Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2697▼ 181 respecto a la semana anterior
Críticas / altas1225▼ 327 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)244▲ 208 respecto a la semana anterior
1217 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.4) | 4.3% | — | EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software | 23/8/2005 | 16/6/2026 | The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2)… | |
| Modificada | Alta (7.5) | 4.5% | — | EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software | 23/8/2005 | 16/6/2026 | EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID. | |
| Modificada | Alta (7.5) | 4.6% | — | EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software | 23/8/2005 | 16/6/2026 | EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token. | |
| Modificada | Alta (10) | 87% | 💥 Exploit | Symantec Veritas Backup ExecSymantec Veritas Backup Exec Remote AgentSymantec Veritas Netbackup | 17/8/2005 | 16/6/2026 | VERITAS Backup Exec for Windows Servers 8.6 through 10.0, Backup Exec for NetWare Servers 9.0 and 9.1, and NetBackup for NetWare Media Server Option 4.5 through 5.1 uses a static password during authentication from the NDMP agent to the server, which allows remote attackers to read and write arbitrary files with the… | |
| Modificada | Alta (7.5) | 81% | 💥 Exploit | Broadcom Arcserve Backup 2000Broadcom Brightstor Arcserve BackupBroadcom Brightstor Arcserve Backup HPBroadcom Brightstor Enterprise Backup | 10/8/2005 | 16/6/2026 | Buffer overflow in the Discovery Service in BrightStor ARCserve Backup 9.0 through 11.1 allows remote attackers to execute arbitrary commands via a large packet to TCP port 41523, a different vulnerability than CVE-2005-0260. | |
| Modificada | Alta (7.5) | 66% | 💥 Exploit | Broadcom Brightstor Enterprise BackupCA Brightstor Arcserve BackupCA Brightstor Arcserve Backup AgentCA Brightstor Enterprise Backup Agent | 5/8/2005 | 16/6/2026 | Desbordamiento de búfer en Backup Agent for Microsoft SQL Server in BrightStor ARCserve Backup Agent for SQL Server 11.0 permite que atacantes remotos ejecuten código arbitrario mediante el envío de una cadena larga al puerto 6070 ó 6050. | |
| Modificada | Alta (7.5) | 5.2% | — | Symantec Veritas Backup Exec | 2/8/2005 | 16/6/2026 | Desbordamiento de búfer en Admin Plus Pack Option for VERITAS Backup Exec 9.0 hasta 10.0 para Windows Servers permite que atacantes remotos ejecuten código arbitrario. | |
| Modificada | Media (5) | 1.1% | — | Symantec Veritas Netbackup Enterprise ServerSymantec Veritas Netbackup Server | 27/7/2005 | 16/6/2026 | NDMP server en Veritas NetBackup 5.1 permite que atacantes causen una denegación de servicio mediante un mensaje CONFIG con fecha fuera de rango, lo que provoca intento de acceso a puntero nulo. | |
| Modificada | Media (4.6) | 0.32% | — | Sukria Backup Manager | 11/7/2005 | 16/6/2026 | Backup Manager 0.5.8a creates temporary files insecurely, which allows local users to conduct unauthorized file operations when a user is burning a CDR. | |
| Modificada | Media (6.4) | 0.99% | — | Sukria Backup Manager | 11/7/2005 | 16/6/2026 | Backup Manager 0.5.8a creates an archive repository with world readable and writable permissions, which allows attackers to modify or read the repository. | |
| Modificada | Alta (7.5) | 1.5% | — | Symantec Veritas Backup Exec | 29/6/2005 | 16/6/2026 | Unknown vulnerability in Remote Agent for Windows Servers (RAWS) in VERITAS Backup Exec 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for NetWare, allows remote attackers to gain privileges by copying the handle for the server. | |
| Modificada | Alta (7.5) | 3.2% | — | Symantec Veritas Backup Exec | 28/6/2005 | 16/6/2026 | Buffer overflow in the VERITAS Backup Exec Web Administration Console (BEWAC) 9.0 4367 through 10.0 rev. 5484 allows remote attackers to execute arbitrary code. | |
