Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2778▼ 418 respecto a la semana anterior
Críticas / altas1332▼ 108 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
283 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 38% | 💥 Exploit | BeosMicrosoft Windows 2000Microsoft Windows 95Microsoft Windows 98+2 | 19/5/2000 | 16/6/2026 | Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the "IP Fragment Reassembly" vulnerability. | |
| Modificada | Media (5) | 23% | 💥 Exploit | Microsoft Windows NT | 16/5/2000 | 16/6/2026 | Windows NT Service Control Manager (SCM) allows remote attackers to cause a denial of service via a malformed argument in a resource enumeration request. | |
| Modificada | Media (5) | 7.5% | — | Microsoft Terminal ServerMicrosoft Windows 2000Microsoft Windows NT | 20/4/2000 | 16/6/2026 | Buffer overflow in Microsoft command processor (CMD.EXE) for Windows NT and Windows 2000 allows a local user to cause a denial of service via a long environment variable, aka the "Malformed Environment Variable" vulnerability. | |
| Modificada | Alta (7.5) | 12% | 💥 Exploit | Microsoft FrontpageMicrosoft Personal WEB ServerMicrosoft Windows NT | 19/4/2000 | 16/6/2026 | Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability. | |
| Modificada | Crítica (9.8) | 6.3% | — | Microsoft Windows 2000Microsoft Windows 98Microsoft Windows 98seMicrosoft Windows NT+1 | 14/4/2000 | 16/6/2026 | The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache. | |
| Modificada | Alta (7.2) | 1.5% | — | Microsoft Terminal ServerMicrosoft Windows NT | 12/4/2000 | 16/6/2026 | The default permissions for the Cryptography\Offload registry key used by the OffloadModExpo in Windows NT 4.0 allows local users to obtain compromise the cryptographic keys of other users. | |
| Modificada | Alta (7.2) | 1.6% | — | Microsoft Windows NT | 11/4/2000 | 16/6/2026 | After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password. | |
| Modificada | Baja (2.1) | 3.5% | 💥 Exploit | Microsoft Terminal ServerMicrosoft Windows 2000Microsoft Windows NT | 30/3/2000 | 16/6/2026 | Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denial of service via a malformed TCP/IP print request. | |
| Modificada | Alta (7.2) | 3.9% | 💥 Exploit | Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 18/2/2000 | 16/6/2026 | Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive. | |
| Modificada | Media (4.6) | 1.6% | — | Microsoft Windows NT | 14/2/2000 | 16/6/2026 | The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file. | |
| Modificada | Baja (2.1) | 3.8% | 💥 Exploit | Microsoft Windows 95Microsoft Windows 98Microsoft Windows NT | 4/2/2000 | 16/6/2026 | Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file. | |
| Modificada | Baja (2.1) | 2.3% | — | Microsoft Windows NT | 4/2/2000 | 16/6/2026 | The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporary file with permissions that allow local users to read it, aka the "RDISK Registry Enumeration File" vulnerability. | |
| Modificada | Baja (3.6) | 4.7% | 💥 Exploit | Microsoft Windows NT | 1/2/2000 | 16/6/2026 | The Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by creating a subdirectory with the victim's SID in the recycler directory, aka the "Recycle Bin Creation" vulnerability. | |
| Modificada | Baja (2.1) | 2.5% | — | Microsoft Windows 2000Microsoft Windows NT | 20/1/2000 | 16/6/2026 | A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded. | |
| Modificada | Alta (7.2) | 2.3% | — | Microsoft Windows NT | 12/1/2000 | 16/6/2026 | NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request." | |
| Modificada | Baja (2.1) | 1.5% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext. | |
| Modificada | Media (4.6) | 3.5% | 💥 Exploit | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash. | |
| Modificada | Media (5) | 18% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries. | |
| Modificada | Baja (2.1) | 5.7% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has locked the workstation by pasting (CTRL-V) the contents into the username prompt. | |
| Modificada | Baja (2.1) | 2.0% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission. | |
| Modificada | Baja (2.1) | 1.4% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters. | |
| Modificada | Media (5) | 18% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs. | |
| Modificada | Baja (2.1) | 1.5% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool. | |
| Modificada | Alta (7.5) | 3.9% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host. | |
| Modificada | Alta (7.5) | 3.9% | — | Microsoft Windows NT | 31/12/1999 | 16/6/2026 | Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess. |