Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
1970 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 7.1% | — | Microsoft Internet Explorer | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1213, CVE-2020-1214, CVE-2020-1215, CVE-2020-1216, CVE-2020-1260. | |
| Modificada | Alta (7.5) | 19% | — | Microsoft Internet ExplorerMicrosoft EdgeMicrosoft Chakracore | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'. | |
| Modificada | Alta (7.5) | 7.2% | — | Microsoft Internet Explorer | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1213, CVE-2020-1214, CVE-2020-1215, CVE-2020-1230, CVE-2020-1260. | |
| Modificada | Alta (7.5) | 8.0% | — | Microsoft Internet Explorer | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1213, CVE-2020-1214, CVE-2020-1216, CVE-2020-1230, CVE-2020-1260. | |
| Modificada | Alta (7.5) | 8.0% | — | Microsoft Internet Explorer | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1213, CVE-2020-1215, CVE-2020-1216, CVE-2020-1230, CVE-2020-1260. | |
| Modificada | Alta (7.5) | 7.2% | — | Microsoft Internet Explorer | 9/6/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1214, CVE-2020-1215, CVE-2020-1216, CVE-2020-1230, CVE-2020-1260. | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists in the way that the MSHTML engine improperly validates input. An attacker could execute arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker who successfully exploited the vulnerability could take… | |
| Modificada | Alta (7.5) | 6.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Modificada | Alta (7.5) | 3.2% | — | Microsoft Internet Explorer | 21/5/2020 | 19/8/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same… | |
| Analizada | Alta (7.5) | 31% | ⚠ Explotación activa | Microsoft Internet Explorer | 15/4/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0970. | |
| Modificada | Alta (8.8) | 12% | — | Microsoft Internet Explorer | 15/4/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0966. | |
| Modificada | Alta (8.8) | 12% | — | Microsoft Internet Explorer | 15/4/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0967. | |
| Modificada | Alta (7.5) | 7.9% | — | Microsoft Internet Explorer | 15/4/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code Execution Vulnerability'. | |
| Modificada | Crítica (9.8) | 1.8% | — | Extplorer | 10/4/2020 | 17/6/2026 | Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-2.1.0b6+dfsg-1 or debian/patches/adds-a-makefile.patch, this can lead to data leakage, information disclosure and… | |
| Modificada | Media (6.4) | 1.6% | — | Zohocorp Manageengine Assetexplorer | 23/3/2020 | 17/6/2026 | An issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not validate the source and binary downloaded. This allows an attacker on an adjacent network to execute code with NT AUTHORITY/SYSTEM privileges on the agent machines by providing an arbitrary executable… | |
| Modificada | Alta (7.2) | 6.0% | — | Zohocorp Manageengine Assetexplorer | 23/3/2020 | 17/6/2026 | Zoho ManageEngine Asset Explorer 6.5 does not validate the System Center Configuration Manager (SCCM) database username when dynamically generating a command to schedule scans for SCCM. This allows an attacker to execute arbitrary commands on the AssetExplorer Server with NT AUTHORITY/SYSTEM privileges. | |
| Modificada | Crítica (9.8) | 1.1% | — | Naver Cloud Explorer | 23/3/2020 | 17/6/2026 | Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through its named pipe. | |
| Modificada | Media (6.1) | 3.5% | — | Invisioncommunity Invision Power BoardMicrosoft Internet Explorer | 13/3/2020 | 16/6/2026 | Invision Power Board (aka IPB or IP.Board) 2.x through 3.0.4, when Internet Explorer 5 is used, allows XSS via a .txt attachment. | |
| Modificada | Alta (7.5) | 7.9% | — | Microsoft Internet Explorer | 12/3/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. | |
| Modificada | Alta (7.5) | 8.7% | — | Microsoft Internet Explorer | 12/3/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0768, CVE-2020-0823, CVE-2020-0825, CVE-2020-0826, CVE-2020-0827, CVE-2020-0828, CVE-2020-0829,… | |
| Modificada | Alta (7.5) | 8.7% | — | Microsoft Internet Explorer | 12/3/2020 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0768, CVE-2020-0823, CVE-2020-0825, CVE-2020-0826, CVE-2020-0827, CVE-2020-0828, CVE-2020-0829,… |