Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
142 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 5.5% | — | Enlightenment ImlibEnlightenment Imlib2ImagemagickSUN Java Desktop System+10 | 16/9/2004 | 16/6/2026 | Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files. | |
| Modificada | Alta (7.5) | 22% | 💥 Exploit | Sendmail Advanced Message ServerSendmailSendmail PROSendmail Switch+10 | 6/10/2003 | 16/6/2026 | A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences. | |
| Modificada | Alta (10) | 66% | — | Sendmail Advanced Message ServerSendmailSendmail PROSendmail Switch+14 | 6/10/2003 | 16/6/2026 | The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c. | |
| Modificada | Alta (7.5) | 2.1% | — | Apple SafariKDE Konqueror EmbeddedKDERedhat Linux+2 | 16/6/2003 | 16/6/2026 | Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack. | |
| Modificada | Media (4.6) | 0.34% | — | Intuit Turbo TAX | 18/6/2001 | 16/6/2026 | TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow local users to obtain sensitive information. | |
| Modificada | Baja (2.1) | 0.86% | 💥 Exploit | Mandrakesoft Mandrake LinuxMandrakesoft Mandrake Linux Corporate ServerRedhat LinuxTrustix Secure Linux+1 | 26/3/2001 | 16/6/2026 | When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib. | |
| Modificada | Alta (10) | 16% | 💥 Exploit | Caldera Openlinux EbuilderImmunixConectiva LinuxSGI Irix+12 | 14/11/2000 | 16/6/2026 | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Caldera OpenlinuxSlackware LinuxSuse LinuxTurbolinux | 22/5/2000 | 16/6/2026 | Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter. | |
| Modificada | Baja (2.1) | 0.90% | 💥 Exploit | OpenldapMandrakesoft Mandrake LinuxRedhat LinuxTurbolinux | 21/4/2000 | 16/6/2026 | Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack. | |
| Modificada | Alta (7.2) | 0.82% | 💥 Exploit | Matt Kimball AND Roger Wolff MTRTurbolinux | 3/3/2000 | 16/6/2026 | The mtr program only uses a seteuid call when attempting to drop privileges, which could allow local users to gain root privileges. | |
| Modificada | Alta (7.2) | 0.42% | — | FreebsdMandrakesoft Mandrake LinuxRedhat LinuxTurbolinux | 28/2/2000 | 16/6/2026 | Buffer overflow in the dump utility in the Linux ext2fs backup package allows local users to gain privileges via a long command line argument. | |
| Modificada | Alta (7.5) | 3.0% | — | NMHRedhat LinuxTurbolinux | 28/2/2000 | 16/6/2026 | Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME headers in an email message. | |
| Modificada | Alta (7.2) | 2.0% | 💥 Exploit | Redhat LinuxTurbolinux | 26/2/2000 | 16/6/2026 | Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable. | |
| Modificada | Alta (7.2) | 0.89% | 💥 Exploit | Mandrakesoft Mandrake LinuxRedhat LinuxTurbolinux | 4/1/2000 | 16/6/2026 | Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack. | |
| Modificada | Alta (7.2) | 0.69% | 💥 Exploit | SGI IrixSUN SolarisSunosTurbolinux | 2/11/1999 | 16/6/2026 | Buffer overflow in uum program for Canna input system allows local users to gain root privileges. | |
| Modificada | Alta (7.2) | 0.69% | 💥 Exploit | SGI IrixSUN SolarisSunosTurbolinux | 2/11/1999 | 16/6/2026 | Buffer overflow in canuum program for Canna input system allows local users to gain root privileges. | |
| Modificada | Media (4.6) | 0.46% | — | SambaCaldera OpenlinuxRedhat LinuxTurbolinux | 19/11/1998 | 16/6/2026 | Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program. |