Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2871▲ 236 respecto a la semana anterior
Críticas / altas1338▼ 92 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
1808 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 85% | 💥 Exploit | SambaSamba-tngApple MAC OS XCompaq Tru64+4 | 5/5/2003 | 16/6/2026 | Desbordamiento de búfer en la función call_trans2open en trans2.c de Samba 2.2.x anteriores a 2.2.8a, 2.0.10 y versiones anteriores 2.0.x, y Samba-TNG anteriores a de 0.3.2, permite a atacantes remotos ejecutar código arbitrario. | |
| Modificada | Alta (10) | 23% | — | SambaSamba-tngCompaq Tru64Hp-ux+3 | 5/5/2003 | 16/6/2026 | Múltiples desbordamientos de búfer en Samba anteriores a 2.2.8a puede permitir a atacantes remotos ejecutar código arbitrario o causar una denegación de servicio, descubierto por el equipo de Samba y una vulnerabilidad distinta de CAN-2003-0201. | |
| Modificada | Alta (7.2) | 0.49% | — | XfsdumpSGI Irix | 5/5/2003 | 16/6/2026 | xfsdq en xfsdump no crea los ficheros de información de cuota con seguridad, lo que permite a usuarios locales ganar privilegios de root. | |
| Modificada | Alta (10) | 86% | 💥 Exploit | SambaHP Cifs-9000 Server | 31/3/2003 | 16/6/2026 | Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code. | |
| Modificada | Alta (7.5) | 15% | — | GNU GlibcMIT Kerberos 5OpenafsSGI Irix+9 | 25/3/2003 | 16/6/2026 | Desbordamiento de entero en la función xdrmem_getbytes(), y posiblemente otras funciones, de librerias XDR (representación de datos externos) derivadas de SunRPC, incluyendo libnsl, libc y glibc permite a atacantes remotos ejecutar código arbitrario mediante ciertos valores enteros en campos de longitud. | |
| Modificada | Alta (10) | 2.4% | — | Linksys Befsr11Linksys Befsr41Linksys Befsru31 | 31/12/2002 | 16/6/2026 | Linksys EtherFast Cable/DSL BEFSR11, BEFSR41 and BEFSRU31 with the firmware 1.42.7 upgrade installed opens TCP port 5678 for remote administration even when the "Block WAN" and "Remote Admin" options are disabled, which allows remote attackers to gain access. | |
| Modificada | Alta (7.5) | 6.1% | — | Greg Roelofs Libpng | 26/12/2002 | 16/6/2026 | Portable Network Graphics (PNG) library libpng 1.2.5 and earlier does not correctly calculate offsets, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a buffer overflow attack on the row buffers. | |
| Modificada | Alta (10) | 52% | 💥 Exploit | SambaSGI IrixHP Cifs-9000 Server | 11/12/2002 | 16/6/2026 | Desbordamiento de búfer en Samba 2.2.2 a 2.2.6 permite a atacantes remotos causar una denegación de servicio y posíblemente ejecutar código arbitrario mediante una contraseña cifrada que causa un desbordamiento durante el descifrado en la cual una cadena de página de códigos DOS es convertida a una cadena unicode UCS2… | |
| Modificada | Media (5) | 2.0% | — | Linksys Befn2ps4Linksys Befsr11Linksys Befsr41Linksys Befsr81+5 | 20/11/2002 | 16/6/2026 | Buffer overflow in the Web management interface in Linksys BEFW11S4 wireless access point router 2 and BEFSR11, BEFSR41, and BEFSRU31 EtherFast Cable/DSL routers with firmware before 1.43.3 with remote management enabled allows remote attackers to cause a denial of service (router crash) via a long password. | |
| Modificada | Media (5) | 7.1% | 💥 Exploit | Linksys Befsr41 | 12/11/2002 | 16/6/2026 | El servidor de adminsitración web remota del router Linksys BEFSR41 EtherFast Cable/DSL con firmware anterior a 1.42.7 permite a atacantes remotos causar una denegación de servicio (caída) mediante una petición HTTP a Gozilla.cgi sin argumentos. | |
| Modificada | Alta (7.2) | 0.57% | — | HP JFSHp-ux | 16/10/2002 | 16/6/2026 | JFS (JFS3.1 and OnlineJFS) in HP-UX 10.20, 11.00, and 11.04 does not properly implement the sticky bit functionality, which could allow attackers to bypass intended restrictions on filesystems. | |
