Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3074▲ 486 respecto a la semana anterior
Críticas / altas1457▲ 57 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
1441 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.7% | — | SUN SolarisSunosDebian LinuxMandrakesoft Mandrake Linux+1 | 16/2/2004 | 16/6/2026 | Unknown vulnerability in the rwho daemon (rwhod) before 0.17, on little endian architectures, allows remote attackers to cause a denial of service (application crash). | |
| Modificada | Alta (7.5) | 7.6% | — | Apache Http ServerApache MOD Digest AppleAvaya Communication ManagerAvaya Intuity Audix LX+10 | 3/2/2004 | 16/6/2026 | mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials. | |
| Modificada | Alta (7.2) | 0.39% | — | SUN SolarisSunos | 5/1/2004 | 16/6/2026 | Múltiples vulnerabilidades desconocidas en lpstat y la librería libprint en Solaris 2.6 a 9 puede permitir a atacantes ejecutar código arbitrario o leer o escribir ficheros arbitrarios. | |
| Modificada | Media (5) | 3.3% | — | SUN SolarisSunos | 31/12/2003 | 16/6/2026 | Buffer overflow in the syslog daemon for Solaris 2.6 through 9 allows remote attackers to cause a denial of service (syslogd crash) and possibly execute arbitrary code via long syslog UDP packets. | |
| Modificada | Baja (1.2) | 0.69% | 💥 Exploit | SUN SolarisSunos | 31/12/2003 | 16/6/2026 | A race condition in the at command for Solaris 2.6 through 9 allows local users to delete arbitrary files via the -r argument with .. (dot dot) sequences in the job name, then modifying the directory structure after at checks permissions to delete the file and before the deletion actually takes place. | |
| Modificada | Alta (7.2) | 0.42% | — | SUN SolarisSunos | 31/12/2003 | 16/6/2026 | Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different vulnerability than CVE-2003-1068. | |
| Modificada | Alta (7.2) | 0.35% | — | SUN SolarisSunos | 31/12/2003 | 16/6/2026 | Unknown vulnerability in sendmail for Solaris 7, 8, and 9 allows local users to cause a denial of service (unknown impact) and possibly gain privileges via certain constructs in a .forward file. | |
| Modificada | Media (4.3) | 3.2% | — | ISC BindNixu NamesurferCompaq Tru64Freebsd+6 | 15/12/2003 | 16/6/2026 | ISC BIND 8.3.x antes de 8.3.7, y 8.4.x antes de 8.4.3 permite a atacantes remotos envenenar la cache mediante un servidor de nombres malicioso que devuelve respuestas negativas con un valor TTL (time to live) largo. | |
| Modificada | Alta (7.2) | 0.35% | — | SUN SolarisSunos | 11/12/2003 | 16/6/2026 | The ed editor for Sun Solaris 2.6, 7, and 8 allows local users to create or overwrite arbitrary files via a symlink attack on temporary files. | |
| Modificada | Alta (7.2) | 0.42% | — | SUN SolarisSunos | 8/12/2003 | 16/6/2026 | Unknown vulnerability in CDE Print Viewer (dtprintinfo) for Sun Solaris 2.6 through 9 may allow local users to execute arbitrary code. | |
| Modificada | Baja (3.7) | 0.30% | — | SUN SolarisSunos | 3/12/2003 | 16/6/2026 | The Xsun server for Sun Solaris 2.6 through 9, when running in Direct Graphics Access (DGA) mode, allows local users to cause a denial of service (Xsun crash) or to create or overwrite arbitrary files on the system, probably via a symlink attack on temporary server files. | |
| Modificada | Alta (7.2) | 0.35% | — | SUN SolarisSunos | 20/11/2003 | 16/6/2026 | Unknown vulnerability in the libraries for the PGX32 frame buffer in Solaris 2.5.1 and 2.6 through 9 allows local users to gain root access. | |
