Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

102 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)0.45%—Caldera UnixwareCaldera Openunix31/12/200116/6/2026
Buffer overflow in xlock in UnixWare 7.1.0 and 7.1.1 and Open Unix 8.0.0 allows local users to execute arbitrary code.
ModificadaAlta (7.5)3.0%—Caldera Openlinux WorkstationRedhat Linux PowertoolsCaldera Openlinux EserverRedhat Linux+121/12/200116/6/2026
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
ModificadaAlta (10)2.3%—Caldera Openlinux6/12/200116/6/2026
A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local or remote users to exploit those functions with a buffer overflow.
ModificadaMedia (4.6)0.37%—Caldera UnixwareCaldera Openunix6/12/200116/6/2026
Buffer overflow in pppattach and other linked PPP utilities in Caldera Open Unix 8.0 and UnixWare 7.1.0 and 7.1.1 allows local users to gain privileges.
ModificadaMedia (5)3.1%—Caldera Openlinux ServerCaldera Openlinux WorkstationCaldera OpenlinuxCaldera Openlinux Edesktop+36/12/200116/6/2026
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
ModificadaAlta (7.5)2.1%—Caldera Openlinux EdesktopCaldera Openlinux Eserver31/8/200116/6/2026
telnet daemon (telnetd) from the Linux netkit package before netkit-telnet-0.16 allows remote attackers to bypass authentication when telnetd is running with the -L command line option.
ModificadaAlta (7.2)0.39%—Caldera UnixwareCaldera Openunix31/8/200116/6/2026
Buffer overflow in uidadmin in Caldera Open Unix 8.0.0 and UnixWare 7 allows local users to gain root privileges via a long -S (scheme) command line argument.
ModificadaAlta (7.2)0.43%—Caldera Openserver31/8/200116/6/2026
Buffer overflow in mana in OpenServer 5.0.6a and earlier allows local users to execute arbitrary code.
ModificadaAlta (7.2)0.42%—Caldera Openunix28/8/200116/6/2026
lpsystem in OpenUnix 8.0.0 allows local users to cause a denial of service and possibly execute arbitrary code via a long command line argument.
ModificadaBaja (2.6)1.2%—U WINCaldera Openlinux21/7/200116/6/2026
Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.
ModificadaAlta (7.5)2.0%—Caldera Openlinux ServerImmunixMandrakesoft Mandrake Single Network FirewallSquid WEB Proxy+418/7/200116/6/2026
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.
ModificadaAlta (7.5)2.4%—Caldera Openlinux ServerCaldera Openlinux Workstation17/7/200116/6/2026
docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.
ModificadaAlta (7.2)0.56%—Caldera Unixware27/6/200116/6/2026
Buffer overflow in uucp utilities in UnixWare 7 allows local users to execute arbitrary code via long command line arguments to (1) uucp, (2) uux, (3) bnuconvert, (4) uucico, (5) uuxcmd, or (6) uuxqt.
ModificadaAlta (10)2.8%—Caldera Volution8/6/200116/6/2026
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution server.
ModificadaAlta (10)5.2%—Caldera Openlinux DesktopCaldera Openlinux EdesktopCaldera Openlinux Eserver26/3/200116/6/2026
Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary commands.
ModificadaBaja (2.1)0.36%—Conectiva LinuxCaldera Openlinux EdesktopMandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate Server+126/3/200116/6/2026
kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.
ModificadaBaja (1.2)0.34%—Caldera Openlinux DesktopImmunixCaldera Openlinux EdesktopCaldera Openlinux Eserver+312/3/200116/6/2026
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
ModificadaAlta (7.2)1.4%💥 ExploitImmunixConectiva LinuxCaldera OpenlinuxCaldera Openlinux Edesktop+59/1/200116/6/2026
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
ModificadaAlta (10)79%💥 ExploitCaldera Openlinux EbuilderCaldera OpenlinuxCaldera Openlinux EdesktopCaldera Openlinux Eserver+219/12/200023/9/2026
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
ModificadaAlta (10)16%💥 ExploitCaldera Openlinux EbuilderImmunixConectiva LinuxSGI Irix+1214/11/200016/6/2026
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
ModificadaAlta (7.2)0.36%—Caldera Openlinux12/7/200016/6/2026
Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
ModificadaMedia (5)9.9%💥 ExploitCaldera Openlinux DesktopCaldera Openlinux EbuilderCaldera Openlinux EdesktopCaldera Openlinux Eserver+24/7/200016/6/2026
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
ModificadaAlta (7.2)0.40%—Caldera OpenlinuxMandrakesoft Mandrake LinuxRedhat Linux3/7/200016/6/2026
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
ModificadaAlta (7.2)1.2%💥 ExploitCaldera OpenlinuxKDE31/5/200016/6/2026
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.
ModificadaAlta (10)18%💥 ExploitGnome GDMCaldera OpenlinuxSuse Linux24/5/200016/6/2026
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.
Orbitaley — Vulnerabilidades