Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2685▼ 177 respecto a la semana anterior
Críticas / altas1223▼ 305 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)233▲ 186 respecto a la semana anterior
–

1212 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)7.6%—Apache Http Server7/8/199816/6/2026
Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers with the same name, aka the "sioux" vulnerability.
ModificadaMedia (5)20%💥 ExploitApache Http Server30/12/199716/6/2026
Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters.
ModificadaAlta (7.5)10%💥 ExploitNcsa Httpd23/9/199716/6/2026
Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution.
ModificadaAlta (10)3.7%—Oracle Http Server19/9/199716/6/2026
Oracle Webserver 2.1 and earlier runs setuid root, but the configuration file is owned by the oracle account, which allows any local or remote attacker who obtains access to the oracle account to gain privileges or modify arbitrary files by modifying the configuration file.
ModificadaAlta (7.5)3.6%—Apache Http Server1/9/199716/6/2026
Apache httpd cookie buffer overflow for versions 1.1.1 and earlier.
ModificadaMedia (5)2.1%—Oracle Http Server23/7/199716/6/2026
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
ModificadaAlta (7.5)8.7%💥 ExploitUniversity OF Arizona Glimpse HttpUniversity OF Arizona Webglimpse1/7/199716/6/2026
The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.
ModificadaAlta (7.5)26%💥 ExploitApache Http ServerIllinois Ncsa Httpd1/1/199716/6/2026
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
ModificadaAlta (7.5)26%💥 ExploitApache Http ServerNetscape Commerce ServerNetscape Communications ServerNetscape Enterprise Server10/12/199616/6/2026
List of arbitrary files on Web host via nph-test-cgi script.
ModificadaMedia (5)30%💥 ExploitApache Http Server1/4/199616/6/2026
test-cgi program allows an attacker to list files on the server.
ModificadaAlta (10)87%—Apache Http ServerNcsa Httpd20/3/199616/6/2026
phf CGI program allows remote command execution through shell metacharacters.
ModificadaAlta (10)1.9%—Ncsa Httpd Project Ncsa Httpd1/2/199516/6/2026
Buffer overflow in NCSA WebServer (version 1.5c) gives remote access.
Orbitaley — Vulnerabilidades