Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2952▲ 10 respecto a la semana anterior
Críticas / altas1451▲ 185 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
370 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 12% | — | Onlyoffice Document Server | 1/3/2021 | 17/6/2026 | A file extension handling issue was found in [core] module of ONLYOFFICE DocumentServer v4.2.0.236-v5.6.4.13. An attacker must request the conversion of the crafted file from DOCT into DOCX format. Using the chain of two other bugs related to improper string handling, an attacker can achieve remote code execution on… | |
| Modificada | Alta (7.5) | 7.4% | — | Onlyoffice Document Server | 1/3/2021 | 17/6/2026 | An improper binary stream data handling issue was found in the [core] module of ONLYOFFICE DocumentServer v4.0.0-9-v5.6.3. Using this bug, an attacker is able to produce a denial of service attack that can eventually shut down the target server. | |
| Modificada | Crítica (9.8) | 8.2% | — | Onlyoffice Document Server | 26/1/2021 | 17/6/2026 | Directory traversal with remote code execution can occur in /upload in ONLYOFFICE Document Server before 5.6.3, when JWT is used, via a /.. sequence in an image upload parameter. | |
| Modificada | Media (6.1) | 0.70% | — | Readdle Documents | 18/5/2020 | 17/6/2026 | An issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server improperly displays directory names, leading to Stored XSS, which may be used to steal a user's data. This requires user interaction because there is no known direct way for an attacker to create a… | |
| Modificada | Media (5.3) | 1.0% | — | Readdle Documents | 18/5/2020 | 17/6/2026 | An issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server allows for cross-origin requests from any domain, and the WebSocket server lacks authorization control. Any web site can execute JavaScript code (that accesses a user's data) via cross-origin requests. | |
| Modificada | Crítica (9.8) | 1.5% | — | Onlyoffice Document Server | 15/4/2020 | 17/6/2026 | A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API. | |
| Modificada | Crítica (9.8) | 2.6% | — | Onlyoffice Document Server | 15/4/2020 | 17/6/2026 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the unzip function to rewrite a binary and remotely execute code on a victim's server. | |
| Modificada | Crítica (9.8) | 2.3% | — | Onlyoffice Document Server | 15/4/2020 | 17/6/2026 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit XML injection to enter an attacker-controlled parameter into the x2t binary, to rewrite this binary and/or libxcb.so.1, and execute code on a victim's server. | |
| Modificada | Crítica (9.8) | 2.2% | — | Onlyoffice Document Server | 15/4/2020 | 17/6/2026 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the NSFileDownloader function to pass parameters to a binary (such as curl or wget) and remotely execute code on a victim's server. | |
| Modificada | Alta (8.2) | 1.3% | — | Oracle Document Management AND Collaboration | 15/4/2020 | 17/6/2026 | Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Attachments). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle… | |
| Modificada | Alta (8.8) | 2.9% | — | Antennahouse Rainbow PDF Office Server Document Converter | 31/10/2019 | 17/6/2026 | A buffer overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Document Converter V7.0 Pro MR1 (7,0,2019,0220). While parsing a document text info container, the TxMasterStyleAtom::parse function is incorrectly checking the bounds corresponding to the number of style… | |
| Modificada | Media (6.1) | 0.92% | — | Memphis Documents Library Project Memphis Documents Library | 22/8/2019 | 17/6/2026 | The memphis-documents-library plugin before 3.0 for WordPress has XSS via $_REQUEST. | |
| Modificada | Crítica (9.8) | 2.1% | — | Memphis Documents Library Project Memphis Documents Library | 22/8/2019 | 17/6/2026 | The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion. | |
| Modificada | Crítica (9.8) | 2.7% | — | Memphis Documents Library Project Memphis Documents Library | 22/8/2019 | 17/6/2026 | The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion. | |
| Modificada | Crítica (9.8) | 2.6% | — | HP Color Laserjet Cm4540 MFP FirmwareHP Color Laserjet Enterprise Cp5525 FirmwareHP Color Laserjet Enterprise M553 FirmwareHP Color Laserjet Enterprise M552 Firmware+139 | 11/4/2019 | 17/6/2026 | HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP Officejet Enterprise printers have an insufficient solution bundle signature validation that potentially allows execution of arbitrary code. | |
| Modificada | Crítica (9.8) | 2.6% | — | HP Color Laserjet Cm4540 MFP FirmwareHP Color Laserjet Cp5525 FirmwareHP Color Laserjet Enterprise Flow MFP M681f FirmwareHP Color Laserjet Enterprise Flow MFP M681z Firmware+134 | 27/3/2019 | 17/6/2026 | In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code. | |
| Modificada | Media (6.1) | 1.5% | — | Opentext Documentum Webtop | 21/3/2019 | 17/6/2026 | XSS and/or a Client Side URL Redirect exists in OpenText Documentum Webtop 5.3 SP2. The parameter startat in "/webtop/help/en/default.htm" is vulnerable. | |
| Modificada | Alta (7.5) | 40% | — | Esafenet Electronic Document Security Management System | 8/3/2019 | 17/6/2026 | ESAFENET CDG V3 and V5 has an arbitrary file download vulnerability via the fileName parameter in download.jsp because the InstallationPack parameter is mishandled in a /CDGServer3/ClientAjax request. | |
| Modificada | Crítica (9.8) | 2.3% | — | Rainbowpdf Office Server Document Converter | 7/3/2019 | 17/6/2026 | A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Document Converter V7.0 Pro R1 (7,0,2018,1113). While parsing Document Summary Property Set stream, the getSummaryInformation function is incorrectly checking the correlation between size and the… | |
| Modificada | Alta (7.8) | 2.0% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. | |
| Modificada | Alta (7.8) | 2.1% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This… | |
| Modificada | Alta (7.8) | 2.5% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | An exploitable stack-based buffer overflow exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to a stack-based buffer overflow, resulting in remote code… | |
| Modificada | Alta (7.8) | 2.5% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `putShapeProperty` method. | |
| Modificada | Alta (7.8) | 1.6% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `vbgetfp` method. | |
| Modificada | Alta (7.8) | 2.5% | — | Antennahouse Office Server Document Converter | 11/7/2018 | 17/6/2026 | An exploitable heap corruption exists in the PowerPoint document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted PowerPoint (PPT) document can lead to heap corruption, resulting in remote code execution. |