| Modificada | Alta (7.2) | 2.4% | 💥 Exploit | HP Cifs-9000 Server | 4/10/2002 | 16/6/2026 | Buffer overflows in the cifslogin command for HP CIFS/9000 Client A.01.06 and earlier, based on the Sharity package, allows local users to gain root privileges via long (1) -U, (2) -D, (3) -P, (4) -S, (5) -N, or (6) -u parameters. | |
| Modificada | Media (5) | 2.1% | — | Greg Roelofs Libpng | 12/8/2002 | 16/6/2026 | Desbordamiento de búfer en la lectura progresiva con libpng 1.2.4 y 1.0.14 permite que atacantes remotos provoquen una denegación de servicio por medio de un stream de datos PNG que tiene más datos IDAT de los que se indican en el chunk IHDR. | |
| Modificada | Alta (7.5) | 3.0% | — | Greg Roelofs LibpngGreg Roelofs Libpng3 | 12/8/2002 | 16/6/2026 | Buffer overflow in libpng 1.0.12-3.woody.2 and libpng3 1.2.1-1.1.woody.2 on Debian GNU/Linux 3.0, and other operating systems, may allow attackers to cause a denial of service and possibly execute arbitrary code, a different vulnerability than CVE-2002-0728. | |
| Modificada | Alta (7.5) | 4.1% | — | Matt Blaze CFS | 25/6/2002 | 16/6/2026 | Buffer overflows in CFS daemon (cfsd) before 1.3.3-8.1, and 1.4x before 1.4.1-5, allow remote attackers to cause a denial of service and possibly execute arbitrary code. | |
| Modificada | Alta (7.5) | 3.0% | — | Foundstone Fscan | 18/6/2002 | 16/6/2026 | Format string vulnerability in Foundstone FScan 1.12 with banner grabbing enabled allows remote attackers to execute arbitrary code on the scanning system via format string specifiers in the server banner. | |
| Modificada | Media (6.4) | 1.7% | — | Linksys Befn2ps4Linksys Befsr41Linksys Befsr81 | 25/3/2002 | 9/10/2026 | Los routers Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81, y posiblemente otros productos, permiten a atacantes remotos obterner información sensible y provocar una denegación de servicio mediante una consulta SNMP con la cadena de comunidad por defecto "public," lo que provoca que el router cambie su configuración… | |
| Modificada | Alta (7.5) | 3.5% | — | Celtech Software Expressfs | 28/11/2001 | 16/6/2026 | Buffer overflow in Celtech ExpressFS FTP server 2.x allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long USER command. | |
| Modificada | Alta (10) | 2.5% | — | HP Cifs-9000 Server | 31/8/2001 | 16/6/2026 | HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program without specifying the username of the user making the request, which could cause the server to change the password of a different user. | |
| Modificada | Media (5) | 1.8% | — | Linksys Befsr41 | 10/8/2001 | 16/6/2026 | LinkSys EtherFast BEFSR41 Cable/DSL routers running firmware before 1.39.3 Beta allows a remote attacker to view administration and user passwords by connecting to the router and viewing the HTML source for (1) index.htm and (2) Password.htm. | |
| Modificada | Alta (7.2) | 1.1% | 💥 Exploit | Ftpfs | 27/6/2001 | 16/6/2026 | Buffer overflow in FTPFS allows local users to gain root privileges via a long user name. | |
| Modificada | Alta (10) | 12% | 💥 Exploit | SambaHP Cifs-9000 Server | 23/6/2001 | 16/6/2026 | Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file. | |
| Modificada | Alta (7.2) | 1.2% | 💥 Exploit | Hans Reiser ReiserfsSuse Linux | 26/3/2001 | 16/6/2026 | Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name. | |
| Modificada | Media (5) | 1.3% | — | Xlink Technology Omni-nfs X Enterprise | 6/10/1999 | 16/6/2026 | NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111. | |
| Modificada | Alta (7.5) | 1.9% | — | Tenfour TFS Gateway Smtp | 2/9/1999 | 16/6/2026 | A buffer overflow in TenFour TFS Gateway SMTP mail server 3.2 allows an attacker to crash the mail server and possibly execute arbitrary code by offering more than 128 bytes in a MAIL FROM string. |