Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2823▼ 249 respecto a la semana anterior
Críticas / altas1318▼ 180 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 107 respecto a la semana anterior
809 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 3.5% | — | Sysinternals Process Explorer | 23/8/2005 | 16/6/2026 | Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arbitrary code via a long CompanyName field in the VersionInfo information in a running process. | |
| Modificada | Media (5.5) | 0.46% | — | Image Processing Project Image Processing | 14/2/2005 | 16/6/2026 | A design flaw in image processing software that modifies JPEG images might not modify the original EXIF thumbnail, which could lead to an information leak of potentially sensitive visual information that had been removed from the main JPEG image. | |
| Modificada | Baja (2.1) | 0.44% | — | Diamondcs Process Guard Free | 31/12/2004 | 16/6/2026 | DiamondCS Process Guard Free 2.000 allows local users to disable the process guard protection system by overwriting the current Service Descriptor Table (SDT) in \device\physicalmemory with the original SDT found in ntoskrnl.exe. | |
| Modificada | Media (5) | 59% | 💥 Exploit | Nortel IP Softphone 2050Nortel Media Communication Server 5100Nortel Media Communication Server 5200Nortel Media Processing Server+15 | 23/12/2004 | 16/6/2026 | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number… | |
| Modificada | Baja (2.1) | 0.48% | — | HP Process Resource ManagerHP Workload Manager | 10/8/2004 | 16/6/2026 | Unknown vulnerability in HP Process Resource Manager (PRM) C.02.01[.01] and earlier, as used by HP-UX Workload Manager (WLM), allows local users to corrupt data files. | |
| Modificada | Alta (7.5) | 7.0% | 💥 Exploit | Ibill Internet Billing Company Processing Plus | 6/12/2001 | 16/6/2026 | ibillpm.pl in iBill password management system generates weak passwords based on a client's MASTER_ACCOUNT, which allows remote attackers to modify account information in the .htpasswd file via brute force password guessing. | |
| Modificada | Alta (7.2) | 0.53% | — | HP Process Resource Manager | 31/8/2001 | 16/6/2026 | Vulnerability in HP Process Resource Manager (PRM) C.01.08.2 and earlier, as used by HP-UX Workload Manager (WLM), allows local users to gain root privileges via modified libraries or environment variables. | |
| Modificada | Media (5) | 1.3% | — | IBM High Availability Cluster Multiprocessing | 27/6/2001 | 16/6/2026 | Hursley Software Laboratories Consumer Transaction Framework (HSLCTF) HTTP object allows remote attackers to cause a denial of service (crash) via an extremely long HTTP request. | |
| Modificada | Media (4.6) | 0.39% | — | MIT KerberosMIT Kerberos 5Process Software MultinetSunos | 21/2/1996 | 16/6/2026 | Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys. |