Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3023▼ 71 respecto a la semana anterior
Críticas / altas1419▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
651 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (1.2) | 0.31% | — | Python Virtualenv | 31/12/2011 | 16/6/2026 | virtualenv.py in virtualenv before 1.5 allows local users to overwrite arbitrary files via a symlink attack on a certain file in /tmp/. | |
| Modificada | Alta (9.3) | 4.4% | — | Google Idapython | 27/12/2011 | 16/6/2026 | The IDAPython plugin before 1.5.2.3 in IDA Pro allows user-assisted remote attackers to execute arbitrary code via a crafted IDB file, related to improper handling of certain swig_runtime_data files in the current working directory. | |
| Modificada | Alta (7.2) | 0.24% | — | Google APP Engine Python SDK | 30/10/2011 | 16/6/2026 | The sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly prevent use of the os module, which allows local users to bypass intended access restrictions and execute arbitrary commands via a file_blob_storage.os reference within the code parameter to _ah/admin/interactive/execute, a… | |
| Modificada | Alta (7.2) | 0.23% | — | Google APP Engine Python SDK | 30/10/2011 | 16/6/2026 | The sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly prevent os.popen calls, which allows local users to bypass intended access restrictions and execute arbitrary commands via a dev_appserver.RestrictedPathFunction._original_os reference within the code parameter to… | |
| Modificada | Alta (7.2) | 0.22% | — | Google APP Engine Python SDK | 30/10/2011 | 16/6/2026 | The FakeFile implementation in the sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly control the opening of files, which allows local users to bypass intended access restrictions and create arbitrary files via ALLOWED_MODES and ALLOWED_DIRS changes within the code parameter to… | |
| Modificada | Media (6.8) | 0.50% | — | Google APP Engine Python SDK | 30/10/2011 | 16/6/2026 | Cross-site request forgery (CSRF) vulnerability in _ah/admin/interactive/execute (aka the Interactive Console) in the SDK Console (aka Admin Console) in the Google App Engine Python SDK before 1.5.4 allows remote attackers to hijack the authentication of administrators for requests that execute arbitrary Python code… | |
| Modificada | Media (6.4) | 3.6% | — | Python | 24/5/2011 | 16/6/2026 | The urllib and urllib2 modules in Python 2.x before 2.7.2 and 3.x before 3.2.1 process Location headers that specify redirection to file: URLs, which makes it easier for remote attackers to obtain sensitive information or cause a denial of service (resource consumption) via a crafted URL, as demonstrated by the… | |
| Modificada | Media (5) | 3.8% | — | Python | 9/5/2011 | 16/6/2026 | The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI. | |
| Modificada | Media (4.3) | 2.3% | — | Pythonpaste Paste | 6/11/2010 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in the paste.httpexceptions implementation in Paste before 1.7.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving a 404 status code, related to (1) paste.urlparser.StaticURLParser, (2) paste.urlparser.PkgResourcesParser, (3)… | |
| Modificada | Media (4.3) | 2.8% | — | Python | 19/10/2010 | 16/6/2026 | Multiple race conditions in smtpd.py in the smtpd module in Python 2.6, 2.7, 3.1, and 3.2 alpha allow remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the accept function having an unexpected return value of None, an unexpected… | |
| Modificada | Media (5) | 3.2% | — | Python | 19/10/2010 | 16/6/2026 | The asyncore module in Python before 3.2 does not properly handle unsuccessful calls to the accept function, and does not have accompanying documentation describing how daemon applications should handle unsuccessful calls to the accept function, which makes it easier for remote attackers to conduct denial of service… | |
| Modificada | Media (4.3) | 1.4% | — | DAN Pascu Python-cjson | 2/7/2010 | 16/6/2026 | Dan Pascu python-cjson 1.0.5 does not properly handle a ['/'] argument to cjson.encode, which makes it easier for remote attackers to conduct certain cross-site scripting (XSS) attacks involving Firefox and the end tag of a SCRIPT element. | |
