Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
148 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. This issue affects some unknown processing of the component ENC Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknown code of the component CONF Command Handler. The manipulation leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component CDUP Command Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown functionality of the component CCC Command Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an unknown functionality of the component SITE CHMOD Command Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and… | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component MKDIR Command Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component DELETE Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (6.9) | 0.75% | — | Pcman FTP Server | 7/4/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component SYST Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Aplazada | Media (4.8) | 0.21% | — | Thu-pacman ChituAI | 3/4/2025 | 17/6/2026 | A vulnerability classified as critical has been found in thu-pacman chitu 0.1.0. This affects the function torch.load of the file chitu/chitu/backend.py. The manipulation of the argument ckpt_path/quant_ckpt_dir leads to deserialization. An attack has to be approached locally. | |
| Analizada | Alta (7.8) | 0.14% | — | Lenovo Pcmanager | 31/7/2024 | 17/6/2026 | A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to escalate privileges. | |
| Analizada | Alta (7.8) | 0.14% | — | Lenovo Pcmanager | 31/7/2024 | 17/6/2026 | A vulnerability was reported in Lenovo PC Manager prior to version 2.8.90.11211 that could allow a local attacker to escalate privileges. | |
| Analizada | Media (5.5) | 0.15% | — | Lenovo Pcmanager | 31/7/2024 | 17/6/2026 | A vulnerability was reported in Lenovo PC Manager versions prior to 2.6.40.3154 that could allow an attacker to cause a system reboot. | |
| Modificada | Alta (7.5) | 1.1% | — | Pcman FTP Server | 19/1/2024 | 19/8/2026 | A vulnerability was found in PCMan FTP Server 2.0.7 and classified as problematic. This issue affects some unknown processing of the component STOR Command Handler. The manipulation leads to denial of service. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Alta (7.5) | 1.1% | — | Pcman FTP Server | 19/1/2024 | 19/8/2026 | A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as problematic. This vulnerability affects unknown code of the component PUT Command Handler. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.… | |
| Modificada | Alta (7.5) | 1.3% | — | Pcman FTP Server | 16/1/2024 | 19/8/2026 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as problematic. This affects an unknown part of the component USER Command Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The… | |
| Modificada | Media (6.1) | 0.33% | — | Tcman GIM | 4/10/2023 | 17/6/2026 | The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServicio.aspx files in TCMAN GIM v8.0.1, could allow an attacker to perform persistent XSS attacks. | |
| Modificada | Crítica (9.8) | 0.78% | — | Tcman GIM | 4/10/2023 | 17/6/2026 | TCMAN GIM v8.0.1 is vulnerable to a SQL injection via the 'SqlWhere' parameter inside the function 'BuscarESM'. The exploitation of this vulnerability might allow a remote attacker to directly interact with the database. | |
| Modificada | Crítica (9.8) | 0.63% | — | Pacman-canvas Project Pacman-canvas | 19/12/2022 | 17/6/2026 | A vulnerability classified as critical has been found in pacman-canvas up to 1.0.5. Affected is the function addHighscore of the file data/db-handler.php. The manipulation leads to sql injection. It is possible to launch the attack remotely. Upgrading to version 1.0.6 is able to address this issue. The name of the… | |
| Modificada | Alta (8.8) | 0.56% | — | Lenovo Pcmanager | 23/8/2022 | 17/6/2026 | A potential vulnerability was reported in Lenovo PCManager prior to version 5.0.10.4191 that may allow code execution when visiting a specially crafted website. | |
| Modificada | Media (6.1) | 0.54% | — | Joomlatools Docman | 10/7/2022 | 17/6/2026 | In Joomla component 'Joomlatools - DOCman 3.5.13 (and likely most versions below)' are affected to an reflected Cross-Site Scripting (XSS) in an image upload function | |
| Modificada | Alta (7.8) | 0.25% | — | Lenovo Pcmanager | 22/4/2022 | 17/6/2026 | A DLL search path vulnerability was reported in Lenovo PCManager prior to version 4.0.40.2175 that could allow privilege escalation. | |
| Modificada | Media (5) | 0.19% | — | Lenovo Pcmanager | 22/4/2022 | 17/6/2026 | A denial of service vulnerability was reported in Lenovo PCManager prior to version 4.0.40.2175 that could allow configuration files to be written to non-standard locations during installation. | |
| Modificada | Media (5.5) | 0.20% | — | Lenovo Pcmanager | 22/4/2022 | 17/6/2026 | A denial of service vulnerability was reported in Lenovo PCManager prior to version 4.0.20.10282 that could allow an attacker with local access to trigger a blue screen error. | |
| Modificada | Crítica (9.8) | 2.3% | — | Opendocman | 18/3/2022 | 9/7/2026 | An attacker can upload or transfer files of dangerous types to the OpenDocMan 1.4.4 portal via add.php using MIME-bypass, which may be automatically processed within the product's environment or lead to arbitrary code execution. | |
| Modificada | Crítica (9.8) | 0.74% | — | Huawei Pcmanager | 25/2/2022 | 17/6/2026 | PCManager versions 11.1.1.95 has a privilege escalation vulnerability. Successful exploit could allow the attacker to access certain resource beyond its privilege. |