Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
120 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 0.94% | — | Homepage Decorator Perltreebbs | 13/2/2015 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in Homepage Decorator PerlTreeBBS 2.30 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (6.8) | 1.6% | — | HP System Management HomepageHp-ux | 19/10/2014 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 3.2.3 on HP-UX B.11.23, and before 3.2.8 on HP-UX B.11.31, allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | |
| Modificada | Media (4.3) | 2.4% | — | HP System Management Homepage | 2/10/2014 | 17/6/2026 | HP System Management Homepage (SMH) before 7.4 allows remote attackers to conduct clickjacking attacks via unspecified vectors. | |
| Modificada | Media (6) | 0.86% | — | HP System Management Homepage | 2/10/2014 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.4 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. | |
| Modificada | Media (4.3) | 3.9% | — | HP System Management Homepage | 2/10/2014 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (4.3) | 1.1% | — | Homepage Decorator Perlmailer Project Homepage Decorator Perlmailer | 29/7/2014 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in Homepage Decorator PerlMailer 3.10 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (6.8) | 0.98% | — | HP System Management Homepage | 14/3/2014 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 7.1 through 7.2.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | |
| Modificada | Media (5) | 2.2% | — | HP System Management Homepage | 14/3/2014 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.3 allows remote attackers to obtain sensitive information via unknown vectors. | |
| Modificada | Media (4) | 1.9% | — | HP System Management Homepage | 23/9/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause a denial of service via unknown vectors. | |
| Modificada | Baja (3.5) | 1.3% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (5) | 3.3% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-2356. | |
| Modificada | Baja (2.1) | 0.53% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows local users to cause a denial of service via unknown vectors, aka ZDI-CAN-1676. | |
| Modificada | Media (4.3) | 2.5% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modificada | Media (4) | 1.8% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause a denial of service via unknown vectors, a different vulnerability than CVE-2013-2357, CVE-2013-2358, and CVE-2013-2359. | |
| Modificada | Media (4) | 1.8% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause a denial of service via unknown vectors, a different vulnerability than CVE-2013-2357, CVE-2013-2358, and CVE-2013-2360. | |
| Modificada | Media (4) | 1.8% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause a denial of service via unknown vectors, a different vulnerability than CVE-2013-2357, CVE-2013-2359, and CVE-2013-2360. | |
| Modificada | Media (4) | 1.8% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to cause a denial of service via unknown vectors, a different vulnerability than CVE-2013-2358, CVE-2013-2359, and CVE-2013-2360. | |
| Modificada | Media (5) | 3.3% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-2363. | |
| Modificada | Media (5) | 3.5% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2012-5217. | |
| Modificada | Media (5) | 3.5% | — | HP System Management Homepage | 22/7/2013 | 16/6/2026 | HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-2355. | |
| Modificada | Alta (9) | 67% | 💥 Exploit | HP System Management Homepage | 14/6/2013 | 16/6/2026 | ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands via shell metacharacters in the PATH_INFO to smhutil/snmpchp.php.en. | |
| Modificada | Media (4.9) | 0.65% | — | HP System Management Homepage | 29/6/2012 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.1.1 allows local users to obtain sensitive information via unknown vectors. | |
| Modificada | Alta (9) | 3.1% | — | HP System Management Homepage | 29/6/2012 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.1.1 allows remote authenticated users to gain privileges and obtain sensitive information via unknown vectors. | |
| Modificada | Alta (9) | 3.1% | — | HP System Management Homepage | 29/6/2012 | 16/6/2026 | HP System Management Homepage (SMH) before 7.1.1 does not properly validate input, which allows remote authenticated users to have an unspecified impact via unknown vectors. | |
| Modificada | Alta (7.5) | 3.9% | — | HP System Management Homepage | 29/6/2012 | 16/6/2026 | Unspecified vulnerability in HP System Management Homepage (SMH) before 7.1.1 allows remote attackers to cause a denial of service, or possibly obtain sensitive information or modify data, via unknown vectors. |