Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
–

184 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.6)0.31%—SCO Unixware12/3/200116/6/2026
Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages.
ModificadaAlta (10)4.0%—Compaq Armada Insight ManagerCompaq Enterprise Volume Manager-command ScripterCompaq Foundation AgentsCompaq Insight Management Agent+1112/3/200116/6/2026
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
ModificadaAlta (10)1.5%—SCO Unixware12/3/200116/6/2026
A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges.
ModificadaMedia (5)1.1%—SCO Open DesktopSCO OpenserverSCO Unixware12/3/200116/6/2026
Vulnerability in xserver in SCO UnixWare 2.1.x and OpenServer 5.05 and earlier allows an attacker to cause a denial of service which prevents access to reserved port numbers below 1024.
ModificadaBaja (1.2)0.34%—ImmunixRedhat Linux12/3/200116/6/2026
vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
ModificadaBaja (1.2)0.30%—ImmunixDebian LinuxMandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate Server+112/3/200116/6/2026
privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.
ModificadaBaja (1.2)0.30%—ImmunixMandrakesoft Mandrake LinuxRedhat Linux12/3/200116/6/2026
arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
ModificadaMedia (5)1.8%—Debian LinuxDigital UnixNetbsdRedhat Linux+112/3/200116/6/2026
traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.
ModificadaBaja (1.2)0.30%—ImmunixMandrakesoft Mandrake LinuxRedhat Linux12/3/200116/6/2026
gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.
ModificadaMedia (5)1.8%—Debian LinuxDigital UnixNetbsdRedhat Linux+112/3/200116/6/2026
traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source address of the packets, which could be used in spoofing attacks.
ModificadaBaja (1.2)0.30%—ImmunixNational Science Foundation Squid WEB ProxyMandrakesoft Mandrake LinuxRedhat Linux+112/3/200116/6/2026
squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
ModificadaBaja (1.2)0.30%—ImmunixMandrakesoft Mandrake LinuxRedhat Linux12/3/200116/6/2026
rdist 6.1.5 allows local users to overwrite arbitrary files via a symlink attack.
ModificadaMedia (5)1.1%—SCO Unixware12/3/200116/6/2026
Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service.
ModificadaBaja (1.2)0.30%—ImmunixMandrakesoft Mandrake LinuxRedhat Linux12/3/200116/6/2026
useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.
ModificadaAlta (7.2)1.1%💥 ExploitImmunixConectiva LinuxMandrakesoft Mandrake LinuxRedhat Linux+19/1/200116/6/2026
modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters.
ModificadaAlta (7.2)1.4%💥 ExploitImmunixConectiva LinuxCaldera OpenlinuxCaldera Openlinux Edesktop+59/1/200116/6/2026
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
ModificadaAlta (7.2)0.69%—ImmunixFreebsdRedhat LinuxInvisible-island Ncurses19/12/200023/9/2026
Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.
ModificadaAlta (7.5)12%💥 ExploitSCO Unixware11/12/200023/9/2026
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
ModificadaMedia (6.4)1.3%—Digital Unix14/11/200016/6/2026
kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet.
ModificadaAlta (10)16%💥 ExploitCaldera Openlinux EbuilderImmunixConectiva LinuxSGI Irix+1214/11/200016/6/2026
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
ModificadaMedia (5)1.9%—SCO Unixware14/11/200016/6/2026
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
ModificadaMedia (4.6)0.41%—ImmunixIputilsRedhat Linux18/10/200016/6/2026
Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges.
ModificadaAlta (7.5)2.0%—ImmunixIputilsRedhat Linux18/10/200016/6/2026
ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, does not drop privileges after acquiring a raw socket, which increases ping's exposure to bugs that otherwise would occur at lower privileges.
ModificadaAlta (7.2)0.67%💥 ExploitSCO Unixware11/4/200016/6/2026
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
ModificadaMedia (5)1.3%—SCO Unixware10/3/200016/6/2026
Vulnerability in the EELS system in SCO UnixWare 7.1.x allows remote attackers to cause a denial of service.
Orbitaley — Vulnerabilidades