Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
–

108 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (9.3)7.7%—Nctsoft Nctaudioeditor Activex Control29/5/200816/6/2026
Multiple stack-based buffer overflows in the Online Media Technologies NCTSoft NCTAudioGrabber2 ActiveX control in NCTAudioGrabber2.dll allow remote attackers to execute arbitrary code via unspecified vectors.
ModificadaAlta (9.3)4.0%—Aurigma Image Uploader Activex ControlPiczo Imageuploader425/3/200816/6/2026
Buffer overflow in a certain Aurigma ActiveX control in ImageUploader4.ocx 4.1.36.0, as used with Piczo (aka Pizco) and possibly other online services, allows remote attackers to execute arbitrary code via unspecified vectors, possibly involving a long Action property, a different CLSID than CVE-2008-0659.
ModificadaAlta (10)16%💥 ExploitSony Axruploadserver Activex ControlSony Imagestation13/2/200816/6/2026
Buffer overflow in the Sony AxRUploadServer.AxRUploadControl.1 ActiveX control in AxRUploadServer.dll 1.0.0.38 in SonyISUpload.cab 1.0.0.38 for Sony ImageStation allows remote attackers to execute arbitrary code via a long argument to the SetLogging method. NOTE: some of these details are obtained from third party…
ModificadaAlta (9.3)38%💥 ExploitAurigma Image Uploader Activex ControlFacebookFacebook Photouploader8/2/200816/6/2026
Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0, and 4.5.126.0, and ImageUploader5 5.0.10.0, as used by Facebook PhotoUploader 4.5.57.0, allow remote attackers to execute arbitrary code via long (1) ExtractExif and (2) ExtractIptc properties.
ModificadaAlta (10)56%💥 ExploitAurigma Image Uploader Activex ControlMyspaceuploader8/2/200816/6/2026
Stack-based buffer overflow in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.5.70 and earlier, as used in MySpace MySpaceUploader.ocx 1.0.0.4, allows remote attackers to execute arbitrary code via a long Action property.
ModificadaAlta (10)7.3%💥 ExploitOurgame.com GlworldOurgame.com Hangameplugincn18 Activex Control7/2/200816/6/2026
Multiple stack-based buffer overflows in the HanGamePluginCn18.HanGamePluginCn18.1 ActiveX control in HanGamePluginCn18.dll in Ourgame GLWorld 2.6.1.29 (aka Lianzong Game Platform) allow remote attackers to execute arbitrary code via long arguments to the (1) hgs_startGame and (2) hgs_startNotify methods, as exploited…
ModificadaAlta (7.5)4.6%💥 ExploitSejoong Namo ActivesquareSejoong Namo Namoinstall.1 Activex Control6/2/200816/6/2026
Buffer overflow in the NamoInstaller.NamoInstall.1 ActiveX control in NamoInstaller.dll 3.0.0.1, as used in Sejoong Namo ActiveSquare6, allows remote attackers to execute arbitrary code via a long argument to the Install method, a different vulnerability than CVE-2008-0551.
ModificadaMedia (4.3)4.5%💥 ExploitAOL YGP Piceditor Activex Control4/2/200816/6/2026
Multiple buffer overflows in the AIM PicEditor 9.5.1.8 ActiveX control in YGPPicEdit.dll in AOL You've Got Pictures (YGP) Picture Editor allow remote attackers to cause a denial of service (browser crash) via a long string in the (1) DisplayName, (2) FinalSavePath, (3) ForceSaveTo, (4) HiddenControls, (5)…
ModificadaAlta (9.3)11%💥 ExploitStreamaudio Chaincast Proxymanager Activex Control12/1/200816/6/2026
Buffer overflow in an ActiveX control in ccpm_0237.dll for StreamAudio ChainCast ProxyManager allows remote attackers to execute arbitrary code via a long URL argument to the InternalTuneIn method.
ModificadaAlta (10)29%—Microsoft VFP OLE Server Activex Control11/1/200816/6/2026
The Microsoft VFP_OLE_Server ActiveX control allows remote attackers to execute arbitrary code by invoking the foxcommand method.
ModificadaAlta (7.5)16%💥 ExploitGateway Cweblaunchctl Activex ControlGateway Weblaunch10/1/200816/6/2026
Multiple stack-based buffer overflows in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allow remote attackers to execute arbitrary code via a long string in the (1) second or (2) fourth argument to the DoWebLaunch method. NOTE: some of these details are…
ModificadaMedia (6.8)3.7%💥 ExploitRavware Flic Activex Control21/12/200716/6/2026
Buffer overflow in RavWare Software MAS Flic ActiveX Control (masflc.ocx) 1.0.0.1 allows remote attackers to execute arbitrary code via a long FileName property.
