Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2720▼ 598 respecto a la semana anterior
Críticas / altas1299▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
87 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.65% | — | Ucd-snmp | 31/12/2004 | 16/6/2026 | Buffer overflow in snmpd in ucd-snmp 4.2.6 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -p command line argument. NOTE: it is not clear whether there are any standard configurations in which snmpd is installed setuid or setgid. If not, then this issue should not be… | |
| Modificada | Media (6.4) | 1.6% | — | Net-snmp | 1/12/2003 | 16/6/2026 | Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed. | |
| Modificada | Alta (7.5) | 5.7% | 💥 Exploit | Ucd-snmp | 3/11/2003 | 16/6/2026 | Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of an array. | |
| Modificada | Alta (10) | 2.5% | — | Castle Rock Computing Snmpc | 20/10/2003 | 16/6/2026 | SNMPc 6.0.8 and earlier performs authentication to the server on the client side, which allows remote attackers to gain privileges by decrypting the password that is returned by the server. | |
| Modificada | Alta (7.5) | 2.1% | — | HP Openview Emanate Snmp AgentHP Vvos | 11/4/2003 | 16/6/2026 | Unknown vulnerability or vulnerabilities in HP OpenView EMANATE 14.2 snmpModules allow the SNMP read-write community name to be exposed, related to (1) "'read-only' community access," and/or (2) an easily guessable community name. | |
| Modificada | Media (5) | 1.8% | — | Net-snmp | 11/10/2002 | 16/6/2026 | The handle_var_requests function in snmp_agent.c for the SNMP daemon in the Net-SNMP (formerly ucd-snmp) package 5.0.1 through 5.0.5 allows remote attackers to cause a denial of service (crash) via a NULL dereference. | |
| Modificada | Alta (10) | 51% | 💥 Exploit | Snmp | 13/2/2002 | 16/6/2026 | Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this… | |
| Modificada | Alta (10) | 24% | — | Snmp | 13/2/2002 | 16/6/2026 | Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap handling, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that this candidate will be SPLIT into multiple candidates, one or more for each… | |
| Modificada | Alta (7.5) | 2.6% | — | BTT Software Snmp Trap Watcher | 31/8/2001 | 16/6/2026 | Buffer overflow in BTT Software SNMP Trap Watcher 1.16 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string trap. | |
| Modificada | Media (5) | 1.6% | — | IBM AIX Snmp | 27/6/2001 | 16/6/2026 | AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection. | |
| Modificada | Media (5) | 1.8% | — | SnmpNetwork Appliance Netcache | 7/4/1999 | 16/6/2026 | The SNMP default community name "public" is not properly removed in NetApps C630 Netcache, even if the administrator tries to disable it. | |
| Modificada | Media (5) | 1.3% | — | Ucd-snmp | 6/4/1999 | 16/6/2026 | vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information. |