)3.5%—FreebsdRedhat Linux21/5/199716/6/2026
Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.
ModificadaBaja (2.1)0.80%💥 ExploitFreebsdSUN SolarisSunos17/5/199716/6/2026
The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
ModificadaAlta (7.2)1.2%💥 ExploitSGI IrixBsdi BSD OSFreebsdHp-ux+61/5/199716/6/2026
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
ModificadaAlta (7.5)1.3%—Freebsd7/4/199716/6/2026
Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and with /bin/date as the shell, which could allow attackers to gain access to certain system resources.
ModificadaAlta (9.3)1.3%—Freebsd5/3/199716/6/2026
Buffer overflow in FreeBSD lpd through long DNS hostnames.
ModificadaAlta (10)52%💥 ExploitBsdi BSD OSDebian LinuxDigital UltrixFreebsd+66/2/199716/6/2026
Buffer overflow of rlogin program using TERM environmental variable.
ModificadaMedia (5)1.3%—FreebsdIBM AIXSCO Internet FaststartSCO Open Desktop+31/1/199716/6/2026
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.