Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2716▼ 25 respecto a la semana anterior
Críticas / altas1269▼ 244 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)230▲ 212 respecto a la semana anterior
–

1488 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)2.4%—HP Systems Insight Manager17/10/200816/6/2026
Vulnerabilidad no especificada en HP Systems Insight Manager (SIM) anterior a v5.2 Update 2 (C.05.02.02.00) permite a atacantes remotos obtener información sensible mediante vectores no especificados.
ModificadaAlta (7.8)3.5%—HP Insight Diagnostics2/10/200816/6/2026
Vulnerabilidad no especificada en HP Insight Diagnostics en versiones anteriores a v7.9.1.2402 permite a atacantes remotos leer ficheros de su elección a través de vectores desconocidos.
ModificadaAlta (10)4.5%—HP Systems Insight Manager16/5/200716/6/2026
Vulnerabilidad de fijación de sesión en HP Systems Insight Manager (SIM) 4.2 y 5.0 SP4 y SP5 permite a atacantes remotos secuestrar sesiones web al establecer la cookie JSESSIONID.
ModificadaMedia (5)4.2%—HP Systems Insight Manager13/2/200616/6/2026
Directory traversal vulnerability in HP Systems Insight Manager 4.2 through 5.0 SP3 for Windows allows remote attackers to access arbitrary files via unspecified vectors, a different vulnerability than CVE-2005-2006.
ModificadaAlta (7.8)2.2%—HP Systems Insight Manager4/12/200516/6/2026
Unknown vulnerability in the login page for HP Systems Insight Manager (SIM) 4.0 and 4.1, when accessed by Microsoft Internet Explorer with the MS04-025 patch, leads to a denial of service (browser hang). NOTE: although the advisory is vague, this issue does not appear to involve an attacker at all. If not, then this…
ModificadaAlta (10)5.2%—HP Insight Management SuiteHP Insight ManagerHP Remote Diagnostics Enabling Agent31/12/200316/6/2026
Unspecified vulnerability in the non-SSL web agent in various HP Management Agent products allows local users or remote attackers to gain privileges or cause a denial of service via unknown attack vectors.
ModificadaMedia (4.3)3.0%💥 ExploitCompaq Insight Management Agent31/12/200216/6/2026
Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL, which inserts the script into the resulting error message.
ModificadaAlta (10)87%💥 ExploitCompaq Insight ManagerCompaq Insight Manager XEMicrosoft Data EngineMicrosoft Msde12/8/200216/6/2026
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3) Data Engine (MSDE) 1.0, including third party packages that use these products such as (4) Tumbleweed Secure Mail (MMS) (5) Compaq Insight Manager, and (6) Visio 2000, which allows remote attackers…
ModificadaAlta (10)9.0%—Compaq Insight Manager XE6/12/200116/6/2026
Buffer overflow in Compaq Insight Manager XE 2.1b and earlier allows remote attackers to execute arbitrary code via (1) SNMP and (2) DMI.
ModificadaAlta (10)4.0%—Compaq Armada Insight ManagerCompaq Enterprise Volume Manager-command ScripterCompaq Foundation AgentsCompaq Insight Management Agent+1112/3/200116/6/2026
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
ModificadaAlta (7.5)1.5%—Compaq Insight Management AgentCompaq Management Agents FOR Servers31/12/199916/6/2026
BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.
ModificadaMedia (6.4)1.5%—Compaq Insight Management AgentCompaq Power Management1/6/199916/6/2026
Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301.
ModificadaMedia (5)6.2%💥 ExploitCompaq Insight Management AgentCompaq Power Management26/5/199916/6/2026
The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack.
Orbitaley — Vulnerabilidades