Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

151 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)3.0%💥 ExploitWsmp3 DaemonWsmp3 WEB Server21/5/200316/6/2026
Directory traversal vulnerability in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allows remote attackers to read and execute arbitrary files via .. (dot dot) sequences in HTTP GET or POST requests.
ModificadaMedia (5)3.2%💥 ExploitAlt-n Mdaemon31/3/200316/6/2026
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service via long (1) DELE or (2) UIDL arguments.
ModificadaBaja (2.1)1.1%💥 ExploitAlt-n MdaemonAlt-n Worldclient31/12/200216/6/2026
Buffer overflow in WorldClient.cgi in WorldClient in Alt-N Technologies MDaemon 5.0.5.0 and earlier allows local users to execute arbitrary code via a long folder name (NewFolder parameter).
ModificadaMedia (5.5)0.16%—Mdaemon31/12/200216/6/2026
Alt-N Technologies Mdaemon 5.0 through 5.0.6 uses a weak encryption algorithm to store user passwords, which allows local users to crack passwords.
ModificadaMedia (5)1.3%—Alt-n Mdaemon31/12/200216/6/2026
Alt-N Technologies MDaemon 5.0.5.0 and earlier creates a default MDaemon mail account with a password of MServer, which could allow remote attackers to send anonymous email.
ModificadaMedia (6.9)0.66%💥 ExploitFreebsd Point-to-point Protocol Daemon12/8/200216/6/2026
BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specified as a tty device.
ModificadaAlta (7.5)11%💥 Exploit3com 3cdaemon18/6/200216/6/2026
Buffer overflow in 3Cdaemon 2.0 FTP server allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long commands such as login.
ModificadaAlta (7.2)0.35%—SGI NqsdaemonCray Unicos31/1/200216/6/2026
Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters.
ModificadaAlta (7.5)6.1%—Gnome Libgtop Daemon28/11/200116/6/2026
Buffer overflow in the permitted function of GNOME gtop daemon (libgtop_daemon) in libgtop 1.0.13 and earlier may allow remote attackers to execute arbitrary code via long authentication data.
ModificadaAlta (7.5)2.8%—Gnome Libgtop Daemon27/11/200116/6/2026
Format string vulnerability in the permitted function of GNOME libgtop_daemon in libgtop 1.0.12 and earlier allows remote attackers to execute arbitrary code via an argument that contains format specifiers that are passed into the (1) syslog_message and (2) syslog_io_message functions.
ModificadaMedia (6.2)0.39%—Patrick Schemitz Autonice Daemon26/11/200116/6/2026
Format string vulnerability in auto nice daemon (AND) 1.0.4 and earlier allows a local user to possibly execute arbitrary code via a process name containing a format string.
ModificadaMedia (5)1.6%—Alt-n Mdaemon22/8/200116/6/2026
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.
ModificadaBaja (2.1)0.93%💥 ExploitAlt-n Mdaemon22/8/200116/6/2026
IMAP server in Alt-N Technologies MDaemon 3.5.6 allows a local user to cause a denial of service (hang) via long (1) SELECT or (2) EXAMINE commands.
ModificadaAlta (7.5)1.8%—Sourceforge Newsdaemon3/5/200116/6/2026
NewsDaemon before 0.21b allows remote attackers to execute arbitrary SQL queries and gain privileges via a malformed user_username parameter.
ModificadaAlta (7.2)0.40%—Alt-n Mdaemon12/2/200116/6/2026
MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel button at the password prompt, then pressing the enter key.
ModificadaMedia (5)1.9%—Alt-n Mdaemon12/2/200116/6/2026
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.
ModificadaAlta (7.5)2.3%—Alt-n Mdaemon11/12/200016/6/2026
Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
ModificadaAlta (7.5)3.8%💥 ExploitAlt-n Mdaemon11/12/200016/6/2026
Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
ModificadaBaja (2.6)1.1%—Alt-n Mdaemon20/10/200016/6/2026
WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.
ModificadaBaja (2.6)4.1%💥 ExploitAlt-n Mdaemon16/6/200016/6/2026
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
ModificadaBaja (2.1)0.48%—Mindstorm Smartftp Daemon13/6/200016/6/2026
SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a .. (dot dot) attack.
ModificadaMedia (5)1.3%—Alt-n Mdaemon24/5/200016/6/2026
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
ModificadaAlta (10)8.0%💥 ExploitH. Nomura Tiny Ftpdaemon1/2/200016/6/2026
Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands.
ModificadaMedia (5)1.3%—Deerfield Mdaemon1/12/199916/6/2026
Denial of service in MDaemon 2.7 via a large number of connection attempts.
ModificadaMedia (5)5.8%💥 ExploitDeerfield Mdaemon24/11/199916/6/2026
Denial of service in MDaemon WorldClient and WebConfig services via a long URL.
Orbitaley — Vulnerabilidades