Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2861▲ 225 respecto a la semana anterior
Críticas / altas1331▼ 100 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
–

1962 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)1.7%—Goosequill Remoteeditor31/12/200416/6/2026
Unknown vulnerability in RemoteEditor before 0.1.1 has unknown impact and attack vectors, related to "oversize submissions."
ModificadaAlta (10)6.3%—SUN Java 2 Micro EditionAISUN Kilobyte Virtual MachineAI31/12/200416/6/2026
Java 2 Micro Edition (J2ME) does not properly validate bytecode, which allows remote attackers to escape the Kilobyte Virtual Machine (KVM) sandbox and execute arbitrary code.
ModificadaAlta (7.5)1.4%—Goosequill Audienceconnect Remoteeditor31/12/200416/6/2026
Unknown vulnerability in the "access code" in RemoteEditor before 0.1.6 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions.
ModificadaAlta (7.5)1.4%—Goosequill Audienceconnect Secureeditor31/12/200416/6/2026
Unknown vulnerability in the "access code" in SecureEditor before 0.1.2 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions.
ModificadaMedia (4.3)0.96%—Freewebs Webzedit23/11/200416/6/2026
Cross-site scripting (XSS) vulnerability in done.jsp in WebzEdit 1.9 and earlier allows remote attackers to execute arbitrary script as other users via the message parameter.
ModificadaAlta (10)5.2%—FTE Text EditorDebian Linux4/5/200416/6/2026
Múltiples desbordamientos de búfer en vfte, basado en fte, anteriores a 0.50, permite a usuarios locales ejecutar código arbitrario
ModificadaMedia (5)1.6%—Greg Billock Edittag31/12/200316/6/2026
Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a "%2F.." (encoded slash dot dot) in the file parameter.
ModificadaBaja (2.1)0.41%—Adobe Digital Editions4/10/200216/6/2026
Adobe eBook Reader 2.1 and 2.2 allows a user to copy eBooks to other systems by using the backup feature, capturing the encryption Challenge, and using the appropriate hash function to generate the activation code.
ModificadaMedia (4.6)1.6%💥 ExploitAdobe Digital Editions4/10/200216/6/2026
Adobe eBook Reader allows a user to bypass restrictions for copy, print, lend, and give operations by backing up key data files, performing the operations, and restoring the original data files.
ModificadaMedia (4.6)0.44%💥 ExploitUltraedit-3231/8/200116/6/2026
UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read the file to decrypt the passwords and gain privileges.
ModificadaAlta (7.2)0.52%—Nedit22/8/200116/6/2026
The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.
ModificadaBaja (2.1)0.32%—Joes OWN Editor JOE14/7/199916/6/2026
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.
Orbitaley — Vulnerabilidades