Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3000▲ 369 respecto a la semana anterior
Críticas / altas1450▲ 18 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
1785 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 2.2% | — | HP Systems Insight Manager | 4/12/2005 | 16/6/2026 | Unknown vulnerability in the login page for HP Systems Insight Manager (SIM) 4.0 and 4.1, when accessed by Microsoft Internet Explorer with the MS04-025 patch, leads to a denial of service (browser hang). NOTE: although the advisory is vague, this issue does not appear to involve an attacker at all. If not, then this… | |
| Modificada | Alta (10) | 5.2% | — | HP Insight Management SuiteHP Insight ManagerHP Remote Diagnostics Enabling Agent | 31/12/2003 | 16/6/2026 | Unspecified vulnerability in the non-SSL web agent in various HP Management Agent products allows local users or remote attackers to gain privileges or cause a denial of service via unknown attack vectors. | |
| Modificada | Media (4.3) | 3.0% | 💥 Exploit | Compaq Insight Management Agent | 31/12/2002 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL, which inserts the script into the resulting error message. | |
| Modificada | Alta (7.5) | 1.6% | — | Websight Directory System | 12/8/2002 | 16/6/2026 | Cross-site scripting vulnerability in WebSight Directory System 0.1 allows remote attackers to execute arbitrary Javascript and gain access to the WebSight administrator via a new link submission containing the script in a website name. | |
| Modificada | Alta (10) | 87% | 💥 Exploit | Compaq Insight ManagerCompaq Insight Manager XEMicrosoft Data EngineMicrosoft Msde | 12/8/2002 | 16/6/2026 | The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3) Data Engine (MSDE) 1.0, including third party packages that use these products such as (4) Tumbleweed Secure Mail (MMS) (5) Compaq Insight Manager, and (6) Visio 2000, which allows remote attackers… | |
| Modificada | Alta (10) | 9.0% | — | Compaq Insight Manager XE | 6/12/2001 | 16/6/2026 | Buffer overflow in Compaq Insight Manager XE 2.1b and earlier allows remote attackers to execute arbitrary code via (1) SNMP and (2) DMI. | |
| Modificada | Alta (10) | 4.0% | — | Compaq Armada Insight ManagerCompaq Enterprise Volume Manager-command ScripterCompaq Foundation AgentsCompaq Insight Management Agent+11 | 12/3/2001 | 16/6/2026 | Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name. | |
| Modificada | Alta (7.5) | 1.5% | — | Compaq Insight Management AgentCompaq Management Agents FOR Servers | 31/12/1999 | 16/6/2026 | BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges. | |
| Modificada | Media (6.4) | 1.5% | — | Compaq Insight Management AgentCompaq Power Management | 1/6/1999 | 16/6/2026 | Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301. | |
| Modificada | Media (5) | 6.2% | 💥 Exploit | Compaq Insight Management AgentCompaq Power Management | 26/5/1999 | 16/6/2026 | The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack. |