Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
201 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 5.9% | — | Digium AsteriskDigium Asterisk Appliance Developer KIT | 31/7/2007 | 16/6/2026 | The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Developer Kit before 0.6.0, when configured to allow unauthenticated calls, allows remote attackers to cause a denial of service (resource exhaustion) via a flood of calls that do not complete a 3-way… | |
| Modificada | Alta (9.3) | 5.5% | — | AsteriskAsterisk Appliance Developer KITAsterisknowAsterisk S800i Appliance | 18/7/2007 | 16/6/2026 | Stack-based buffer overflow in the IAX2 channel driver (chan_iax2) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to execute arbitrary code by sending a long (1) voice or… | |
| Modificada | Media (5) | 27% | 💥 Exploit | AsteriskAsterisk Appliance Developer KITAsterisknowAsterisk S800i Appliance | 18/7/2007 | 16/6/2026 | The IAX2 channel driver (chan_iax2) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted (1) LAGRQ or (2) LAGRP frame that… | |
| Modificada | Media (5) | 1.7% | — | AsteriskAsterisk Appliance Developer KITAsterisknowAsterisk S800i Appliance | 18/7/2007 | 16/6/2026 | The STUN implementation in Asterisk 1.4.x before 1.4.8, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted STUN length attribute in a STUN packet sent on an RTP port. | |
| Modificada | Media (5) | 32% | 💥 Exploit | AsteriskAsterisk Appliance Developer KITAsterisknowAsterisk S800i Appliance | 18/7/2007 | 16/6/2026 | The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted… | |
| Modificada | Alta (7.5) | 2.8% | 💥 Exploit | Tomasz Rekawek YET Another Asterisk Panel | 14/5/2007 | 16/6/2026 | PHP remote file inclusion vulnerability in includes/common.php in Yaap 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter, possibly related to the __autoload function. | |
| Modificada | Alta (10) | 4.3% | — | Asterisk | 7/5/2007 | 16/6/2026 | The IAX2 channel driver (chan_iax2) in Asterisk before 20070504 does not properly null terminate data, which allows remote attackers to trigger loss of transmitted data, and possibly obtain sensitive information (memory contents) or cause a denial of service (application crash), by sending a frame that lacks a 0 byte. | |
| Modificada | Alta (7.8) | 2.4% | — | Asterisk | 26/4/2007 | 16/6/2026 | The SIP channel driver (chan_sip) in Asterisk before 1.2.18 and 1.4.x before 1.4.3 does not properly parse SIP UDP packets that do not contain a valid response code, which allows remote attackers to cause a denial of service (crash). | |
| Modificada | Alta (7.8) | 3.9% | — | Asterisk | 26/4/2007 | 16/6/2026 | The Manager Interface in Asterisk before 1.2.18 and 1.4.x before 1.4.3 allows remote attackers to cause a denial of service (crash) by using MD5 authentication to authenticate a user that does not have a password defined in manager.conf, resulting in a NULL pointer dereference. | |
| Modificada | Alta (7.6) | 24% | 💥 Exploit | Asterisk | 26/4/2007 | 16/6/2026 | Multiple stack-based buffer overflows in the process_sdp function in chan_sip.c of the SIP channel T.38 SDP parser in Asterisk before 1.4.3 allow remote attackers to execute arbitrary code via a long (1) T38FaxRateManagement or (2) T38FaxUdpEC SDP parameter in an SIP message, as demonstrated using SIP INVITE. | |
| Modificada | Alta (7.8) | 2.6% | — | Asterisk | 22/3/2007 | 16/6/2026 | The handle_response function in chan_sip.c in Asterisk before 1.2.17 and 1.4.x before 1.4.2 allows remote attackers to cause a denial of service (crash) via a SIP Response code 0 in a SIP packet. | |
| Modificada | Alta (7.5) | 2.6% | — | Asterisk | 22/3/2007 | 16/6/2026 | The Asterisk Extension Language (AEL) in pbx/pbx_ael.c in Asterisk does not properly generate extensions, which allows remote attackers to execute arbitrary extensions and have an unknown impact by specifying an invalid extension in a certain form. | |
| Modificada | Alta (7.8) | 14% | 💥 Exploit | Asterisk | 21/3/2007 | 16/6/2026 | The channel driver in Asterisk before 1.2.17 and 1.4.x before 1.4.2 allows remote attackers to cause a denial of service (crash) via a SIP INVITE message with an SDP containing one valid and one invalid IP address. | |
