Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2773▼ 2 respecto a la semana anterior
Críticas / altas1273▼ 205 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 185 respecto a la semana anterior
–

1068 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)1.4%—Zendocs Zentrack31/12/200216/6/2026
zenTrack 2.0.3 and earlier allows remote attackers to obtain the full path to the web root via an invalid ticket ID, which leaks the path in an error message.
ModificadaAlta (7.5)1.8%—Fasttrack KazaaGroksterMusic City Networks Morpheus25/6/200216/6/2026
fasttrack p2p, as used in (1) KaZaA, (2) grokster, and (3) morpheus allows remote attackers to spoof other users by modifying the username and network information in the message header.
ModificadaMedia (5)1.7%—Fasttrack KazaaGroksterMusic City Networks Morpheus25/6/200216/6/2026
fasttrack p2p, as used in (1) KaZaA before 1.5, (2) grokster, and (3) morpheus allows remote attackers to cause a denial of service (memory exhaustion) via a series of client-to-client messages, which pops up new windows per message.
ModificadaMedia (5)2.5%—Netscape Fasttrack Server26/3/200116/6/2026
The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large number of non-existent URLs.
ModificadaAlta (10)2.2%—Netscape Enterprise ServerNetscape Fasttrack ServerNetscape Proxy ServerSCO Unixware12/3/200116/6/2026
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
ModificadaMedia (5)1.9%—Netscape Enterprise ServerNetscape Fasttrack Server12/3/200116/6/2026
Netscape Enterprise 3.5.1 and FastTrack 3.01 servers allow a remote attacker to view source code to scripts by appending a %20 to the script's URL.
ModificadaAlta (7.5)2.5%💥 ExploitNetscape Enterprise ServerNetscape Fasttrack Server4/1/200016/6/2026
Buffer overflow in Netscape Enterprise Server and FastTrask Server allows remote attackers to gain privileges via a long HTTP GET request.
ModificadaAlta (10)3.4%—Netscape Enterprise ServerNetscape Fasttrack Server1/12/199916/6/2026
Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authentication procedure.
ModificadaMedia (5)5.8%💥 ExploitTeamshare Teamtrack1/10/199916/6/2026
TeamTrack web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
ModificadaMedia (5)1.6%—Seapine Software Testtrack8/3/199916/6/2026
Seapine Software TestTrack server allows a remote attacker to cause a denial of service (high CPU) via (1) TestTrackWeb.exe and (2) ttcgi.exe by connecting to port 99 and disconnecting without sending any data.
ModificadaBaja (2.1)0.35%—L0phtcrack6/1/199916/6/2026
L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
ModificadaMedia (5)1.3%—L0phtcrack1/12/199816/6/2026
Remote attackers can perform a denial of service using IRIX fcagent.
ModificadaAlta (7.2)0.33%—IBM Tivoli OPC Tracker Agent2/10/199816/6/2026
IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.
ModificadaMedia (5)1.3%—IBM Tivoli OPC Tracker Agent2/10/199816/6/2026
IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.
ModificadaMedia (5)7.6%—C2net Stonghold WEB ServerHP Open Market Secure WebserverMicrosoft Exchange ServerMicrosoft Internet Information Server+926/6/199816/6/2026
Information from SSL-encrypted sessions via PKCS #1.
ModificadaAlta (7)19%—Microsoft FrontpageMicrosoft Internet Information ServerMicrosoft Personal WEB ServerNetscape Enterprise Server+16/2/199816/6/2026
Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
ModificadaAlta (7.5)7.6%💥 ExploitNetscape Fasttrack Server1/1/199816/6/2026
Netscape FastTrack Web server lists files when a lowercase "get" command is used instead of an uppercase GET.
ModificadaAlta (7.2)0.43%—Alec Muffet Cracklib14/12/199716/6/2026
Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.