Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2769▼ 305 respecto a la semana anterior
Críticas / altas1294▼ 203 respecto a la semana anterior
Nueva explotación activa (KEV)8→ sin cambios respecto a la semana anterior
Sin puntuar (sin CVSS)207▼ 114 respecto a la semana anterior
943 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 3.4% | — | SUN Java System WEB Proxy Server | 2/5/2005 | 16/6/2026 | Buffer overflow in Sun Java System Web Proxy Server (aka Sun ONE Proxy Server) 3.6 SP6 allows remote attackers to execute arbitrary code via unknown vectors. | |
| Modificada | Media (5) | 2.5% | — | Initial Redirect Squid Proxy Plug-in | 2/5/2005 | 16/6/2026 | Buffer overflow in Initial Redirect (ir) Squid Proxy Plug-In 0.1 and 0.2 may allow attackers to cause a denial of service and execute arbitrary code via unknown vectors. | |
| Modificada | Media (5) | 2.3% | — | Igor Khasilev Oops Proxy ServerGentoo Linux | 2/5/2005 | 16/6/2026 | Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL. | |
| Modificada | Alta (7.5) | 1.1% | — | Christian Hilgers Http Anti Virus Proxy (havp) | 4/3/2005 | 16/6/2026 | Unknown vulnerability in HTTP Anti Virus Proxy (HAVP) before 0.51 prevents viruses from being properly detected in certain files such as (1) .CAB or (2) .ZIP files. | |
| Modificada | Alta (10) | 4.3% | — | Proxytunnel | 1/3/2005 | 16/6/2026 | Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execute arbitrary code via format string specifiers in an invalid proxy answer. | |
| Modificada | Media (6.4) | 2.1% | — | Imap Proxy | 1/3/2005 | 16/6/2026 | Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the… | |
| Modificada | Alta (7.5) | 17% | — | Microsoft ISA ServerMicrosoft Proxy ServerMicrosoft Windows 2003 Server | 27/1/2005 | 16/6/2026 | Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Business Server 2003 Premium Edition) allows remote attackers to spoof trusted Internet content on a specially crafted webpage via spoofed reverse DNS lookup results. | |
| Modificada | Media (5) | 2.1% | — | National Science Foundation Squid WEB Proxy Cache | 31/12/2004 | 16/6/2026 | Squid Web Proxy Cache 2.5 might allow remote attackers to obtain sensitive information via URLs containing invalid hostnames that cause DNS operations to fail, which results in references to previously used error messages. | |
| Modificada | Media (4.3) | 1.9% | — | Phproxy | 31/12/2004 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in index.php in PHProxy allows remote attackers to inject arbitrary web script or HTML via the error parameter. | |
| Modificada | Media (4.6) | 2.1% | — | Myproxy | 31/12/2004 | 16/6/2026 | MyProxy 6.58 allows remote authenticated users in the Users Tab to connect to arbitrary hosts from the MyProxy server, possibly bypassing access restrictions, by connecting to the proxy and issuing a CONNECT command. | |
| Modificada | Baja (2.1) | 0.34% | — | Proxytunnel | 31/12/2004 | 16/6/2026 | Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users. | |
| Modificada | Alta (7.5) | 11% | 💥 Exploit | Youngzsoft Ccproxy | 31/12/2004 | 16/6/2026 | Buffer overflow in YoungZSoft CCProxy 6.2 and earlier allows remote attackers to execute arbitrary code via a long address in a ping (p) command to the Telnet proxy service, a different vector than CVE-2004-2416. | |
| Modificada | Media (5) | 3.0% | 💥 Exploit | National Science Foundation Squid WEB Proxy Cache | 31/12/2004 | 16/6/2026 | Squid Web Proxy Cache 2.3.STABLE5 allows remote attackers to bypass security controls and access arbitrary websites via "@@" sequences in a URL within Internet Explorer. | |
| Modificada | Alta (10) | 7.6% | 💥 Exploit | Internetnow Proxynow | 31/12/2004 | 16/6/2026 | Stack-based and heap-based buffer overflows in ProxyNow! 2.75 and earlier allow remote attackers to execute arbitrary code via a GET request with a long ftp:// URL. | |
