Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 546 respecto a la semana anterior
Críticas / altas1325▼ 174 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 241 respecto a la semana anterior
–

275 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaBaja (2.1)0.34%—Xinet K-ashareSGI Irix16/5/200216/6/2026
xkas in Xinet K-AShare 0.011.01 for IRIX allows local users to read arbitrary files via a symlink attack on the VOLICON file, which is copied to the .HSicon file in a shared directory.
ModificadaAlta (7.2)0.39%—SGI Irix16/5/200216/6/2026
Buffer overflow in cpr for the eoe.sw.cpr SGI Checkpoint-Restart Software package on SGI IRIX 6.5.10 and earlier may allow local users to gain root privileges.
ModificadaBaja (2.1)0.36%—SGI Irix16/5/200216/6/2026
/dev/ipfilter on SGI IRIX 6.5 is installed by /dev/MAKEDEV with insecure default permissions (644), which could allow a local user to cause a denial of service (traffic disruption).
ModificadaMedia (5)1.6%—SGI Irix22/4/200216/6/2026
Unknown vulnerability in Mail for SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, when running with the -R option, allows local and remote attackers to cause a core dump.
ModificadaAlta (7.5)3.3%—SGI Irix3/4/200216/6/2026
Buffer overflow in SNMP daemon (snmpd) on SGI IRIX 6.5 through 6.5.15m allows remote attackers to execute arbitrary code via an SNMP request.
ModificadaBaja (2.1)0.33%—SGI Irix28/3/200216/6/2026
Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via the HOSTALIASES environment variable, which might allow the users to gain privileges.
ModificadaMedia (5)1.3%—SGI Irix28/3/200216/6/2026
rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via malformed RPC packets with invalid lengths.
ModificadaAlta (7.2)0.35%—SGI NqsdaemonCray Unicos31/1/200216/6/2026
Format string vulnerability in NQS daemon (nqsdaemon) in NQE 3.3.0.16 for CRAY UNICOS and SGI IRIX allows a local user to gain root privileges by using qsub to submit a batch job whose name contains formatting characters.
ModificadaMedia (5)1.6%—SGI Irix31/1/200216/6/2026
Vulnerability in the cache-limiting function of the unified name service daemon (nsd) in IRIX 6.5.4 through 6.5.11 allows remote attackers to cause a denial of service by forcing the cache to fill the disk.
ModificadaAlta (10)95%💥 ExploitSGI IrixHp-uxIBM AIXSCO Openserver+212/12/200116/6/2026
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.
ModificadaAlta (10)4.2%—SGI Irix6/12/200116/6/2026
Buffer overflows in lpsched in IRIX 6.5.13f and earlier allow remote attackers to execute arbitrary commands via a long argument.
ModificadaAlta (10)54%💥 ExploitSGI Irix6/12/200116/6/2026
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
ModificadaAlta (7.2)0.97%💥 ExploitSGI Performance Co-pilot6/12/200116/6/2026
The pmpost program in Performance Co-Pilot (PCP) before 2.2.1-3 allows a local user to gain privileges via a symlink attack on the NOTICES file in the PCP log directory (PCP_LOG_DIR).
ModificadaAlta (7.2)0.46%—SGI Irix6/12/200116/6/2026
lpstat in IRIX 6.5.13f and earlier allows local users to gain root privileges by specifying a Trojan Horse nettype shared library.
ModificadaMedia (5)1.6%—SGI IrixFreebsd6/12/200116/6/2026
SGI IRIX 6.5 through 6.5.12f and possibly earlier versions, and FreeBSD 3.0, allows remote attackers to cause a denial of service via a malformed IGMP multicast packet with a small response delay.
ModificadaAlta (7.5)5.7%—Mcafee Webshield SmtpNetwork Associates Gauntlet FirewallPGP E-ppliance 300SGI Irix+14/9/200116/6/2026
Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message.
ModificadaMedia (5)3.3%💥 ExploitSGI Irix31/8/200116/6/2026
Performance Metrics Collector Daemon (PMCD) in Performance Copilot in IRIX 6.x allows remote attackers to cause a denial of service (resource exhaustion) via an extremely long string to the PMCD port.
ModificadaAlta (10)39%💥 ExploitMIT KerberosMIT Kerberos 5Linux NetkitSGI Irix+714/8/200116/6/2026
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
ModificadaAlta (7.5)3.3%—SGI Irix27/6/200116/6/2026
Buffer overflow in Embedded Support Partner (ESP) daemon (rpc.espd) in IRIX 6.5.8 and earlier allows remote attackers to execute arbitrary commands.
ModificadaAlta (7.2)1.2%💥 ExploitSGI Irix27/6/200116/6/2026
Unknown vulnerability in netprint in IRIX 6.2, and possibly other versions, allows local users with lp privileges attacker to execute arbitrary commands via the -n option.
ModificadaCrítica (9.8)11%—Hp-uxSGI Irix18/6/200116/6/2026
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
ModificadaAlta (10)19%💥 ExploitMIT Kerberos 5SGI IrixFreebsdNetbsd+118/6/200116/6/2026
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.
ModificadaCrítica (9.8)20%—Hp-uxOracle SolarisSGI Irix18/6/200116/6/2026
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
ModificadaMedia (5)1.5%—SGI Irix16/2/200116/6/2026
The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.
ModificadaAlta (10)16%💥 ExploitCaldera Openlinux EbuilderImmunixConectiva LinuxSGI Irix+1214/11/200016/6/2026
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
Orbitaley — Vulnerabilidades