Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2678▼ 660 respecto a la semana anterior
Críticas / altas1266▼ 293 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
616 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 8.4% | — | HP Openview Network Node Manager | 8/2/2009 | 16/6/2026 | Buffer overflow in the ovlaunch CGI program in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 on Windows allows remote attackers to execute arbitrary code via a crafted Host parameter. NOTE: this issue may be partially covered by CVE-2009-0205. | |
| Modificada | Alta (7.8) | 3.5% | — | HP Openview Network Node Manager | 8/2/2009 | 16/6/2026 | HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to obtain sensitive information via (1) a crafted request to the nnmRptConfig.exe CGI program, which reveals the pathname of log directories; or (2) a crafted parameter in a request to the ovlaunch.exe CGI program, which reveals… | |
| Modificada | Alta (10) | 24% | — | HP Openview Network Node Manager | 8/2/2009 | 16/6/2026 | HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via shell metacharacters in argument fields to the (1) webappmon.exe or (2) OpenView5.exe CGI program. NOTE: this issue may be partially covered by CVE-2009-0205. | |
| Modificada | Alta (10) | 63% | 💥 Exploit | HP Openview Network Node Manager | 8/1/2009 | 16/6/2026 | Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allow remote attackers to execute arbitrary code via (1) long string parameters to the OpenView5.exe CGI program; (2) a long string parameter to the OpenView5.exe CGI program, related to ov.dll; or a long string… | |
| Modificada | Media (4.3) | 3.1% | — | HP Openview Performance AgentHP Openview ReporterHP Performance AgentHP Reporter | 23/10/2008 | 16/6/2026 | The Shared Trace Service (aka OVTrace) in HP Performance Agent C.04.70 (aka 4.70), HP OpenView Performance Agent C.04.60 and C.04.61, HP Reporter 3.8, and HP OpenView Reporter 3.7 (aka Report 3.70) allows remote attackers to cause a denial of service via an unspecified series of RPC requests (aka Trace Event Messages)… | |
| Modificada | Alta (7.8) | 2.9% | — | HP Openview Network Node Manager | 13/10/2008 | 16/6/2026 | Unspecified vulnerability in ovtopmd in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to cause a denial of service via unknown vectors, a different vulnerability than CVE-2008-3536, CVE-2008-3537, and CVE-2008-3544. NOTE: due to insufficient details from the vendor, it is not… | |
| Modificada | Alta (9) | 18% | 💥 Exploit | HP Openview Network Node Manager | 13/10/2008 | 16/6/2026 | Multiple stack-based buffer overflows in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, and possibly 7.01, 7.50, and 7.53, allow remote attackers to execute arbitrary code via a long (1) REQUEST_SEV_CHANGE (aka number 47), (2) REQUEST_SAVE_STATE (aka number 61), or (3) REQUEST_RESTORE_STATE (aka number… | |
| Modificada | Alta (7.8) | 4.7% | — | HP Openview Network Node Manager | 3/9/2008 | 16/6/2026 | Unspecified vulnerability in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to cause a denial of service via unknown vectors, a different vulnerability than CVE-2008-3536. | |
| Modificada | Alta (7.8) | 4.7% | — | HP Openview Network Node Manager | 3/9/2008 | 16/6/2026 | Unspecified vulnerability in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to cause a denial of service via unknown vectors, a different vulnerability than CVE-2008-3537. | |
| Modificada | Alta (7.8) | 3.1% | — | EPS Probe BuilderHP Openview Internet Services | 29/7/2008 | 16/6/2026 | The Probe Builder Service (aka PBOVISServer.exe) in European Performance Systems (EPS) Probe Builder 2.2 before A.02.20.901, as used in HP OpenView Internet Services (OVIS) on Windows, allows remote attackers to kill arbitrary processes via a process ID number in an unspecified opcode. | |
| Modificada | Alta (10) | 2.4% | — | HP Oracle FOR Openview | 17/7/2008 | 16/6/2026 | Unspecified vulnerability in HP Oracle for OpenView (OfO) 8.1.7, 9.1.01, 9.2, 9.2.0, 10g, and 10gR2 has unknown impact and attack vectors, possibly related to the July 2008 Oracle Critical Patch Update. | |