| Modificada | Media (6.8) | 1.7% | — | DAN Pascu Python-cjson | 2/7/2010 | 16/6/2026 | Buffer overflow in Dan Pascu python-cjson 1.0.5, when UCS-4 encoding is enabled, allows context-dependent attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors involving crafted Unicode input to the cjson.encode function. | |
| Modificada | Media (5) | 15% | — | Python | 27/5/2010 | 16/6/2026 | The audioop module in Python 2.7 and 3.2 does not verify the relationships between size arguments and byte string lengths, which allows context-dependent attackers to cause a denial of service (memory corruption and application crash) via crafted arguments, as demonstrated by a call to audioop.reverse with a one-byte… | |
| Modificada | Media (5) | 4.2% | — | PythonFedoraproject FedoraOpensuseSuse Linux Enterprise Server+1 | 27/5/2010 | 16/6/2026 | Multiple integer overflows in audioop.c in the audioop module in Python 2.6, 2.7, 3.1, and 3.2 allow context-dependent attackers to cause a denial of service (application crash) via a large fragment, as demonstrated by a call to audioop.lin2lin with a long string in the first argument, leading to a buffer overflow.… | |
| Modificada | Alta (7.5) | 4.9% | — | Python | 27/5/2010 | 16/6/2026 | Multiple buffer overflows in the RLE decoder in the rgbimg module in Python 2.5 allow remote attackers to have an unspecified impact via an image file containing crafted data that triggers improper processing within the (1) longimagedata or (2) expandrow function. | |
| Modificada | Alta (7.5) | 4.9% | — | Python | 27/5/2010 | 16/6/2026 | Integer overflow in rgbimgmodule.c in the rgbimg module in Python 2.5 allows remote attackers to have an unspecified impact via a large image that triggers a buffer overflow. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-3143.12. | |
| Modificada | Media (5) | 4.4% | — | Python | 27/5/2010 | 16/6/2026 | Buffer underflow in the rgbimg module in Python 2.5 allows remote attackers to cause a denial of service (application crash) via a large ZSIZE value in a black-and-white (aka B/W) RGB image that triggers an invalid pointer dereference. | |
| Modificada | Media (6.9) | 0.36% | — | Gnome Nautilus-python | 28/1/2009 | 16/6/2026 | Untrusted search path vulnerability in the Python language bindings for Nautilus (nautilus-python) allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983). | |
| Modificada | Media (6.9) | 0.49% | — | PythonFedoraproject FedoraCanonical Ubuntu Linux | 28/1/2009 | 16/6/2026 | Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier, and possibly later versions, prepends an empty string to sys.path when the argv[0] argument does not contain a path separator, which might allow local users to execute arbitrary code via a Trojan horse Python file in the… | |
| Modificada | Alta (10) | 3.0% | — | Python | 10/11/2008 | 16/6/2026 | Multiple integer overflows in Python 2.2.3 through 2.5.1, and 2.6, allow context-dependent attackers to have an unknown impact via a large integer value in the tabsize argument to the expandtabs method, as implemented by (1) the string_expandtabs function in Objects/stringobject.c and (2) the unicode_expandtabs… | |
| Modificada | Alta (7.5) | 21% | — | Python | 1/11/2008 | 16/6/2026 | Multiple integer overflows in imageop.c in the imageop module in Python 1.5.2 through 2.5.1 allow context-dependent attackers to break out of the Python VM and execute arbitrary code via large integer values in certain arguments to the crop function, leading to a buffer overflow, a different vulnerability than… | |
| Modificada | Media (6.4) | 2.2% | — | Debian Python-dns | 18/9/2008 | 16/6/2026 | PyDNS (aka python-dns) before 2.3.1-5 in Debian GNU/Linux does not use random source ports for DNS requests and does not use random transaction IDs for DNS retries, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: this vulnerability exists because… | |
| Modificada | Alta (7.2) | 0.39% | — | Python Software Foundation Python | 18/9/2008 | 16/6/2026 | Tools/faqwiz/move-faqwiz.sh (aka the generic FAQ wizard moving tool) in Python 2.4.5 might allow local users to overwrite arbitrary files via a symlink attack on a tmp$RANDOM.tmp temporary file. NOTE: there may not be common usage scenarios in which tmp$RANDOM.tmp is located in an untrusted directory. | |
| Modificada | Media (6.4) | 2.3% | — | Debian Python-dns | 18/9/2008 | 16/6/2026 | PyDNS (aka python-dns) before 2.3.1-4 in Debian GNU/Linux does not use random source ports or transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. |