Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 1.3% | — | James Barnsley JAB Guest Book | 7/12/2006 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in pbguestbook.php in JAB Guest Book allows remote attackers to inject arbitrary web script or HTML via the author parameter. | |
| Modificada | Media (5) | 1.6% | — | James Greenwood Monkey Boards | 28/11/2006 | 16/6/2026 | Monkey Boards 0.3.5 allows remote attackers to obtain sensitive information via direct requests to (1) include/admin_auth.inc.php and (2) include/engine/class.compiler.php, which reveals the full path in an error message. NOTE: this issue is only an exposure if the administrator has changed the default script path. | |
| Modificada | Alta (7.8) | 6.6% | — | Apache James | 5/6/2006 | 16/6/2026 | The SMTP server in Apache Java Mail Enterprise Server (aka Apache James) 2.2.0 allows remote attackers to cause a denial of service (CPU consumption) via a long argument to the MAIL command. | |
| Modificada | Media (4.9) | 0.56% | — | Apache James | 31/12/2004 | 16/6/2026 | Spooler in Apache Foundation James 2.2.0 allows local users to cause a denial of service (memory consumption) by triggering various error conditions in the retrieve function, which prevents a lock from being released and causes a memory leak. | |
| Modificada | Alta (7.5) | 1.2% | — | Jamesoff Quoteengine | 31/12/2004 | 16/6/2026 | SQL injection vulnerability in the sloth TCL script in QuoteEngine before 1.2.0 allow remote attackers to execute arbitrary SQL commands via unknown vectors. | |
| Modificada | Media (4.6) | 1.0% | 💥 Exploit | James Theiler OPT | 2/7/2003 | 16/6/2026 | Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi. | |
| Modificada | Alta (7.5) | 3.2% | 💥 Exploit | James Seter BNC IRC | 26/12/1998 | 16/6/2026 | Buffer overflow in BNC IRC proxy allows remote attackers to gain privileges. |