Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2723▼ 319 respecto a la semana anterior
Críticas / altas1277▼ 191 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)210▼ 117 respecto a la semana anterior
670 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 0.31% | — | Cisco Secure Services ClientCisco Security AgentCisco Trust AgentMeetinghouse Aegis Secureconnect Client | 22/2/2007 | 16/6/2026 | Cisco Secure Services Client (CSSC) versiones 4.x, Trust Agent versiones 1.x y 2.x, Cisco Security Agent (CSA) versiones 5.0 y 5.1 (cuando ha sido desplegado un Trust Agent vulnerable), y el Meetinghouse AEGIS SecureConnect Client, usan una Discretionary Access Control Lists (DACL) predeterminada y no segura para la… | |
| Modificada | Media (6.8) | 2.4% | 💥 Exploit | Mxbb Meeting | 20/12/2006 | 16/6/2026 | Vulnerabilidad PHP de inclusión remota de archivo en pages/meeting_constants.php en Meeting (mx_meeting) 1.1.2 y modulos anteriores para mxBB permite a un atacante remoto ejecutar código PHP de su elección a través de una URL en el parámetro module_root_path. | |
| Modificada | Alta (7.5) | 15% | 💥 Exploit | Rhode Island Secretary OF State Open Meetings Filing System | 26/10/2006 | 16/6/2026 | Vulnerabilidad múltiples de inclusión remota de archivo en PHP en Rhode Island Open Meetings Filing Application (OMFA) permiten a atacantes remotos ejecutar código PHP de su elección mediante una URL en el parámetro PROJECT_ROOT de (1) editmeetings/session.php, (2) email/session.php, (3) entityproperties/session.php,… | |
| Modificada | Alta (7.5) | 3.2% | 💥 Exploit | Eduha Meeting | 22/6/2006 | 16/6/2026 | Vulnerabilidad de subida de archivos sin restricción en index.php en Eduha Meeting , permite a atacantes saltarse los controles de seguridad y ejecutar código arbitrario en php mediante la acción "añadir" | |
| Modificada | Alta (7.8) | 23% | — | Microsoft Netmeeting | 9/6/2006 | 16/6/2026 | Unspecified vulnerability in Microsoft NetMeeting 3.01 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly execute arbitrary code via crafted inputs that trigger memory corruption. | |
| Modificada | Media (4.3) | 1.2% | — | PHP Lite Meeting Reserve | 28/3/2006 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in searchresult.php in Meeting Reserve 1.0 beta allows remote attackers to inject arbitrary web script or HTML via the search_term parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | |
| Modificada | Media (5) | 83% | 💥 Exploit | Cisco Agent DesktopCisco E-mail ManagerCisco Emergency ResponderCisco Intelligent Contact Manager+72 | 31/5/2005 | 16/6/2026 | Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old. | |
| Modificada | Alta (7.8) | 2.3% | — | First Virtual Communications Click TO Meet ExpressFirst Virtual Communications Click TO Meet PremierFirst Virtual Communications Conference ServerFirst Virtual Communications V-gate | 31/12/2004 | 16/6/2026 | Multiple vulnerabilities in the H.323 protocol implementation for First Virtual Communications Click to Meet Express (when used with H.323 conferencing endpoints), Click to Meet Premier, Conference Server, and V-Gate allow remote attackers to cause a denial of service, as demonstrated by the NISCC/OUSPG PROTOS test… | |
| Modificada | Alta (7.5) | 81% | 💥 Exploit | Microsoft NetmeetingMicrosoft Windows 2000Microsoft Windows 2003 ServerMicrosoft Windows 98+3 | 1/6/2004 | 16/6/2026 | Desbordamiento de búfer en la implementación del protocolo Private Communications Transport (PCT) en la librería SSL de Microsoft, usada en Microsoft Windows NT 4.0 SP6a, 2000 SP2 a SP4, XP SP1, Server 2003, NetMeeting, Windows 98, y Windows ME. | |
