Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2823▼ 249 respecto a la semana anterior
Críticas / altas1318▼ 180 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)214▼ 107 respecto a la semana anterior
–

809 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)3.5%—Sysinternals Process Explorer23/8/200516/6/2026
Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arbitrary code via a long CompanyName field in the VersionInfo information in a running process.
ModificadaMedia (5.5)0.46%—Image Processing Project Image Processing14/2/200516/6/2026
A design flaw in image processing software that modifies JPEG images might not modify the original EXIF thumbnail, which could lead to an information leak of potentially sensitive visual information that had been removed from the main JPEG image.
ModificadaBaja (2.1)0.44%—Diamondcs Process Guard Free31/12/200416/6/2026
DiamondCS Process Guard Free 2.000 allows local users to disable the process guard protection system by overwriting the current Service Descriptor Table (SDT) in \device\physicalmemory with the original SDT found in ntoskrnl.exe.
ModificadaMedia (5)59%💥 ExploitNortel IP Softphone 2050Nortel Media Communication Server 5100Nortel Media Communication Server 5200Nortel Media Processing Server+1523/12/200416/6/2026
The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number…
ModificadaBaja (2.1)0.48%—HP Process Resource ManagerHP Workload Manager10/8/200416/6/2026
Unknown vulnerability in HP Process Resource Manager (PRM) C.02.01[.01] and earlier, as used by HP-UX Workload Manager (WLM), allows local users to corrupt data files.
ModificadaAlta (7.5)7.0%💥 ExploitIbill Internet Billing Company Processing Plus6/12/200116/6/2026
ibillpm.pl in iBill password management system generates weak passwords based on a client's MASTER_ACCOUNT, which allows remote attackers to modify account information in the .htpasswd file via brute force password guessing.
ModificadaAlta (7.2)0.53%—HP Process Resource Manager31/8/200116/6/2026
Vulnerability in HP Process Resource Manager (PRM) C.01.08.2 and earlier, as used by HP-UX Workload Manager (WLM), allows local users to gain root privileges via modified libraries or environment variables.
ModificadaMedia (5)1.3%—IBM High Availability Cluster Multiprocessing27/6/200116/6/2026
Hursley Software Laboratories Consumer Transaction Framework (HSLCTF) HTTP object allows remote attackers to cause a denial of service (crash) via an extremely long HTTP request.
ModificadaMedia (4.6)0.39%—MIT KerberosMIT Kerberos 5Process Software MultinetSunos21/2/199616/6/2026
Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.
Orbitaley — Vulnerabilidades