| Modificada | Alta (9.3) | 16% | 💥 Exploit | Pagesperso-orange GFL SDKPagesperso-orange NconvertPagesperso-orange Xnview | 24/6/2008 | 16/6/2026 | Stack-based buffer overflow in NConvert 4.92, GFL SDK 2.82, and XnView 1.93.6 on Windows and 1.70 on Linux and FreeBSD allows user-assisted remote attackers to execute arbitrary code via a crafted format keyword in a Sun TAAC file. | |
| Modificada | Media (4.3) | 1.9% | — | HP Openview Network Node Manager | 16/4/2008 | 16/6/2026 | The ovtopmd service in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (exit) by sending a 0x36 packet (exit request). | |
| Modificada | Media (5) | 2.5% | — | HP Openview Network Node Manager | 16/4/2008 | 16/6/2026 | ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (hang) via certain requests that do not provide all required arguments. | |
| Modificada | Media (5) | 5.1% | 💥 Exploit | HP Openview Network Node Manager | 16/4/2008 | 16/6/2026 | Directory traversal vulnerability in OpenView5.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to read arbitrary files via directory traversal sequences in the Action parameter. | |
| Modificada | Alta (7.8) | 4.7% | — | HP Openview Network Node Manager | 16/4/2008 | 16/6/2026 | ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, 7.53, and possibly other versions allows remote attackers to cause a denial of service (crash) via certain requests that specify a large number of sub-arguments, which triggers a NULL pointer dereference due to memory allocation failure. | |
| Modificada | Alta (10) | 12% | 💥 Exploit | HP Openview Network Node Manager | 16/4/2008 | 16/6/2026 | Integer signedness error in ovspmd.exe in HP OpenView Network Node Manager (OV NNM) 8.01, and 7.53 and earlier, allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a long request to TCP port 8886 that begins with a certain negative integer, which passes a signed comparison… | |
| Modificada | Alta (10) | 74% | 💥 Exploit | HP Openview Network Node Manager | 8/4/2008 | 16/6/2026 | Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request processed by ovas.exe, as demonstrated by a certain topology/homeBaseView request. NOTE: some of these details are… | |
| Modificada | Media (6.8) | 8.4% | 💥 Exploit | Pierreegougelet Xnview | 2/4/2008 | 16/6/2026 | Stack-based buffer overflow in XnView 1.92 and 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long FontName parameter in a slideshow (.sld) file, a different vector than CVE-2008-1461. | |
| Modificada | Alta (7.6) | 11% | 💥 Exploit | Xnview | 24/3/2008 | 16/6/2026 | Buffer overflow in XnView 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long filename argument on the command line. NOTE: it is unclear whether there are common handler configurations in which this argument is controlled by an attacker. | |
| Modificada | Alta (7.8) | 4.4% | — | HP Openview Network Node Manager | 6/2/2008 | 16/6/2026 | ovtopmd in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to cause a denial of service (crash) via a crafted TCP request that triggers an out-of-bounds memory access. | |
| Modificada | Alta (9.3) | 4.6% | — | Pierreegougelet GFL SDKPierreegougelet NconvertPierreegougelet Xnview | 31/1/2008 | 16/6/2026 | Stack-based buffer overflow in Pierre-emmanuel Gougelet (1) XnView 1.91 and 1.92, (2) NConvert 4.85, and (3) libgfl280.dll in GFL SDK 2.870 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafted Radiance RGBE (.hdr) file. | |
| Modificada | Alta (9.3) | 8.7% | 💥 Exploit | Irfanview | 30/1/2008 | 16/6/2026 | fpx.dll 3.9.8.0 in the FlashPix plugin for IrfanView 4.10 allows remote attackers to execute arbitrary code via a crafted FlashPix (.FPX) file, which triggers heap corruption. NOTE: some of these details are obtained from third party information. | |
| Modificada | Media (4.3) | 2.4% | — | HP Openview Network Node Manager | 13/12/2007 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Alta (10) | 70% | 💥 Exploit | HP Openview Network Node Manager | 13/12/2007 | 16/6/2026 | Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to… |