Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2726▼ 321 respecto a la semana anterior
Críticas / altas1271▼ 203 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 108 respecto a la semana anterior
–

736 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.8%💥 ExploitOpera Software Opera WEB Browser12/8/200216/6/2026
Opera 6.01, 6.0, and 5.12 allows remote attackers to execute arbitrary JavaScript in the security context of other sites by setting the location of a frame or iframe to a Javascript: URL.
ModificadaMedia (5)2.4%—Galeon BrowserMozillaNetscape Navigator18/6/200216/6/2026
Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect.
ModificadaAlta (7.5)1.4%—Opera Software Opera WEB Browser29/5/200216/6/2026
Vulnerabilidad de secuencias de comandos en sitios cruzados en Internet Opera 6 y anteriores permite que atacante remotos ejecuten código arbitrario por medio de un formulario HTML extendido, cuya salida del servidor remoto no se ha aclarado adecuadamente.
ModificadaMedia (4.3)4.7%—Opera Software Opera WEB Browser29/5/200216/6/2026
Opera, when configured with the "Determine action by MIME type" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use…
ModificadaMedia (5)7.0%💥 ExploitOpera Software Opera WEB Browser31/12/200116/6/2026
Opera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.
ModificadaMedia (5)3.1%💥 ExploitOpera Software Opera WEB Browser15/11/200116/6/2026
Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.
ModificadaMedia (5)2.4%—Opera Software Opera WEB Browser9/7/200116/6/2026
Opera 5.0 for Linux does not properly handle malformed HTTP headers, which allows remote attackers to cause a denial of service, possibly with a header whose value is the same as a MIME header name.
ModificadaMedia (5)2.8%💥 ExploitSUN Hotjava Browser19/12/200023/9/2026
HotJava Navegador 3.0 permite a atacantes remotos acceder al DOM de una página web abriendo una URL javascript: en una ventana con nombre.
ModificadaMedia (5)1.7%—Virtual Vision FTP Browser12/7/200016/6/2026
ftp.pl CGI program for Virtual Visions FTP browser allows remote attackers to read directories outside of the document root via a .. (dot dot) attack.
ModificadaMedia (5)1.1%—IBM Navio NC Browser29/1/199916/6/2026
netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.
ModificadaMedia (5)1.3%—Opera Software Opera WEB Browser14/8/199816/6/2026
Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra / in the http:// tag.
Orbitaley — Vulnerabilidades