Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 554 respecto a la semana anterior
Críticas / altas1325▼ 178 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 242 respecto a la semana anterior
–

159 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)32%💥 ExploitOpenbsd OpensshSSH12/3/200116/6/2026
CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.
ModificadaAlta (7.5)1.8%—Openbsd Openssh9/1/200116/6/2026
OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent.
ModificadaMedia (5)6.0%💥 ExploitOpenbsd OpensshSSH19/12/200023/9/2026
Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.
ModificadaAlta (10)12%—Openbsd Openssh11/12/200016/6/2026
Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges.
ModificadaAlta (10)2.6%—Openbsd Openssh8/6/200016/6/2026
OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon.
ModificadaMedia (5.1)0.97%—Openbsd OpensshSSHSsh224/2/200016/6/2026
The default configuration of SSH allows X forwarding, which could allow a remote attacker to control a client's X sessions via a malicious xauth program.
ModificadaMedia (4.6)0.35%—Openbsd OpensshSSH11/2/200016/6/2026
The SSH protocol server sshd allows local users without shell access to redirect a TCP connection through a service that uses the standard system password database for authentication, such as POP or FTP.
ModificadaBaja (2.1)1.4%—Openbsd Openssh14/12/199916/6/2026
An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.
ModificadaAlta (10)54%💥 ExploitTCP WrappersAIWuftpdAIIrciiAISendmailAI+21/1/199916/6/2026
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6.
Orbitaley — Vulnerabilidades