| Modificada | Media (5) | 1.6% | — | SUN SolarisSunos | 27/10/2003 | 16/6/2026 | The NFS Server for Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (UFS panic) via certain invalid UFS requests, which triggers a null dereference. | |
| Modificada | Media (4.6) | 0.38% | — | Oracle SolarisAI | 15/10/2003 | 16/6/2026 | Unknown vulnerability in the sysinfo system call for Solaris for SPARC 2.6 through 9, and Solaris for x86 2.6, 7, and 8, allows local users to read kernel memory. | |
| Modificada | Baja (1.2) | 0.29% | — | SUN SolarisSunos | 14/10/2003 | 16/6/2026 | Race condition in Solaris 2.6 through 9 allows local users to cause a denial of service (kernel panic), as demonstrated via the namefs function, pipe, and certain STREAMS routines. | |
| Modificada | Alta (10) | 66% | — | Sendmail Advanced Message ServerSendmailSendmail PROSendmail Switch+14 | 6/10/2003 | 16/6/2026 | La función de prescan en Sendmail 8.12.9 permite a atacantes remotos ejecutar código arbitrario mediante ataques de desbordamiento de búfer, como se demostró usando la función parseaddr en parseaddr.c. | |
| Modificada | Alta (10) | 89% | 💥 Exploit | SUN Solaris | 22/9/2003 | 16/6/2026 | La instalación por defecto de sadmind en Solaris usa autenticación débil (AUTH_SYS), lo que permite a atacantes locales y remotos suplantar clientes de Solstice AdminSuite y ganar privilegios de root mediantes ciertas secuencias de paquetes RPC. | |
| Modificada | Alta (10) | 2.4% | — | SUN SolarisSunos | 9/9/2003 | 16/6/2026 | Aspppls para Solaris 8 permite a usuarios locales sobrescribir archivos arbitrarios a través de un ataque de enlace simbólico sobre el archivo temporal .asppp.fifo. | |
| Modificada | Baja (1.2) | 0.32% | — | SUN SolarisSunos | 27/8/2003 | 16/6/2026 | Vulnerabilidad desconocida en Solaris 2.6 a 9 causa una denegación de servicio (pánico de sistema) mediante "una rara condición de carrera" o un ataque de usuarios locales. | |
| Modificada | Crítica (9.8) | 78% | 💥 Exploit | Redhat WU FtpdWuftpd Wu-ftpdApple MAC OS XApple MAC OS X Server+4 | 27/8/2003 | 16/6/2026 | Error de fuera-por-uno (off-by-one) en la función fb_realpath(), derivada de la función realpath de BSD, pude permitir a atacantes ejecutar código arbitrario, como se ha demostrado en wu-ftpd 2.5.0 a 2.6.2 mediante comandos que causan que nombres de rutas de tamaño MAXPATHLEN+1 disparen un desbordamiento de búfer,… | |
| Modificada | Alta (7.2) | 3.5% | 💥 Exploit | SUN SolarisSunos | 27/8/2003 | 16/6/2026 | Desbordamiento basado en la pila en el enlazador de tiempo de ejecución, ld.so.1 en Solaris 2.6 a 9 permite a usuarios locales ganar privilegios de root mediante una variable de entorno LD_PRELOAD larga. | |
| Modificada | Alta (7.5) | 1.5% | — | SUN SolarisSunos | 20/8/2003 | 16/6/2026 | The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may silently reenable services and allow remote attackers to bypass the intended security policy. | |
| Modificada | Media (5) | 3.2% | — | Oracle Solaris 8AI | 23/7/2003 | 16/6/2026 | Solaris 8 with IPv6 enabled allows remote attackers to cause a denial of service (kernel panic) via a crafted IPv6 packet. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | SUN SolarisSunos | 3/7/2003 | 16/6/2026 | Buffer overflow in the nss_ldap.so.1 library for Sun Solaris 8 and 9 may allow local users to gain root access via a long hostname in an LDAP lookup. | |
| Modificada | Alta (7.2) | 0.41% | — | SUN SolarisSunos | 19/6/2003 | 16/6/2026 | Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions. |