Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2751▼ 38 respecto a la semana anterior
Críticas / altas1262▼ 270 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)246▲ 209 respecto a la semana anterior
1003 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.5% | — | Watchguard Legacy RssaWatchguard SohoWatchguard Vclass | 31/12/2002 | 16/6/2026 | WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates a response that contains the string, causing IPFilter to treat… | |
| Modificada | Alta (7.5) | 2.0% | — | Atguard Personal Firewall | 31/12/2002 | 16/6/2026 | AtGuard 3.2 allows remote attackers to bypass firwall filters and execute prohibited programs by changing the filenames to permitted filenames. | |
| Modificada | Alta (10) | 9.8% | — | Cisco IOSFissh SSH ClientIntersoft SecurenettermNetcomposite Shellguard SSH+3 | 23/12/2002 | 16/6/2026 | Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite. | |
| Modificada | Alta (10) | 6.1% | — | Cisco IOSFissh SSH ClientIntersoft SecurenettermNetcomposite Shellguard SSH+3 | 23/12/2002 | 16/6/2026 | Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as… | |
| Modificada | Alta (10) | 80% | 💥 Exploit | Cisco IOSFissh SSH ClientIntersoft SecurenettermNetcomposite Shellguard SSH+3 | 23/12/2002 | 16/6/2026 | Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite. | |
| Modificada | Alta (10) | 5.8% | — | Cisco IOSFissh SSH ClientIntersoft SecurenettermNetcomposite Shellguard SSH+3 | 23/12/2002 | 16/6/2026 | Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite. | |
| Modificada | Alta (7.5) | 1.4% | — | Watchguard Soho Firewall | 4/10/2002 | 16/6/2026 | The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name. | |
| Modificada | Media (5) | 1.7% | — | Watchguard FireboxWatchguard Soho Firewall | 4/10/2002 | 16/6/2026 | Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110. | |
| Modificada | Media (5) | 1.6% | — | Watchguard Soho Firewall | 12/8/2002 | 16/6/2026 | Watchguard SOHO firewall anteriores 5.0.35 permite a atacantes remotos provocar la Denegación de Servicios (caida y reinicio), cuando SOHO envía un paquete con las opciones IP erróneas. | |
| Modificada | Alta (10) | 3.1% | — | Watchguard Soho Firewall | 12/8/2002 | 16/6/2026 | Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules. | |
| Modificada | Alta (7.5) | 1.9% | — | Daniel Barron Dansguardian | 23/7/2002 | 16/6/2026 | DansGuardian before 2.4.5-1 allows remote attackers to bypass content filtering rules via hex-encoded URLs. | |
| Modificada | Media (4.6) | 0.49% | 💥 Exploit | Intego DiskguardIntego Fileguard | 1/4/2002 | 16/6/2026 | Intego FileGuard 4.0 usa cifrado debil para almacenar información de usuario y contraseñas, lo que permite a usuarios locales ganar privilegios descifrando la información, por ejemplo con la herramienta Disengage. | |
| Modificada | Alta (7.5) | 1.8% | — | Watchguard Firebox 2500Watchguard Firebox 4500 | 20/9/2001 | 16/6/2026 | SMTP proxy in WatchGuard Firebox (2500 and 4500) 4.5 and 4.6 allows a remote attacker to bypass firewall filtering via a base64 MIME encoded email attachment whose boundary name ends in two dashes. | |
| Modificada | Alta (7.5) | 14% | 💥 Exploit | GNU Privacy Guard | 14/8/2001 | 16/6/2026 | Format string vulnerability in Gnu Privacy Guard (aka GnuPG or gpg) 1.05 and earlier can allow an attacker to gain privileges via format strings in the original filename that is stored in an encrypted file. | |
| Modificada | Media (5) | 1.3% | — | Watchguard Firebox II | 2/8/2001 | 16/6/2026 | Watchguard Firebox II prior to 4.6 allows a remote attacker to create a denial of service in the kernel via a large stream (>10,000) of malformed ICMP or TCP packets. | |
| Modificada | Media (5) | 1.7% | — | Watchguard Firebox II | 2/6/2001 | 16/6/2026 | Watchguard Firebox II allows remote attackers to cause a denial of service by establishing multiple connections and sending malformed PPTP packets. | |
| Modificada | Alta (10) | 2.3% | — | Watchguard Firebox II | 26/3/2001 | 16/6/2026 | Watchguard Firebox II firewall allows users with read-only access to gain read-write access, and administrative privileges, by accessing a file that contains hashed passphrases, and using the hashes during authentication. | |
| Modificada | Media (5) | 3.1% | 💥 Exploit | Watchguard Soho Firewall | 16/2/2001 | 16/6/2026 | WatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests. | |
| Modificada | Media (5) | 2.0% | — | GNU Privacy Guard | 12/2/2001 | 16/6/2026 | gpg (aka GnuPG) 1.0.4 and other versions imports both public and private keys from public key servers without notifying the user about the private keys, which could allow an attacker to break the web of trust. | |
| Modificada | Alta (10) | 6.2% | — | Watchguard Soho Firewall | 12/2/2001 | 16/6/2026 | Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request. | |
| Modificada | Baja (2.1) | 0.40% | — | GNU Privacy Guard | 12/2/2001 | 16/6/2026 | gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify the contents of a file without detection. | |
| Modificada | Media (5) | 1.8% | — | Watchguard Soho Firewall | 12/2/2001 | 16/6/2026 | WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets. | |
| Modificada | Alta (10) | 1.9% | — | Watchguard Soho Firewall | 12/2/2001 | 16/6/2026 | HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities. | |
| Modificada | Media (5) | 1.8% | — | Watchguard Firebox II | 9/1/2001 | 16/6/2026 | WatchGuard Firebox II allows remote attackers to cause a denial of service by flooding the Firebox with a large number of FTP or SMTP requests, which disables proxy handling. | |
| Modificada | Alta (7.5) | 3.0% | — | GNU Privacy Guard | 19/12/2000 | 23/9/2026 | GnuPG (gpg) 1.0.3 no verifica correctamente todas las firmas de un archivo que contiene múltiples documentos, lo que permite a un atacante modificar el contenido de todos los documentos excepto el primero sin detección. |