Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

83 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.7%—Qualcomm Eudora Worldmail Server16/7/200116/6/2026
Vulnerabilities in Qualcomm Eudora WorldMail Server may allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
ModificadaBaja (3.7)0.42%—Sendmail28/5/200116/6/2026
Sendmail before 8.11.4, and 8.12.0 before 8.12.0.Beta10, allows local users to cause a denial of service and possibly corrupt the heap and gain privileges via race conditions in signal handlers.
ModificadaMedia (5)1.6%—Netwin CwmailNetwin Dmailweb23/6/200016/6/2026
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to bypass authentication and use the server for mail relay via a username that contains a carriage return.
ModificadaMedia (5)1.6%—Netwin CwmailNetwin Dmailweb23/6/200016/6/2026
The default configuration of NetWin dMailWeb and cwMail trusts all POP servers, which allows attackers to bypass normal authentication and cause a denial of service.
ModificadaMedia (5)1.3%—Netwin CwmailNetwin Dmailweb21/6/200016/6/2026
NetWin dMailWeb and cwMail 2.6i and earlier allows remote attackers to cause a denial of service via a long POP parameter (pophost).
ModificadaMedia (5)1.4%—Netwin CwmailNetwin Dmailweb21/6/200016/6/2026
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to cause a denial of service via a long username parameter.
ModificadaAlta (10)6.2%💥 ExploitNetwin Dmail1/6/200016/6/2026
Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.
ModificadaAlta (7.5)2.0%—Netwin Dmail4/5/200016/6/2026
Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken parameter.
ModificadaMedia (5)1.8%—Eric Allman Sendmail23/4/200016/6/2026
mail.local in Sendmail 8.10.x does not properly identify the .\n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 2047 characters long and ends in .\n.
ModificadaMedia (5)8.1%💥 ExploitGeocel Windmail25/3/200016/6/2026
WindMail allows remote attackers to read arbitrary files or execute commands via shell metacharacters.
ModificadaAlta (7.5)0.99%—Sendmail31/12/199916/6/2026
Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact. NOTE: this might overlap CVE-1999-0129.
ModificadaMedia (5)7.2%💥 ExploitSendmail22/12/199916/6/2026
Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands after the connection has been terminated.
ModificadaBaja (2.1)0.29%—Eric Allman Sendmail7/12/199916/6/2026
Sendmail allows local users to reinitialize the aliases database via the newaliases command, then cause a denial of service by interrupting Sendmail.
ModificadaMedia (5)2.5%—HP Sendmail19/4/199916/6/2026
Denial of service in Sendmail 8.8.6 in HPUX.
ModificadaMedia (6.4)2.0%—SendmailAI8/3/199916/6/2026
Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many "RCPT TO" commands in the same connection.
ModificadaAlta (7.5)4.1%—Metainfo MetaipMetainfo Sendmail4/2/199916/6/2026
The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry.
ModificadaMedia (5)1.3%—Eric Allman Sendmail1/1/199916/6/2026
Denial of service in Sendmail 8.6.11 and 8.6.12.
ModificadaAlta (10)54%💥 ExploitTCP WrappersAIWuftpdAIIrciiAISendmailAI+21/1/199916/6/2026
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6.
ModificadaMedia (5)2.4%💥 ExploitEric Allman Sendmail1/1/199916/6/2026
Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of headers.
ModificadaAlta (10)1.9%—SendmailAI1/1/199916/6/2026
A Sendmail alias allows input to be piped to a program.
ModificadaMedia (5)1.4%—Sendmail1/12/199816/6/2026
Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
ModificadaAlta (10)3.1%—Eric Allman SendmailBsdi BSD OSCaldera Openlinux28/1/199716/6/2026
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
ModificadaAlta (10)8.8%💥 ExploitEric Allman Sendmail1/1/199716/6/2026
Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.
ModificadaAlta (7.2)0.44%—Eric Allman Sendmail1/1/199716/6/2026
In older versions of Sendmail, an attacker could use a pipe character to execute root commands.
ModificadaMedia (4.6)0.56%—Eric Allman SendmailBsdi BSD OSFreebsdHp-ux+53/12/199616/6/2026
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
Orbitaley — Vulnerabilidades