Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
–

107 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)25%💥 ExploitMicrosoft Internet Information Server1/1/199916/6/2026
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.
ModificadaMedia (5)7.6%—C2net Stonghold WEB ServerHP Open Market Secure WebserverMicrosoft Exchange ServerMicrosoft Internet Information Server+926/6/199816/6/2026
Information from SSL-encrypted sessions via PKCS #1.
ModificadaMedia (5)65%💥 ExploitMicrosoft Internet Information ServerMicrosoft Windows NT1/6/199816/6/2026
In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL.
ModificadaAlta (7)19%—Microsoft FrontpageMicrosoft Internet Information ServerMicrosoft Personal WEB ServerNetscape Enterprise Server+16/2/199816/6/2026
Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
ModificadaMedia (6.4)53%💥 ExploitMicrosoft Internet Information Server1/9/199716/6/2026
IIS newdsn.exe CGI script allows remote users to overwrite files.
ModificadaMedia (5)13%💥 ExploitMicrosoft Internet Information ServerMicrosoft Internet Information Services1/6/199716/6/2026
Denial of service in IIS using long URLs.
ModificadaAlta (7.5)8.0%—Microsoft Internet Information ServerMicrosoft Internet Information Services1/1/199716/6/2026
IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.