Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
209 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 2.5% | — | Juniper Screenos | 19/12/2015 | 17/6/2026 | The encryption implementation in Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0r15b, 6.3.0r16 before 6.3.0r16b, 6.3.0r17 before 6.3.0r17b, 6.3.0r18 before 6.3.0r18b, 6.3.0r19 before 6.3.0r19b, and 6.3.0r20 before… | |
| Analizada | Crítica (9.8) | 61% | ⚠ Explotación activa💥 PoC | Juniper Screenos | 19/12/2015 | 17/6/2026 | Juniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 before 6.3.0r15b, 6.3.0r16 before 6.3.0r16b, 6.3.0r17 before 6.3.0r17b, 6.3.0r18 before 6.3.0r18b, 6.3.0r19 before 6.3.0r19b, and 6.3.0r20 before 6.3.0r21 allows remote attackers to… | |
| Modificada | Baja (2.1) | 0.51% | — | Canonical Ubuntu LinuxXscreensaver Project Xscreensaver | 10/11/2015 | 17/6/2026 | driver/subprocs.c in XScreenSaver before 5.34 does not properly perform an internal consistency check, which allows physically proximate attackers to bypass the lock screen by hot swapping monitors. | |
| Modificada | Media (5) | 2.0% | — | Juniper Screenos | 19/10/2015 | 17/6/2026 | The L2TP packet processing functionality in Juniper Netscreen and ScreenOS Firewall products with ScreenOS before 6.3.0r13-dnd1, 6.3.0r14 through 6.3.0r18 before 6.3.0r18-dnc1, and 6.3.0r19 allows remote attackers to cause a denial of service via a crafted L2TP packet. | |
| Modificada | Media (5) | 4.1% | — | GNU Screen | 28/9/2015 | 17/6/2026 | The MScrollV function in ansi.c in GNU screen 4.3.1 and earlier does not properly limit recursion, which allows remote attackers to cause a denial of service (stack consumption) via an escape sequence with a large repeat count value. | |
| Modificada | Alta (8.3) | 4.5% | 💥 PoC | LG On-screen Phone | 17/2/2015 | 17/6/2026 | LG On-Screen Phone (OSP) before 4.3.010 allows remote attackers to bypass authorization via a crafted request. | |
| Modificada | Media (5.4) | 0.27% | — | Fire Equipments Screen Lock Project Fire Equipments Screen Lock | 20/10/2014 | 17/6/2026 | The Fire Equipments Screen lock (aka com.locktheworld.screen.lock.theme.FireEquipments) application 1.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |
| Modificada | Media (5.4) | 0.27% | — | Killer Screen Lock Project Killer Screen Lock | 19/10/2014 | 17/6/2026 | The Killer Screen lock (aka com.cc.theme.shashou) application 0.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |
| Modificada | Media (5.4) | 0.27% | — | Brokenscreencrank Project Brokenscreencrank | 9/9/2014 | 17/6/2026 | The brokenscreencrank (aka com.biggame.brokenscreencrank) application 1.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | |
| Modificada | Alta (7.8) | 1.3% | — | Juniper ScreenosJuniper Netscreen-5200Juniper Netscreen-5400 | 13/6/2014 | 17/6/2026 | The Juniper Networks NetScreen Firewall devices with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via a sequence of malformed packets to the device IP. | |
| Modificada | Alta (7.8) | 1.3% | — | Juniper ScreenosJuniper Netscreen-5200Juniper Netscreen-5400 | 13/6/2014 | 17/6/2026 | Unspecified vulnerability in the Juniper Networks NetScreen Firewall products with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via vectors related to a DNS lookup. | |
| Modificada | Alta (7.8) | 3.6% | — | Juniper Screenos | 15/4/2014 | 17/6/2026 | Juniper ScreenOS 6.3 and earlier allows remote attackers to cause a denial of service (crash and restart or failover) via a malformed SSL/TLS packet. | |
