Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

183 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)2.8%💥 PoCDelegateDnrdDON Moore MydnsMaradns+1131/12/200416/6/2026
Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by…
ModificadaAlta (10)63%💥 ExploitProxy-pro Professional Gatekeeper23/11/200416/6/2026
Buffer overflow in the web proxy for GateKeeper Pro 4.7 allows remote attackers to execute arbitrary code via a long GET request.
ModificadaAlta (7.5)6.6%💥 ExploitDelegate6/5/200416/6/2026
Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field.
ModificadaAlta (7.5)2.4%—Belkin F5d5230-4 4-port Cable DSL Gateway Router11/4/200316/6/2026
Belkin F5D5230-4 4-Port Cable/DSL Gateway Router 1.20.000 modifies the source IP address of internal packets to that of the router's external interface when forwarding a request from an internal host to an internal web server, which allows remote attackers to hide which host is being used to access the web server.
ModificadaAlta (7.5)3.2%—Delegate31/12/200216/6/2026
Multiple buffer overflows in DeleGate 7.7.0 through 7.8.1 allow remote attackers to execute arbitrary code, as demonstrated using a long USER command to the POP proxy.
ModificadaAlta (7.5)6.7%💥 ExploitDelegate28/12/200116/6/2026
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.
ModificadaAlta (7.5)11%💥 ExploitETL Delegate13/11/199916/6/2026
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
ModificadaMedia (5)0.98%—Delegate21/7/199916/6/2026
Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.
Orbitaley — Vulnerabilidades