Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2732▼ 9 respecto a la semana anterior
Críticas / altas1276▼ 237 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)230▲ 212 respecto a la semana anterior
–

1534 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)3.9%—Teamware Office16/7/200116/6/2026
Teamware Office Enterprise Directory allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for certain BER object types, as demonstrated by the PROTOS LDAPv3 test suite.
ModificadaAlta (7.5)5.3%—Teamware Office16/7/200116/6/2026
Buffer overflows in Teamware Office Enterprise Directory allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
ModificadaMedia (5)5.7%💥 ExploitTeam Johnlong Raidenftpd27/6/200116/6/2026
Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST.
ModificadaAlta (7.5)1.4%—Twig Development Team Twig28/5/200116/6/2026
TWIG 2.6.2 and earlier allows remote attackers to perform unauthorized database operations via a SQL injection attack on the id parameter.
ModificadaAlta (7.5)1.6%—Twig Development Team Twig9/1/200116/6/2026
Twig webmail system does not properly set the "vhosts" variable if it is not configured on the site, which allows remote attackers to insert arbitrary PHP (PHP3) code by specifying an alternate vhosts as an argument to the index.php3 program.
ModificadaMedia (4.6)0.39%—APS Filter Development Team Apsfilter7/6/200016/6/2026
The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user.
ModificadaMedia (5)5.8%💥 ExploitTeamshare Teamtrack1/10/199916/6/2026
TeamTrack web server allows remote attackers to read arbitrary files via a .. (dot dot) attack.
ModificadaAlta (7.5)8.7%💥 ExploitWebgais Development Team Webgais10/7/199716/6/2026
The Webgais program allows a remote user to execute arbitrary commands.
ModificadaMedia (5)13%💥 ExploitWebgais Development Team Webgais8/7/199716/6/2026
websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver parameter ($VAR_receiver variable).