Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 572 respecto a la semana anterior
Críticas / altas1301▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)295▼ 215 respecto a la semana anterior
257 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 1.9% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) and possibly memory corruption via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. | |
| Modificada | Media (6.5) | 2.4% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (out-of-bounds array access) via a crafted HTML page. | |
| Modificada | Media (6.5) | 2.5% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (memory corruption, segmentation fault, and crash) via a crafted HTML page. | |
| Modificada | Media (6.5) | 2.4% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page. | |
| Modificada | Media (6.5) | 1.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.8% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.3% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Alta (8.8) | 2.9% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.3% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.2% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.2% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Alta (8.8) | 3.2% | — | Tats W3M | 12/12/2016 | 17/6/2026 | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page. | |
| Modificada | Media (4.3) | 3.2% | 💥 Exploit | Robotstats | 8/12/2014 | 17/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in admin/robots.lib.php in RobotStats 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) nom or (2) user_agent parameter to admin/robots.php. | |
| Modificada | Alta (7.5) | 2.3% | 💥 Exploit | Robotstats | 8/12/2014 | 17/6/2026 | SQL injection vulnerability in the formulaireRobot function in admin/robots.lib.php in RobotStats 1.0 allows remote attackers to execute arbitrary SQL commands via the robot parameter to admin/robots.php. | |
| Modificada | Baja (2.1) | 0.94% | — | Social Stats Project Social Stats | 25/8/2014 | 17/6/2026 | Cross-site scripting (XSS) vulnerability in the Social Stats module before 7.x-1.5 for Drupal allows remote authenticated users with the "[Content Type]: Create new content" permission to inject arbitrary web script or HTML via vectors related to the configuration. | |
| Modificada | Alta (7.5) | 2.2% | 💥 Exploit | Psychostats | 31/5/2013 | 16/6/2026 | SQL injection vulnerability in awards.php in PsychoStats 3.2.2b allows remote attackers to execute arbitrary SQL commands via the d parameter. | |
| Modificada | Media (4.3) | 5.8% | 💥 Exploit | Laurent Destailleur Awstats | 31/10/2012 | 16/6/2026 | Unspecified vulnerability in awredir.pl in AWStats before 7.1 has unknown impact and attack vectors. | |
| Modificada | Alta (7.5) | 2.2% | 💥 Exploit | Neubivljiv Dota Openstats | 25/10/2012 | 16/6/2026 | SQL injection vulnerability in DotA OpenStats 1.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. | |
| Modificada | Alta (10) | 1.8% | — | Smartertools Smarterstats | 16/12/2011 | 16/6/2026 | SmarterTools SmarterStats 6.2.4100 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an unspecified impact by leveraging an interpretation conflict involving frmCustomReport.aspx and certain other files. NOTE: it is possible that only clients, not the SmarterStats… | |
| Modificada | Media (5) | 1.1% | — | Smartertools Smarterstats | 16/12/2011 | 16/6/2026 | SmarterTools SmarterStats 6.2.4100 generates web pages containing external links in response to GET requests with query strings for frmGettingStarted.aspx, which makes it easier for remote attackers to obtain sensitive information by reading (1) web-server access logs or (2) web-server Referer logs, related to a… |