Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2861▲ 225 respecto a la semana anterior
Críticas / altas1331▼ 100 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)237▲ 223 respecto a la semana anterior
1962 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 1.7% | — | Goosequill Remoteeditor | 31/12/2004 | 16/6/2026 | Unknown vulnerability in RemoteEditor before 0.1.1 has unknown impact and attack vectors, related to "oversize submissions." | |
| Modificada | Alta (10) | 6.3% | — | SUN Java 2 Micro EditionAISUN Kilobyte Virtual MachineAI | 31/12/2004 | 16/6/2026 | Java 2 Micro Edition (J2ME) does not properly validate bytecode, which allows remote attackers to escape the Kilobyte Virtual Machine (KVM) sandbox and execute arbitrary code. | |
| Modificada | Alta (7.5) | 1.4% | — | Goosequill Audienceconnect Remoteeditor | 31/12/2004 | 16/6/2026 | Unknown vulnerability in the "access code" in RemoteEditor before 0.1.6 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions. | |
| Modificada | Alta (7.5) | 1.4% | — | Goosequill Audienceconnect Secureeditor | 31/12/2004 | 16/6/2026 | Unknown vulnerability in the "access code" in SecureEditor before 0.1.2 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions. | |
| Modificada | Media (4.3) | 0.96% | — | Freewebs Webzedit | 23/11/2004 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in done.jsp in WebzEdit 1.9 and earlier allows remote attackers to execute arbitrary script as other users via the message parameter. | |
| Modificada | Alta (10) | 5.2% | — | FTE Text EditorDebian Linux | 4/5/2004 | 16/6/2026 | Múltiples desbordamientos de búfer en vfte, basado en fte, anteriores a 0.50, permite a usuarios locales ejecutar código arbitrario | |
| Modificada | Media (5) | 1.6% | — | Greg Billock Edittag | 31/12/2003 | 16/6/2026 | Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a "%2F.." (encoded slash dot dot) in the file parameter. | |
| Modificada | Baja (2.1) | 0.41% | — | Adobe Digital Editions | 4/10/2002 | 16/6/2026 | Adobe eBook Reader 2.1 and 2.2 allows a user to copy eBooks to other systems by using the backup feature, capturing the encryption Challenge, and using the appropriate hash function to generate the activation code. | |
| Modificada | Media (4.6) | 1.6% | 💥 Exploit | Adobe Digital Editions | 4/10/2002 | 16/6/2026 | Adobe eBook Reader allows a user to bypass restrictions for copy, print, lend, and give operations by backing up key data files, performing the operations, and restoring the original data files. | |
| Modificada | Media (4.6) | 0.44% | 💥 Exploit | Ultraedit-32 | 31/8/2001 | 16/6/2026 | UltraEdit uses weak encryption to record FTP passwords in the uedit32.ini file, which allows local users who can read the file to decrypt the passwords and gain privileges. | |
| Modificada | Alta (7.2) | 0.52% | — | Nedit | 22/8/2001 | 16/6/2026 | The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file. | |
| Modificada | Baja (2.1) | 0.32% | — | Joes OWN Editor JOE | 14/7/1999 | 16/6/2026 | Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users. |