| Modificada | Alta (7.5) | 61% | 💥 Exploit | Youngzsoft Ccproxy | 31/12/2004 | 16/6/2026 | Buffer overflow in the logging component of CCProxy allows remote attackers to execute arbitrary code via a long HTTP GET request. | |
| Modificada | Alta (7.5) | 2.7% | — | Smtp.proxy | 31/12/2004 | 16/6/2026 | Format string vulnerability in smtp.c for smtp.proxy 1.1.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the (1) client hostname or (2) message-id, which are injected into a syslog message. | |
| Modificada | Media (5) | 10% | — | Cisco Firewall Services ModuleHP AAA ServerHP Apache-based WEB ServerSymantec Clientless VPN Gateway 4400+61 | 23/11/2004 | 16/6/2026 | El código que une SSL/TLS en OpenSSL 0.9.7a, 0.9.7b y 0.9.7c, usando Kerberos, no comprueba adecuadamente la longitud de los tickets de Kerberos, lo que permite que atacantes remotos provoquen una denegación de servicio. | |
| Modificada | Alta (7.5) | 9.5% | — | Cisco Firewall Services ModuleHP AAA ServerHP Apache-based WEB ServerSymantec Clientless VPN Gateway 4400+62 | 23/11/2004 | 16/6/2026 | La función do_change_cipher_spec en OpenSSL 0.9.6c hasta 0.9.6.k y 0.9.7a hasta 0.9.7c permite que atacantes remotos provoquen una denegación de servicio (caída) mediante una hábil unión SSL/TLS que provoca un puntero nulo. | |
| Modificada | Alta (10) | 63% | 💥 Exploit | Proxy-pro Professional Gatekeeper | 23/11/2004 | 16/6/2026 | Buffer overflow in the web proxy for GateKeeper Pro 4.7 allows remote attackers to execute arbitrary code via a long GET request. | |
| Modificada | Media (5) | 7.2% | — | Cisco Firewall Services ModuleHP AAA ServerHP Apache-based WEB ServerSymantec Clientless VPN Gateway 4400+62 | 23/11/2004 | 16/6/2026 | OpenSSL 0.9.6 anteriores a la 0.9.6d no manejan adecuadamente los tipos de mensajes desconocidos, lo que permite a atacantes remotos causar una denegación de servicios (por bucle infinito), como se demuestra utilizando la herramienta de testeo Codenomicon TLS. | |
| Modificada | Alta (10) | 64% | 💥 Exploit | Psoproxy Server | 23/11/2004 | 16/6/2026 | Buffer overflow in PSOProxy 0.91 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP request, as demonstrated using a long (1) GET argument or (2) method name. | |
| Modificada | Alta (7.5) | 7.7% | — | SUN Java System WEB Proxy Server | 30/10/2004 | 16/6/2026 | Multiple buffer overflows in Sun Java System Web Proxy Server (formerly Sun ONE Proxy Server) 3.6 through 3.6 SP4 allow remote attackers to execute arbitrary code via unknown vectors, possibly CONNECT requests. | |
| Modificada | Alta (10) | 71% | 💥 Exploit | National Science Foundation Squid WEB Proxy Cache | 6/8/2004 | 16/6/2026 | Desbordamiento de búfer en la función ntlm_check_auth (autenticación NTLM) de Squid Web Proxy Cache 2.5.x y 3.x, cuando se compila con manejadores NTLM activados, permite a atacantes remotos ejecutar código de su elección mediante una contraseña larga (variable "pass") | |
| Modificada | Media (5) | 1.6% | — | IBM Websphere Caching Proxy ServerIBM Websphere Edge Server Caching Proxy | 6/8/2004 | 16/6/2026 | WebSphere Edge Component Caching Proxy en WebSphere Edge Server 5.02con la directiva JunctionRewrite activada, permite a atacantes remotos causar una denegación de servicio mediante una petición HTTP GET sin parámetros. | |
| Modificada | Alta (10) | 34% | — | Apache Http ServerHP VirtualvaultHP WebproxyIBM Http Server+3 | 6/8/2004 | 16/6/2026 | Desbordamiento de búfer basado en el montón en proxy_util.c de mod_proxy en Apache 1.3.25 a 1.3.31 permite a atacantes remotos causar un denegación de servicio (caída del proceso) y posiblemente ejecutar código de su elección mediante un campo de cabecera HTTP Content-Length negativo, lo que causa que una gran… |