Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2659▼ 692 respecto a la semana anterior
Críticas / altas1261▼ 300 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
583 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.39% | — | Symantec Altiris Deployment Solution | 6/11/2007 | 16/6/2026 | Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the "Enable key-based authentication to Deployment server" browser option, a different issue than CVE-2007-4380. | |
| Modificada | Media (6.9) | 0.33% | — | Symantec Altiris Deployment Solution | 18/10/2007 | 16/6/2026 | Unspecified vulnerability in Symantec Altiris Deployment Solution allows attackers to obtain authentication credentials via unknown vectors, aka "Authentication Credentials Information Leakage in Altiris Deployment Solution." NOTE: this description is based on a vague pre-advisory with no actionable information.… | |
| Modificada | Alta (7.2) | 0.35% | — | Symantec Altiris Deployment Solution | 16/8/2007 | 16/6/2026 | Aclient in Symantec Altiris Deployment Solution 6 before 6.8 SP2 (6.8.378) allows local users to gain local System privileges via the Log File Viewer. | |
| Modificada | Alta (7.5) | 2.2% | — | IBM Tivoli Provisioning Manager OS Deployment | 18/7/2007 | 16/6/2026 | The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attackers to cause a denial of service (rembo.exe crash and multiple service outage) via a read (RRQ) request with an invalid blksize (blocksize), which triggers a divide-by-zero error. | |
| Modificada | Alta (10) | 59% | 💥 Exploit | IBM Tivoli Provisioning Manager OS Deployment | 4/4/2007 | 16/6/2026 | The management service in IBM Tivoli Provisioning Manager for OS Deployment before 5.1 Fix Pack 2 does not properly handle multipart/form-data in HTTP POST requests, which allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via crafted POST requests to port 8080/tcp or 443/tcp. | |
| Modificada | Media (4.6) | 0.92% | 💥 Exploit | Altiris Client ServiceAltiris Deployment Solution | 16/5/2005 | 16/6/2026 | The Altiris Client Service for Windows (ACLIENT.EXE) 6.0.88 allows local users to disable password protection and access the administrative interface by finding and showing the "Altiris Client Service" hidden window, disabling the password protection, disabling the "Hide client tray icon box" option, then opening the… | |
| Modificada | Alta (10) | 2.6% | — | Altiris Deployment Server Extension FOR IBM Director | 31/12/2004 | 16/6/2026 | AClient.exe in Altiris Deployment Solution 6.x and 5.x does not require authentication from the first Deployment Server that it connects to, which allows remote malicious servers to gain administrator access. | |
| Modificada | Baja (2.1) | 0.38% | — | Symantec Powerquest Deploycenter | 31/12/2004 | 16/6/2026 | The stuffit.com executable on Symantec PowerQuest DeployCenter 5.5 boot disks allows local users to obtain sensitive information (an unencrypted password for a Windows domain account) via four "stuffit /f:stuffit.dat" invocations, possibly due to a buffer overflow. |