Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3000▲ 369 respecto a la semana anterior
Críticas / altas1450▲ 18 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
–

1785 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)2.2%—HP Systems Insight Manager4/12/200516/6/2026
Unknown vulnerability in the login page for HP Systems Insight Manager (SIM) 4.0 and 4.1, when accessed by Microsoft Internet Explorer with the MS04-025 patch, leads to a denial of service (browser hang). NOTE: although the advisory is vague, this issue does not appear to involve an attacker at all. If not, then this…
ModificadaAlta (10)5.2%—HP Insight Management SuiteHP Insight ManagerHP Remote Diagnostics Enabling Agent31/12/200316/6/2026
Unspecified vulnerability in the non-SSL web agent in various HP Management Agent products allows local users or remote attackers to gain privileges or cause a denial of service via unknown attack vectors.
ModificadaMedia (4.3)3.0%💥 ExploitCompaq Insight Management Agent31/12/200216/6/2026
Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL, which inserts the script into the resulting error message.
ModificadaAlta (7.5)1.6%—Websight Directory System12/8/200216/6/2026
Cross-site scripting vulnerability in WebSight Directory System 0.1 allows remote attackers to execute arbitrary Javascript and gain access to the WebSight administrator via a new link submission containing the script in a website name.
ModificadaAlta (10)87%💥 ExploitCompaq Insight ManagerCompaq Insight Manager XEMicrosoft Data EngineMicrosoft Msde12/8/200216/6/2026
The "sa" account is installed with a default null password on (1) Microsoft SQL Server 2000, (2) SQL Server 7.0, and (3) Data Engine (MSDE) 1.0, including third party packages that use these products such as (4) Tumbleweed Secure Mail (MMS) (5) Compaq Insight Manager, and (6) Visio 2000, which allows remote attackers…
ModificadaAlta (10)9.0%—Compaq Insight Manager XE6/12/200116/6/2026
Buffer overflow in Compaq Insight Manager XE 2.1b and earlier allows remote attackers to execute arbitrary code via (1) SNMP and (2) DMI.
ModificadaAlta (10)4.0%—Compaq Armada Insight ManagerCompaq Enterprise Volume Manager-command ScripterCompaq Foundation AgentsCompaq Insight Management Agent+1112/3/200116/6/2026
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
ModificadaAlta (7.5)1.5%—Compaq Insight Management AgentCompaq Management Agents FOR Servers31/12/199916/6/2026
BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.
ModificadaMedia (6.4)1.5%—Compaq Insight Management AgentCompaq Power Management1/6/199916/6/2026
Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301.
ModificadaMedia (5)6.2%💥 ExploitCompaq Insight Management AgentCompaq Power Management26/5/199916/6/2026
The web components of Compaq Management Agents and the Compaq Survey Utility allow a remote attacker to read arbitrary files via a .. (dot dot) attack.