Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2685▼ 177 respecto a la semana anterior
Críticas / altas1223▼ 305 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 186 respecto a la semana anterior
1212 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 7.6% | — | Apache Http Server | 7/8/1998 | 16/6/2026 | Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers with the same name, aka the "sioux" vulnerability. | |
| Modificada | Media (5) | 20% | 💥 Exploit | Apache Http Server | 30/12/1997 | 16/6/2026 | Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters. | |
| Modificada | Alta (7.5) | 10% | 💥 Exploit | Ncsa Httpd | 23/9/1997 | 16/6/2026 | Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution. | |
| Modificada | Alta (10) | 3.7% | — | Oracle Http Server | 19/9/1997 | 16/6/2026 | Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file. | |
| Modificada | Alta (7.5) | 3.6% | — | Apache Http Server | 1/9/1997 | 16/6/2026 | Apache httpd cookie buffer overflow for versions 1.1.1 and earlier. | |
| Modificada | Media (5) | 2.1% | — | Oracle Http Server | 23/7/1997 | 16/6/2026 | Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. | |
| Modificada | Alta (7.5) | 8.7% | 💥 Exploit | University OF Arizona Glimpse HttpUniversity OF Arizona Webglimpse | 1/7/1997 | 16/6/2026 | The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands. | |
| Modificada | Alta (7.5) | 26% | 💥 Exploit | Apache Http ServerIllinois Ncsa Httpd | 1/1/1997 | 16/6/2026 | ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs. | |
| Modificada | Alta (7.5) | 26% | 💥 Exploit | Apache Http ServerNetscape Commerce ServerNetscape Communications ServerNetscape Enterprise Server | 10/12/1996 | 16/6/2026 | List of arbitrary files on Web host via nph-test-cgi script. | |
| Modificada | Media (5) | 30% | 💥 Exploit | Apache Http Server | 1/4/1996 | 16/6/2026 | test-cgi program allows an attacker to list files on the server. | |
| Modificada | Alta (10) | 87% | — | Apache Http ServerNcsa Httpd | 20/3/1996 | 16/6/2026 | phf CGI program allows remote command execution through shell metacharacters. | |
| Modificada | Alta (10) | 1.9% | — | Ncsa Httpd Project Ncsa Httpd | 1/2/1995 | 16/6/2026 | Buffer overflow in NCSA WebServer (version 1.5c) gives remote access. |