ModificadaMedia (4.3)2.2%💥 ExploitWebex Communications Webex Gpccontainer Activex Control15/11/200716/6/2026
Unspecified vulnerability in the GpcContainer.GpcContainer.1 ActiveX control in WebEx allows remote attackers to cause a denial of service (memory access violation and crash) via (1) an invalid argument to the InitParam method or (2) an unspecified vector involving the SetParam method.
ModificadaAlta (7.5)4.7%—Automated Solutions Modbus Slave Activex Control19/9/200716/6/2026
Unspecified vulnerability in the Modbus/TCP Diagnostic function in MiniHMI.exe for the Automated Solutions Modbus Slave ActiveX Control before 1.5 allows remote attackers to corrupt the heap and possibly execute arbitrary code via malformed Modbus requests to TCP port 502.
ModificadaAlta (9.3)6.7%—Photochannel PNI Digital Media Upload Plugin Activex Control18/9/200716/6/2026
Multiple stack-based buffer overflows in the PhotoChannel Networks PNI Digital Media Photo Upload Plugin ActiveX control before 2.0.0.10, as used by multiple retailers, allow remote attackers to execute arbitrary code via unspecified vectors.
ModificadaMedia (6.8)4.6%💥 ExploitHP Photo Digital Imaging Activex Control10/7/200716/6/2026
Absolute path traversal vulnerability in a certain ActiveX control in hpqvwocx.dll 2.1.0.556 in Hewlett-Packard (HP) Digital Imaging allows remote attackers to create or overwrite arbitrary files via the second argument to the SaveToFile method.
ModificadaMedia (6.4)2.9%💥 ExploitChilkat Software Chilkat ZIP Activex Control10/7/200716/6/2026
Absolute path traversal vulnerability in the Chilkat Software Chilkat Zip ActiveX control in ChilkatZip2.dll 12.4.2.0 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) SaveLastError method and probably the (2) WriteExe method.
ModificadaAlta (7.6)14%💥 ExploitAMX Netlinx VNC Activex Control3/7/200716/6/2026
Multiple buffer overflows in the AMX NetLinx VNC (AmxVnc) ActiveX control in AmxVnc.dll 1.0.13.0 allow remote attackers to execute arbitrary code via long (1) Host, (2) Password, or (3) LogFile property values.
ModificadaMedia (6.4)8.8%💥 ExploitHP Photo Digital Imaging Activex Control29/6/200716/6/2026
Absolute path traversal in a certain ActiveX control in hpqxml.dll 2.0.0.133 in Hewlett-Packard (HP) Photo Digital Imaging allows remote attackers to create or overwrite arbitrary files via the argument to the saveXMLAsFile method.
ModificadaAlta (9.3)6.5%—Zoomify Viewer Activex Control11/6/200716/6/2026
Multiple stack-based buffer overflows in the Zoomify Viewer ActiveX control in ZActiveX.dll might allow remote attackers to execute arbitrary code via unspecified vectors.
ModificadaAlta (10)44%💥 ExploitMicrosoft Internet ExplorerProvideo Camimage Activex Control7/6/200716/6/2026
Buffer overflow in the Provideo Camimage ActiveX control in ISSCamControl.dll 1.0.1.5, when Internet Explorer 6 is used on Windows 2000 SP4, allows remote attackers to execute arbitrary code via a long URL property value.
ModificadaMedia (6.8)3.4%—Media Technology Group Cdpass Activex Control1/6/200716/6/2026
Multiple stack-based buffer overflows in the Media Technology Group CDPass ActiveX control in CDPass.dll allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the GetTOC2 method.
ModificadaAlta (9.3)5.2%—BT Business Connect Webhelper Activex Control1/6/200716/6/2026
Multiple buffer overflows in the British Telecommunications Business Connect webhelper ActiveX control before 1.0.0.7 in btbconnectwebcontrol.dll allow remote attackers to execute arbitrary code via unspecified vectors.
ModificadaAlta (10)4.7%💥 ExploitH+H Vcdapilibapi Activex ControlH+H Virtual CD24/5/200716/6/2026
The VCDAPILibApi ActiveX control in vc9api.DLL 9.0.0.57 in Virtual CD 9.0.0.2 allows remote attackers to execute arbitrary commands via a command line in the first argument to the VCDLaunchAndWait function.
ModificadaAlta (10)4.6%—SKY Software Shcombobox Activex ControlSKY Software Shell Megapack Activex24/5/200716/6/2026
Stack-based buffer overflow in the SetPath function in the shComboBox ActiveX control (shcmb80.ocx) in Sky Software Shell MegaPack ActiveX 8.0 allows remote attackers to execute arbitrary code via a long argument. NOTE: the provenance of this information is unknown; the details are obtained solely from third party…
Orbitaley — Vulnerabilidades