Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
209 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 3.7% | — | Deltaww Cncsoft Screeneditor | 17/4/2019 | 17/6/2026 | Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.88 and prior. Multiple stack-based buffer overflow vulnerabilities may be exploited by processing specially crafted project files, allowing an attacker to remotely execute arbitrary code. This may occur because CNCSoft lacks user input validation… | |
| Modificada | Alta (7.5) | 10% | 💥 Exploit | Screen Stream Project Screen Stream | 15/3/2019 | 17/6/2026 | The Screen Stream application through 3.0.15 for Android allows remote attackers to cause a denial of service via many simultaneous /start-stop requests. | |
| Modificada | Media (5.5) | 1.1% | — | Deltaww Screeneditor | 28/2/2019 | 17/6/2026 | Delta Industrial Automation CNCSoft, CNCSoft ScreenEditor Version 1.00.84 and prior. An out-of-bounds read vulnerability may cause the software to crash due to lacking user input validation for processing project files. | |
| Modificada | Media (6.1) | 0.58% | — | Mate-desktop Mate-screensaver | 9/1/2019 | 17/6/2026 | mate-screensaver before 1.20.2 in MATE Desktop Environment allows physically proximate attackers to view screen content and possibly control applications. By unplugging and re-plugging or power-cycling external output devices (such as additionally attached graphical outputs via HDMI, VGA, DVI, etc.) the content of a… | |
| Modificada | Media (5.4) | 0.80% | — | Juniper Netscreen Screenos | 10/10/2018 | 17/6/2026 | A persistent cross-site scripting vulnerability in the graphical user interface of ScreenOS may allow a remote authenticated user to inject web script or HTML and steal sensitive data and credentials from a web administration session, possibly tricking a follow-on administrative user to perform administrative actions… | |
| Modificada | Alta (8.8) | 9.5% | — | Deltaww CncsoftDeltaww Screeneditor | 13/8/2018 | 17/6/2026 | CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has multiple stack-based buffer overflow vulnerabilities that could cause the software to crash due to lacking user input validation before copying data from project files onto the stack. Which may allow an attacker to gain remote code execution with… | |
| Modificada | Alta (8.1) | 3.5% | — | Deltaww CncsoftDeltaww Screeneditor | 13/8/2018 | 17/6/2026 | CNCSoft Version 1.00.83 and prior with ScreenEditor Version 1.00.54 has two out-of-bounds read vulnerabilities could cause the software to crash due to lacking user input validation for processing project files. Which may allow an attacker to gain remote code execution with administrator privileges if exploited. | |
| Modificada | Alta (7) | 0.21% | — | Canonical Screen-resolution-extraCanonical Ubuntu Linux | 28/3/2018 | 17/6/2026 | screenresolution-mechanism in screen-resolution-extra 0.17.2 does not properly use the PolicyKit D-Bus API, which allows local users to bypass intended access restrictions by leveraging a race condition via a setuid or pkexec process that is mishandled in a PolicyKitService._check_permission call. | |
| Modificada | Alta (7.8) | 1.8% | — | Deltaww Delta Industrial Automation Screen Editor | 15/3/2018 | 17/6/2026 | A Stack-based Buffer Overflow issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. Stack-based buffer overflow vulnerabilities caused by processing specially crafted .dpb files may allow an attacker to remotely execute arbitrary code. | |
| Modificada | Alta (7.8) | 1.1% | — | Deltaww Delta Industrial Automation Screen Editor | 15/3/2018 | 17/6/2026 | A Use-after-Free issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. Specially crafted .dpb files could exploit a use-after-free vulnerability. | |
| Modificada | Alta (7.8) | 1.1% | — | Deltaww Delta Industrial Automation Screen Editor | 15/3/2018 | 17/6/2026 | An Out-of-bounds Write issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. Specially crafted .dpb files may cause the system to write outside the intended buffer area. | |