| Modificada | Alta (7.8) | 21% | 💥 Exploit | Digium Asterisk | 7/3/2007 | 16/6/2026 | Asterisk 1.4 before 1.4.1 and 1.2 before 1.2.16 allows remote attackers to cause a denial of service (crash) by sending a Session Initiation Protocol (SIP) packet without a URI and SIP-version header, which results in a NULL pointer dereference. | |
| Modificada | Alta (7.5) | 86% | 💥 Exploit | Digium Asterisk | 23/10/2006 | 16/6/2026 | Integer overflow in the get_input function in the Skinny channel driver (chan_skinny.c) in Asterisk 1.0.x before 1.0.12 and 1.2.x before 1.2.13, as used by Cisco SCCP phones, allows remote attackers to execute arbitrary code via a certain dlen value that passes a signed integer comparison and leads to a heap-based… | |
| Modificada | Alta (7.8) | 3.6% | — | Digium Asterisk | 23/10/2006 | 16/6/2026 | Unspecified vulnerability in the SIP channel driver (channels/chan_sip.c) in Asterisk 1.2.x before 1.2.13 and 1.4.x before 1.4.0-beta3 allows remote attackers to cause a denial of service (resource consumption) via unspecified vectors that result in the creation of "a real pvt structure" that uses more resources than… | |
| Modificada | Alta (7.5) | 6.7% | — | Digium Asterisk | 24/8/2006 | 16/6/2026 | Asterisk 1.2.10 supports the use of client-controlled variables to determine filenames in the Record function, which allows remote attackers to (1) execute code via format string specifiers or (2) overwrite files via directory traversals involving unspecified vectors, as demonstrated by the CALLERIDNAME variable. | |
| Modificada | Alta (7.5) | 7.7% | — | Digium Asterisk | 24/8/2006 | 16/6/2026 | Stack-based buffer overflow in channels/chan_mgcp.c in MGCP in Asterisk 1.0 through 1.2.10 allows remote attackers to execute arbitrary code via a crafted audit endpoint (AUEP) response. | |
| Modificada | Alta (7.5) | 4.3% | — | Digium Asterisk | 7/6/2006 | 16/6/2026 | The IAX2 channel driver (chan_iax2) for Asterisk 1.2.x before 1.2.9 and 1.0.x before 1.0.11 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via truncated IAX 2 (IAX2) video frames, which bypasses a length check and leads to a buffer overflow involving negative length check.… | |
| Modificada | Media (5) | 1.8% | — | Asteriskathome | 25/4/2006 | 16/6/2026 | Absolute path traversal vulnerability in recordings/misc/audio.php in the Asterisk Recording Interface (ARI) web interface in Asterisk@Home before 2.8 allows remote attackers to read arbitrary MP3, WAV, and GSM files via a full pathname in the recording parameter. NOTE: this issue can also be used to determine… | |
| Modificada | Alta (7.8) | 8.0% | 💥 Exploit | Asteriskathome | 25/4/2006 | 16/6/2026 | Asterisk Recording Interface (ARI) in Asterisk@Home before 2.8 stores recordings/includes/main.conf under the web document root with insufficient access control, which allows remote attackers to obtain password information. | |
| Modificada | Media (6.4) | 7.0% | — | Digium Asterisk | 18/4/2006 | 16/6/2026 | Integer signedness error in format_jpeg.c in Asterisk 1.2.6 and earlier allows remote attackers to execute arbitrary code via a length value that passes a length check as a negative number, but triggers a buffer overflow when it is used as an unsigned length. | |
| Modificada | Media (5) | 20% | 💥 Exploit | Digium Asterisk | 16/11/2005 | 16/6/2026 | Directory traversal vulnerability in vmail.cgi in Asterisk 1.0.9 through 1.2.0-beta1 allows remote attackers to access WAV files via a .. (dot dot) in the folder parameter. | |
| Modificada | Media (5) | 4.3% | — | Digium Asterisk | 5/7/2005 | 16/6/2026 | Stack-based buffer overflow in the function that parses commands in Asterisk 1.0.7, when the 'write = command' option is enabled, allows remote attackers to execute arbitrary code via a command that has two double quotes followed by a tab character. | |
| Modificada | Alta (7.5) | 1.5% | — | Digium Asterisk | 22/9/2003 | 16/6/2026 | SQL injection vulnerability in the Call Detail Record (CDR) logging functionality for Asterisk allows remote attackers to execute arbitrary SQL via a CallerID string. |