Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 546 respecto a la semana anterior
Críticas / altas1325▼ 174 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 241 respecto a la semana anterior
173 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 6.6% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in the cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, and Linux RealPlayer 11.0.2.1744 allows remote attackers to execute arbitrary code via unspecified data in the initialization buffer. | |
| Modificada | Media (4.3) | 1.5% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | The (1) Upsell.htm, (2) Main.html, and (3) Custsupport.html components in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.1.2 and 2.1.3 allow remote attackers to inject code into the RealOneActiveXObject process, and consequently bypass intended Local Machine… | |
| Modificada | Alta (9.3) | 4.4% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | The RealAudio codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted audio stream in a RealMedia… | |
| Modificada | Alta (9.3) | 4.4% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted RealMedia video file. | |
| Modificada | Alta (9.3) | 2.9% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Integer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to have an unspecified impact via crafted frame dimensions in an SIPR stream. | |
| Modificada | Alta (9.3) | 5.9% | — | Realnetworks Realplayer | 14/12/2010 | 16/6/2026 | Array index error in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code via a malformed Media Properties Header (aka MDPR) in a… | |
| Modificada | Alta (9.3) | 3.1% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 12.0.0.1444, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to have an unspecified impact via a… | |
| Modificada | Alta (9.3) | 3.1% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Multiple heap-based buffer overflows in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allow remote attackers to have an unspecified impact via a crafted RealMedia file. | |
| Modificada | Alta (9.3) | 2.5% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, and Mac RealPlayer 11.0 through 12.0.0.1444 allows remote attackers to have an unspecified impact via a crafted AAC file. | |
| Modificada | Alta (9.3) | 2.5% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 allows remote attackers to have an unspecified impact via a crafted SOUND file. | |
| Modificada | Alta (9.3) | 3.1% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to have an unspecified impact via a crafted… | |
| Modificada | Alta (9.3) | 5.8% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | The drv2.dll (aka RV20 decompression) module in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, RealPlayer Enterprise 2.1.2 and 2.1.3, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of… | |
| Modificada | Alta (9.3) | 6.6% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 allows remote attackers to execute arbitrary code by specifying many subbands in cook audio codec information in a Real Audio file. | |
| Modificada | Alta (9.3) | 6.4% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.1, Mac RealPlayer 11.0 through 11.1, and Linux RealPlayer 11.0.2.1744 allows remote attackers to execute arbitrary code via a large Screen Width value in the Screen Descriptor header of a GIF87a file in an RTSP… | |
| Modificada | Alta (9.3) | 6.4% | — | Realnetworks Realplayer | 14/12/2010 | 16/6/2026 | Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code via malformed multi-rate data in an audio stream. | |
| Modificada | Alta (9.3) | 5.9% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Integer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.0.1, Mac RealPlayer 11.0 through 11.1, and Linux RealPlayer 11.0.2.1744 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a malformed MLLT atom in an AAC file. | |
| Modificada | Alta (9.3) | 5.8% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | Use-after-free vulnerability in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.0.1, Mac RealPlayer 11.0 through 11.1, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory… | |
| Modificada | Media (5) | 1.2% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 11.1, and Linux RealPlayer 11.0.2.1744 does not properly initialize the number of channels, which allows attackers to obtain unspecified "memory access" via unknown… | |
| Modificada | Alta (10) | 1.6% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, and Mac RealPlayer 11.0 through 12.0.0.1444 do not properly parse spectral data in AAC files, which has unspecified impact and remote attack vectors. | |
| Modificada | Alta (10) | 1.6% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 14/12/2010 | 16/6/2026 | The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 does not properly perform initialization, which has unspecified impact and attack vectors. | |
| Modificada | Alta (9.3) | 6.4% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 19/10/2010 | 16/6/2026 | Multiple heap-based buffer overflows in an ActiveX control in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 allow remote attackers to execute arbitrary code via a long .smil argument to the (1) tfile, (2) pnmm, or (3) cdda protocol handler. | |
| Modificada | Alta (9.3) | 5.9% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 19/10/2010 | 16/6/2026 | rjrmrpln.dll in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly validate file contents that are used during interaction with a heap buffer, which allows remote attackers to execute arbitrary code via crafted Name Value Property (NVP)… | |
| Modificada | Alta (9.3) | 26% | 💥 Exploit | Realnetworks RealplayerRealnetworks Realplayer SP | 19/10/2010 | 16/6/2026 | The browser-plugin implementation in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1 allows remote attackers to arguments to the RecordClip method, which allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via a " (double quote) in an… | |
| Modificada | Alta (10) | 2.8% | — | Realnetworks RealplayerRealnetworks Realplayer SP | 19/10/2010 | 16/6/2026 | Stack-based buffer overflow in the RichFX component in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 allows remote attackers to have an unspecified impact via unknown vectors. | |
| Modificada | Alta (9.3) | 35% | 💥 Exploit | Realnetworks RealplayerRealnetworks Realplayer SP | 19/10/2010 | 16/6/2026 | An ActiveX control in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly initialize an unspecified object component during parsing of a CDDA URI, which allows remote attackers to execute arbitrary code or cause a denial of service… |