| Modificada | Alta (7.5) | 85% | 💥 Exploit | Microsoft NetmeetingMicrosoft Windows 2000Microsoft Windows 2003 ServerMicrosoft Windows 98+3 | 1/6/2004 | 16/6/2026 | Desbordamiento de búfer basado en la pila en ciertas funciones de servicio de Active Directory en LSASRV.DLL de Local Security Authority Subsystem Service (LSASS) en Microsoft Windows NT 4.0 SP6a, 2000 SP2 a SP4, XP SP1, Server 2003, NetMeeting, Windows 98, y Windows ME permite a atacantes remotos ejecutar código… | |
| Modificada | Alta (7.5) | 27% | — | Microsoft NetmeetingMicrosoft Windows 2000Microsoft Windows 2003 ServerMicrosoft Windows 98+2 | 1/6/2004 | 16/6/2026 | Vulnerabilidad desconocida en la implementación del protocolo H.323 en Microsoft Windows 98, Windows 2000, Windows XP, y Windows Server 2003 permite a atacantes remotos ejecutar código arbitrario. | |
| Modificada | Alta (10) | 49% | 💥 Exploit | Ezmeeting | 31/12/2003 | 16/6/2026 | Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare allows remote attackers to cause a denial of service (crash) or execute arbitrary code, as demonstrated via (1) a long GET request and (2) a long operation or autologin parameter to SwEzModule.dll. | |
| Modificada | Media (5) | 11% | — | Microsoft Netmeeting | 7/8/2003 | 16/6/2026 | Microsoft NetMeeting 3.01 2000 pre-SP4 permite a atacantes remotos causar una denegación de servicio (cierra de la conferencia) mediante paquetes malformados, como se ha demostrado mediante la conversación chat. | |
| Modificada | Media (5) | 14% | — | Microsoft Netmeeting | 7/8/2003 | 16/6/2026 | Vulnerabilidad de atravesamiento de directorios en Microsoft Netmeeting 3.01 2000 anterior a SP4 permite a atacantes remotos leer ficheros arbitrarios mediante una secuencia "...." (punto punto) en una petición de transferencia de fichero. | |
| Modificada | Media (4.6) | 3.8% | — | Microsoft Netmeeting | 11/10/2002 | 16/6/2026 | La capacidad de Protección de Salvapantallas de Compartición Remota de Estcritorio (Remote Desktop Sharing, RDS) en Microsoft NetMeeting 3.01 a SP2 (4.4.3396) permite a atacantes con acceso físico secuestrar sesiones mediante la pulsación de ciertas secuencias de inicio y cierre de sesión (como CTRL-ALT-SUPR), y la… | |
| Modificada | Media (5) | 17% | — | Microsoft Netmeeting | 21/7/2001 | 16/6/2026 | Microsoft NetMeeting 3.01 with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service via a malformed string to the NetMeeting service port, aka a variant of the "NetMeeting Desktop Sharing" vulnerability. | |
| Modificada | Media (5) | 21% | 💥 Exploit | Microsoft Netmeeting | 19/12/2000 | 23/9/2026 | Microsoft NetMeeting con Compartir Escritorio Remoto habilitado permite a atacantes remotos causar una denegación de servicio (utilización de CPU) a través de una secuencia de bytes nulos al puerto de NetMeeting, también conocida como la vulnerabilidad 'Compartir Escritorio de NetMeeting'. | |
| Modificada | Media (5) | 0.91% | — | ON Technology Meeting Maker | 25/4/2000 | 16/6/2026 | Meeting Maker uses weak encryption (a polyalphabetic substitution cipher) for passwords, which allows remote attackers to sniff and decrypt passwords for Meeting Maker accounts. | |
| Modificada | Media (6.4) | 3.8% | — | Microsoft Netmeeting | 4/5/1999 | 16/6/2026 | Microsoft NetMeeting 2.1 allows one client to read the contents of another client's clipboard via a CTRL-C in the chat box when the box is empty. | |
| Modificada | Alta (7.5) | 13% | — | Microsoft Netmeeting | 1/12/1998 | 16/6/2026 | Buffer overflow in NetMeeting allows denial of service and remote command execution. |