Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2720▼ 598 respecto a la semana anterior
Críticas / altas1299▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

87 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)0.65%—Ucd-snmp31/12/200416/6/2026
Buffer overflow in snmpd in ucd-snmp 4.2.6 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -p command line argument. NOTE: it is not clear whether there are any standard configurations in which snmpd is installed setuid or setgid. If not, then this issue should not be…
ModificadaMedia (6.4)1.6%—Net-snmp1/12/200316/6/2026
Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.
ModificadaAlta (7.5)5.7%💥 ExploitUcd-snmp3/11/200316/6/2026
Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array.
ModificadaAlta (10)2.5%—Castle Rock Computing Snmpc20/10/200316/6/2026
SNMPc 6.0.8 and earlier performs authentication to the server on the client side, which allows remote attackers to gain privileges by decrypting the password that is returned by the server.
ModificadaAlta (7.5)2.1%—HP Openview Emanate Snmp AgentHP Vvos11/4/200316/6/2026
Unknown vulnerability or vulnerabilities in HP OpenView EMANATE 14.2 snmpModules allow the SNMP read-write community name to be exposed, related to (1) "'read-only' community access," and/or (2) an easily guessable community name.
ModificadaMedia (5)1.8%—Net-snmp11/10/200216/6/2026
The handle_var_requests function in snmp_agent.c for the SNMP daemon in the Net-SNMP (formerly ucd-snmp) package 5.0.1 through 5.0.5 allows remote attackers to cause a denial of service (crash) via a NULL dereference.
ModificadaAlta (10)51%💥 ExploitSnmp13/2/200216/6/2026
Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this…
ModificadaAlta (10)24%—Snmp13/2/200216/6/2026
Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap handling, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each…
ModificadaAlta (7.5)2.6%—BTT Software Snmp Trap Watcher31/8/200116/6/2026
Buffer overflow in BTT Software SNMP Trap Watcher 1.16 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string trap.
ModificadaMedia (5)1.6%—IBM AIX Snmp27/6/200116/6/2026
AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.
ModificadaMedia (5)1.8%—SnmpNetwork Appliance Netcache7/4/199916/6/2026
The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it.
ModificadaMedia (5)1.3%—Ucd-snmp6/4/199916/6/2026
vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information.
Orbitaley — Vulnerabilidades