| Modificada | Alta (7.8) | 1.1% | — | Deltaww Delta Industrial Automation Screen Editor | 15/3/2018 | 17/6/2026 | A Type Confusion issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. An access of resource using incompatible type ('type confusion') vulnerability may allow an attacker to execute remote code when processing specially crafted .dpb files. | |
| Modificada | Media (6.5) | 0.60% | — | Juniper Screenos | 10/1/2018 | 17/6/2026 | Juniper Networks ScreenOS devices do not pad Ethernet packets with zeros, and thus some packets can contain fragments of system memory or data from previous packets. This issue is often detected as CVE-2003-0001. The issue affects all versions of Juniper Networks ScreenOS prior to 6.3.0r25. | |
| Modificada | Media (5.4) | 1.1% | — | Juniper Screenos | 17/7/2017 | 17/6/2026 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user… | |
| Modificada | Media (5.4) | 1.1% | — | Juniper Screenos | 17/7/2017 | 17/6/2026 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user… | |
| Modificada | Media (5.4) | 1.1% | — | Juniper Screenos | 17/7/2017 | 17/6/2026 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user… | |
| Modificada | Media (5.4) | 1.2% | — | Juniper Screenos | 17/7/2017 | 17/6/2026 | A reflected cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a network based attacker to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the attacker to effectively… | |
| Modificada | Media (5.4) | 1.1% | — | Juniper Screenos | 17/7/2017 | 17/6/2026 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN running ScreenOS allows a user with the 'security' role to inject HTML/JavaScript content into the management session of other users including the administrator. This enables the lower-privileged user… | |
| Modificada | Alta (7.8) | 1.4% | — | Jasdf Screensavers | 9/6/2017 | 17/6/2026 | Untrusted search path vulnerability in screensaver installers (jasdf_01.exe, jasdf_02.exe, jasdf_03.exe, jasdf_04.exe, jasdf_05.exe, scramble_setup.exe, clock_01_setup.exe, clock_02_setup.exe) available prior to May 25, 2017 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | |
| Modificada | Alta (7.8) | 1.1% | — | GNU Screen | 20/3/2017 | 17/6/2026 | GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions. | |
| Modificada | Alta (7.5) | 2.2% | — | Schneider-electric Magelis GTU Universal Panel FirmwareSchneider-electric Magelis GTO Advanced Optimum Panel FirmwareSchneider-electric Magelis Sto5 Small Panel FirmwareSchneider-electric Magelis STU Small Panel Firmware+4 | 13/2/2017 | 17/6/2026 | An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all versions, Magelis STO5xx and STU Small panels, all versions, Magelis XBT GH Advanced Hand-held Panels, all versions, Magelis XBT GK Advanced Touchscreen Panels with Keyboard,… | |
| Modificada | Media (5.3) | 4.3% | 💥 PoC | Schneider-electric Magelis GTU Universal Panel FirmwareSchneider-electric Magelis GTO Advanced Optimum Panel FirmwareSchneider-electric Magelis Sto5 Small Panel FirmwareSchneider-electric Magelis STU Small Panel Firmware+4 | 13/2/2017 | 17/6/2026 | An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all versions, Magelis STO5xx and STU Small panels, all versions, Magelis XBT GH Advanced Hand-held Panels, all versions, Magelis XBT GK Advanced Touchscreen Panels with Keyboard,… | |
| Modificada | Media (6.8) | 0.44% | — | KDE KscreenlockerKDE Plasma-workspaceFedoraproject FedoraOpensuse Leap | 23/12/2016 | 17/6/2026 | Turning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can result in the screen being unlocked when turning a screen on again. | |
| Modificada | Alta (7.5) | 1.9% | — | Juniper Screenos | 15/4/2016 | 17/6/2026 | The administrative web services interface in Juniper ScreenOS before 6.3.0r21 allows remote attackers to cause a denial of service (reboot) via a crafted SSL packet. | |
| Modificada | Alta (8.1) | 3.9% | — | Juniper Screenos | 8/1/2016 | 17/6/2026 | Juniper ScreenOS before 6.3.0r21, when ssh-pka is configured and enabled, allows remote attackers to cause a denial of service (system crash) or execute arbitrary code via crafted SSH negotiation. |