| Modificada | Media (5.4) | 1.1% | — | Juniper JunosJuniper JunoseJuniper Screenos | 23/1/2014 | 17/6/2026 | The OSPF implementation in Juniper Junos through 13.x, JunosE, and ScreenOS through 6.3.x does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing… | |
| Modificada | Alta (7.1) | 1.9% | — | Juniper ScreenosJuniper Netscreen-5200Juniper Netscreen-5400 | 13/12/2013 | 17/6/2026 | Juniper NetScreen Firewall running ScreenOS 5.4, 6.2, or 6.3, when the Ping of Death screen is disabled, allows remote attackers to cause a denial of service via a crafted packet. | |
| Modificada | Alta (7.2) | 0.38% | — | Gnome Screensaver | 8/3/2013 | 16/6/2026 | The default configuration in gnome-screensaver 3.5.4 through 3.6.0 sets the AutostartCondition line to fallback mode in the .desktop file, which prevents the program from starting automatically after login and allows physically proximate attackers to bypass screen locking and access an unattended workstation. | |
| Modificada | Baja (3.3) | 0.34% | — | Gnome Screensaver | 7/8/2012 | 16/6/2026 | gnome-screensaver 3.4.x before 3.4.4 and 3.5.x before 3.5.4, when multiple screens are used, only locks the screen with the active focus, which allows physically proximate attackers to bypass screen locking and access an unattended workstation. | |
| Modificada | Media (6.9) | 1.5% | 💥 Exploit | Oracle SUN Microsystems Sunscreen Firewall | 7/2/2011 | 16/6/2026 | Multiple untrusted search path vulnerabilities in the Java Service in Sun Microsystems SunScreen Firewall on SunOS 5.9 allow local users to execute arbitrary code via a modified (1) PATH or (2) LD_LIBRARY_PATH environment variable. | |
| Modificada | Media (6.2) | 0.30% | — | Gnome GTKGnome Screensaver | 19/3/2010 | 16/6/2026 | gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by… | |
| Modificada | Media (4) | 0.36% | — | Gnome Screensaver | 24/2/2010 | 16/6/2026 | gnome-screensaver 2.28.x before 2.28.3 does not properly synchronize the state of screen locking and the unlock dialog in situations involving a change to the number of monitors, which allows physically proximate attackers to bypass screen locking and access an unattended workstation by connecting and disconnecting… | |
| Modificada | Media (5.6) | 0.30% | — | Gnome Screensaver | 24/2/2010 | 16/6/2026 | gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor. | |
| Modificada | Media (4.3) | 1.6% | — | HP Dreamscreen | 12/2/2010 | 16/6/2026 | Unspecified vulnerability on the HP DreamScreen 100 and 130 with firmware before 1.6.0.0, when using a web-connected configuration, allows remote attackers to obtain sensitive information via unknown vectors. | |
| Modificada | Alta (7.2) | 0.34% | — | Gnome Screensaver | 11/2/2010 | 16/6/2026 | gnome-screensaver 2.26.1 relies on the gnome-session D-Bus interface to determine session idle time, even when an Xfce desktop such as Xubuntu or Mythbuntu is used, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended. | |
| Modificada | Alta (7.2) | 0.37% | — | Gnome Screensaver | 11/2/2010 | 16/6/2026 | gnome-screensaver 2.28.0 does not resume adherence to its activation settings after an inhibiting application becomes unavailable on the session bus, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended. | |
| Modificada | Alta (7.2) | 0.42% | — | Gnome Screensaver | 11/2/2010 | 16/6/2026 | gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor. | |
| Modificada | Baja (1.9) | 0.23% | — | GNU Screen | 1/4/2009 | 16/6/2026 | Race condition in GNU screen 4.0.3 allows local users to create or overwrite arbitrary files via a symlink attack on the /tmp/screen-exchange temporary file. |