| Modificada | Alta (7.5) | 36% | — | Veritas Backup Exec | 28/6/2005 | 16/6/2026 | VERITAS Backup Exec 9.0 through 10.0 for Windows Servers, and 9.0.4019 through 9.1.307 for Netware, allows remote attackers to cause a denial of service (Remote Agent crash) via (1) a crafted packet in NDMLSRVR.DLL or (2) a request packet with an invalid (non-0) "Error Status" value, which triggers a null dereference. | |
| Modificada | Alta (10) | 54% | — | Symantec Veritas Backup Exec | 23/6/2005 | 16/6/2026 | VERITAS Backup Exec Server (beserver.exe) 9.0 through 10.0 for Windows allows remote unauthenticated attackers to modify the registry by calling methods to the RPC interface on TCP port 6106. | |
| Modificada | Alta (7.5) | 86% | 💥 Exploit | Symantec Veritas Backup Exec | 18/6/2005 | 16/6/2026 | Stack-based buffer overflow in VERITAS Backup Exec Remote Agent 9.0 through 10.0 for Windows, and 9.0.4019 through 9.1.307 for Netware allows remote attackers to execute arbitrary code via a CONNECT_CLIENT_AUTH request with authentication method type 3 (Windows credentials) and a long password argument. | |
| Modificada | Alta (10) | 6.9% | — | Broadcom Etrust AntivirusBroadcom Etrust Antivirus EEBroadcom Etrust EZ ArmorBroadcom Etrust EZ Armor LE+10 | 24/5/2005 | 16/6/2026 | Integer overflow in Computer Associates Vet Antivirus library, as used by CA InoculateIT 6.0, eTrust Antivirus r6.0 through 7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, BrightStor ARCserve Backup (BAB) r11.1, Vet Antivirus, Zonelabs ZoneAlarm Security… | |
| Modificada | Alta (7.5) | 3.1% | — | Broadcom Brightstor Arcserve Backup | 2/5/2005 | 16/6/2026 | The production release of the UniversalAgent for UNIX in BrightStor ARCserve Backup 11.1 contains hard-coded credentials, which allows remote attackers to access the file system and possibly execute arbitrary commands. | |
| Modificada | Alta (10) | 70% | 💥 Exploit | Broadcom Brightstor Arcserve Backup | 2/5/2005 | 16/6/2026 | Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbitrary code via a long packet to UDP port 41524, which is not properly handled in a recvfrom call. | |
| Modificada | Alta (10) | 65% | 💥 Exploit | Knox Software Arkeia Server Backup | 2/5/2005 | 16/6/2026 | Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request. | |
| Modificada | Alta (7.5) | 52% | 💥 Exploit | CA Brightstor Arcserve Backup | 2/5/2005 | 16/6/2026 | Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a denial of service or execute arbitrary code via an agent request to TCP port 6050 with a large argument before the option field. | |
| Modificada | Crítica (9.8) | 2.9% | — | Arkeia Network Backup | 21/2/2005 | 16/6/2026 | Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the file system and possibly execute arbitrary commands. | |
| Modificada | Alta (7.5) | 15% | 💥 Exploit | Archive ZIPBroadcom Brightstor Arcserve BackupBroadcom Etrust AntivirusBroadcom Etrust Antivirus Gateway+19 | 9/2/2005 | 16/6/2026 | Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | |
| Modificada | Alta (7.5) | 15% | 💥 Exploit | Archive ZIPBroadcom Brightstor Arcserve BackupBroadcom Etrust AntivirusBroadcom Etrust Antivirus Gateway+19 | 27/1/2005 | 16/6/2026 | Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | |
| Modificada | Alta (7.5) | 15% | 💥 Exploit | Archive ZIPBroadcom Brightstor Arcserve BackupBroadcom Etrust AntivirusBroadcom Etrust Antivirus Gateway+19 | 27/1/2005 | 16/6/2026 | Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. | |
| Modificada | Alta (7.5) | 15% | 💥 Exploit | Archive ZIPBroadcom Brightstor Arcserve BackupBroadcom Etrust AntivirusBroadcom Etrust Antivirus Gateway+19 | 27/1/2005 | 16/6/2026 | RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. |