Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2833▲ 195 respecto a la semana anterior
Críticas / altas1316▼ 117 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
1659 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 2.0% | — | Invision Power Services Invision Board | 11/10/2002 | 16/6/2026 | El procedimiento de instalación en Invision Board sugiere que los usuarios instalen el programa phpinfo.php en la raíz del web, lo que filtra información sensible como nombres de rutas, información del SO, y configuración de php. | |
| Modificada | Alta (7.5) | 43% | — | Allume Systems Division Stuffit ExpanderIBM Lotus NotesVerity Keyview Viewing SDKWinzip+3 | 10/10/2002 | 16/6/2026 | Desbordamiento de búfer en la capacidad ZIP de múltiples productos permite a atacantes remotos causar una denegación de servicio o ejecutar código arbitrario mediante ficheros ZIP que contienen nombres de ficheros largos, incluyendo Microsoft Windows 98 con el paquete Plus! Windows XP Windows Me Lotus Notes R4 a R6… | |
| Modificada | Alta (10) | 2.6% | — | Nara Vision Kebi Community | 8/12/2001 | 16/6/2026 | Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root. | |
| Modificada | Media (5) | 1.3% | — | Navision Financials Server | 18/6/2001 | 16/6/2026 | Navision Financials Server 2.60 and earlier allows remote attackers to cause a denial of service by sending a null character and a long string to the server port (2407), which causes the server to crash. | |
| Modificada | Media (5) | 1.3% | — | Navision Financials Server | 18/6/2001 | 16/6/2026 | Navision Financials Server 2.0 allows remote attackers to cause a denial of service via a series of connections to the server without providing a username/password combination, which consumes the license limits. | |
| Modificada | Media (5) | 1.4% | — | Broadvision One-to-one Enterprise Server | 16/2/2001 | 16/6/2026 | BroadVision One-To-One Enterprise allows remote attackers to determine the physical path of server files by requesting a .JSP file name that does not exist. | |
| Modificada | Alta (7.2) | 0.41% | — | Lexmark Markvision | 16/2/2001 | 16/6/2026 | Multiple buffer overflows in Lexmark MarkVision printer driver programs allows local users to gain privileges via long arguments to the cat_network, cat_paraller, and cat_serial commands. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Tridia Doublevision | 14/11/2000 | 16/6/2026 | Buffer overflow in dvtermtype in Tridia Double Vision 3.07.00 allows local users to gain root privileges via a long terminal type argument. | |
| Modificada | Media (5) | 1.7% | — | Virtual Vision FTP Browser | 12/7/2000 | 16/6/2026 | ftp.pl CGI program for Virtual Visions FTP browser allows remote attackers to read directories outside of the document root via a .. (dot dot) attack. |