Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3000▲ 369 respecto a la semana anterior
Críticas / altas1450▲ 18 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
1838 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.6) | 0.33% | — | Paul Jarc Idtools | 26/6/2001 | 16/6/2026 | cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pathexec_env function, which could cause the setstate utility to setuid to the UID environment variable and allow local users to gain privileges. | |
| Modificada | Alta (7.2) | 0.42% | — | Redhat Linux PowertoolsZopeConectiva LinuxDebian Linux+3 | 12/3/2001 | 16/6/2026 | Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges. | |
| Modificada | Baja (2.1) | 0.52% | — | HP Support Tools Manager | 12/2/2001 | 16/6/2026 | Support Tools Manager (STM) A.22.00 for HP-UX allows local users to overwrite arbitrary files via a symlink attack on the tool_stat.txt log file. | |
| Modificada | Media (5) | 4.7% | 💥 Exploit | Network Associates NET Tools PKI Server | 20/10/2000 | 16/6/2026 | Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port. | |
| Modificada | Media (5) | 2.9% | 💥 Exploit | Network Associates NET Tools PKI Server | 20/10/2000 | 16/6/2026 | Directory traversal vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTPS request to the enrollment server. | |
| Modificada | Alta (7.5) | 5.2% | 💥 Exploit | Network Associates NET Tools PKI Server | 20/10/2000 | 16/6/2026 | Format string vulnerability in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary code via format strings in a URL with a .XUDA extension. | |
| Modificada | Alta (7.6) | 4.9% | — | Adobe AcrobatAdobe Acrobat Business ToolsAdobe Acrobat Reader | 20/10/2000 | 16/6/2026 | Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tools, and Fill In products that handle PDF files allows attackers to execute arbitrary commands via a long /Registry or /Ordering specifier. | |
| Modificada | Alta (7.2) | 0.36% | — | SGI Workshop Debugger AND Performance Tools | 20/6/2000 | 16/6/2026 | Vulnerability in cvconnect in SGI IRIX WorkShop allows local users to overwrite arbitrary files. | |
| Modificada | Media (5) | 1.7% | — | Network Associates NET Tools PKI Server | 19/6/2000 | 16/6/2026 | Net Tools PKI Server allows remote attackers to cause a denial of service via a long HTTP request. | |
| Modificada | Media (5) | 1.6% | — | Network Associates NET Tools PKI Server | 19/6/2000 | 16/6/2026 | Net Tools PKI Server does not properly restrict access to remote attackers when the XUDA template files do not contain absolute pathnames for other files. | |
| Modificada | Alta (7.5) | 3.0% | — | Redhat Linux PowertoolsZope | 15/6/2000 | 16/6/2026 | The DocumentTemplate package in Zope 2.2 and earlier allows a remote attacker to modify DTMLDocuments or DTMLMethods without authorization. | |
| Modificada | Alta (10) | 9.9% | 💥 Exploit | Dnstools Software Dnstools | 2/3/2000 | 16/6/2026 | DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters. | |
| Modificada | Media (5) | 2.6% | — | Dnstools Software Dnstools | 31/12/1999 | 16/6/2026 | DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source address, which produces more traffic to the victim than was sent by the attacker. |