Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3072▲ 483 respecto a la semana anterior
Críticas / altas1456▲ 55 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
1747 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.6) | 0.86% | 💥 Exploit | Inter7 Qmailadmin | 11/4/2003 | 16/6/2026 | Desbordamiento de búfer en qmailadmin permite a usuarios locales ganar privilegios mediante una varibale de entorno QMAILADMIN_TEMPLATEDIR larga. | |
| Modificada | Alta (7.2) | 0.39% | — | Compaq Proliant BL E-class Integrated Administrator Firmware | 4/10/2002 | 16/6/2026 | Vulnerability in Compaq ProLiant BL e-Class Integrated Administrator 1.0 and 1.10, allows authenticated users with Telnet, SSH, or console access to conduct unauthorized activities. | |
| Modificada | Media (5) | 1.6% | — | Plesk Server Administrator | 25/3/2002 | 16/6/2026 | Plesk Server Administrator (PSA) 1.0 permite a atacantes remotos obtener código fuente PHP mediante una petición HTTP conteniendo la IP del objetivo y un nombre de cuenta válido del dominio. | |
| Modificada | Media (4.6) | 0.61% | — | WinmysqladminOracle Mysql | 2/10/2001 | 16/6/2026 | WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database. | |
| Modificada | Media (6.4) | 2.5% | — | HP Jetadmin | 31/8/2001 | 16/6/2026 | HP LaserJet, and possibly other JetDirect devices, resets the admin password when the device is turned off, which could allow remote attackers to access the device without the password. | |
| Modificada | Alta (7.5) | 2.4% | — | HP Jetadmin | 31/8/2001 | 16/6/2026 | The JetAdmin web interface for HP JetDirect does not set a password for the telnet interface when the admin password is changed, which allows remote attackers to gain access to the printer. | |
| Modificada | Alta (7.5) | 3.3% | — | Phpmyadmin | 31/7/2001 | 16/6/2026 | phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in tbl_rename.php. | |
| Modificada | Alta (7.5) | 4.8% | — | Phpmyadmin | 27/6/2001 | 16/6/2026 | Directory traversal vulnerability in phpMyAdmin 2.2.0 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script. | |
| Modificada | Alta (7.5) | 5.9% | — | Phppgadmin | 27/6/2001 | 16/6/2026 | Directory traversal vulnerability in phpPgAdmin 2.2.1 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script. | |
| Modificada | Alta (10) | 4.0% | — | Compaq Armada Insight ManagerCompaq Enterprise Volume Manager-command ScripterCompaq Foundation AgentsCompaq Insight Management Agent+11 | 12/3/2001 | 16/6/2026 | Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name. | |
| Modificada | Alta (7.5) | 1.6% | — | Pccs-linux Mysqldatabase Admin Tool | 20/10/2000 | 16/6/2026 | PCCS MySQLDatabase Admin Tool Manager 1.2.4 and earlier installs the file dbconnect.inc within the web root, which allows remote attackers to obtain sensitive information such as the administrative password. | |
| Modificada | Media (5) | 8.2% | 💥 Exploit | HP Jetadmin | 24/5/2000 | 16/6/2026 | HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000. | |
| Modificada | Alta (7.5) | 10% | 💥 Exploit | HP Jetadmin | 24/5/2000 | 16/6/2026 | The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |
| Modificada | Baja (2.1) | 0.85% | 💥 Exploit | Cryptocard Cryptoadmin | 10/4/2000 | 16/6/2026 | CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN. | |
| Modificada | Alta (7.5) | 2.7% | — | Dbadmin | 8/10/1998 | 16/6/2026 | Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands. | |
| Modificada | Alta (7.2) | 0.94% | 💥 Exploit | HP Jetadmin | 15/7/1998 | 16/6/2026 | HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on the /tmp/jetadmin.log file. | |
| Modificada | Alta (7.5) | 1.8% | — | Sysadmin Magazine Man.sh | 15/5/1998 | 16/6/2026 | Vulnerability in man.sh CGI script, included in May 1998 issue of SysAdmin Magazine, allows remote attackers to execute arbitrary commands. | |
| Modificada | Media (6.2) | 0.28% | — | SUN Solstice Adminsuite | 10/11/1997 | 16/6/2026 | Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files. | |
| Modificada | Media (6.2) | 0.28% | — | SUN Solstice Adminsuite | 10/11/1997 | 16/6/2026 | Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd. | |
| Modificada | Media (6.2) | 0.28% | — | SUN Solstice Adminsuite | 10/11/1997 | 16/6/2026 | Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries. | |
| Modificada | Media (6.2) | 0.28% | — | SUN Solstice Adminsuite | 10/11/1997 | 16/6/2026 | Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges. | |
| Modificada | Media (6.2) | 0.28% | — | SUN Solstice Adminsuite | 10/11/1997 | 16/6/2026 | Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges. |