Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

367 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.28%—Samsung Notes6/10/202117/6/2026
A possible buffer overflow vulnerability in maetd_eco_cb_mode of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
ModificadaAlta (7.8)0.28%—Samsung Notes6/10/202117/6/2026
A possible buffer overflow vulnerability in maetd_cpy_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
ModificadaAlta (7.8)0.28%—Samsung Notes6/10/202117/6/2026
A possible buffer overflow vulnerability in maetd_dec_slice of libSPenBase library of Samsung Notes prior to Samsung Notes version 4.3.02.61 allows arbitrary code execution.
ModificadaAlta (7.8)0.28%—Samsung Notes6/10/202117/6/2026
A possible heap buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
ModificadaAlta (7.8)0.29%—Samsung Notes6/10/202117/6/2026
A possible buffer overflow vulnerability in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows arbitrary code execution.
ModificadaAlta (7.1)0.23%—Samsung Notes6/10/202117/6/2026
Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read
ModificadaAlta (7.1)0.23%—Samsung Notes6/10/202117/6/2026
Lack of boundary checking of a buffer in libSPenBase library of Samsung Notes prior to Samsung Note version 4.3.02.61 allows OOB read.
ModificadaMedia (5.5)0.23%—Samsung Notes11/6/202117/6/2026
An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.
ModificadaBaja (3.3)0.23%—Samsung Notes11/6/202117/6/2026
Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information.
ModificadaMedia (5.4)0.58%—Samsung Notes25/3/202117/6/2026
Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without permission.
ModificadaAlta (7.8)0.21%—Samsung Notes25/3/202117/6/2026
Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action without permission via hijacking the PendingIntent.
ModificadaMedia (6.5)1.3%—Hcltech HCL InotesHcltechsw HCL Inotes21/12/202017/6/2026
HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content. A remote unauthenticated attacker could use this vulnerability to trick the end user into entering sensitive information such as credentials, e.g. as part of a phishing attack.
ModificadaMedia (6.1)1.1%—Hcltech HCL Inotes18/12/202017/6/2026
HCL iNotes v9, v10 and v11 is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability due to improper handling of message content. An unauthenticated remote attacker could exploit this vulnerability using specially-crafted markup to execute script in a victim's web browser within the security context of the…
ModificadaCrítica (9.8)2.3%—Hcltech Notes18/12/202017/6/2026
A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow. This could allow a remote attacker to crash the Notes application or inject code into the system which would execute with the privileges of the…
ModificadaAlta (8.8)1.3%—Hcltech Notes18/12/202017/6/2026
A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow. This could allow the attacker to crash the program or inject code into the system which would execute with the privileges of the currently logged in user.
ModificadaCrítica (9.8)2.3%—Hcltech Notes14/12/202017/6/2026
A vulnerability in the MIME message handling of the Notes client (versions 9 and 10) could potentially be exploited by an unauthenticated attacker resulting in a stack buffer overflow. This could allow a remote attacker to crash the client or inject code into the system which would execute with the privileges of the…
ModificadaMedia (6.7)0.33%—Hcltech Notes2/12/202017/6/2026
HCL Notes is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an attacker to crash Notes or execute attacker-controlled code on the client system.
ModificadaMedia (5.9)0.67%—Hcltech HCL Inotes1/12/202017/6/2026
HCL iNotes is susceptible to a sensitive cookie exposure vulnerability. This can allow an unauthenticated remote attacker to capture the cookie by intercepting its transmission within an http session. Fixes are available in HCL Domino and iNotes versions 10.0.1 FP6 and 11.0.1 FP2 and later.
ModificadaAlta (7.5)1.3%—Hcltech Notes21/11/202017/6/2026
HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input. A remote unauthenticated attacker could exploit this vulnerability using a specially-crafted email message to hang the client. Versions 9, 10 and 11 are affected.
ModificadaMedia (6.8)0.32%—Hcltech Notes5/11/202017/6/2026
In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1, a vulnerability in the input parameter handling of the Notes Client could potentially be exploited by an attacker resulting in a buffer overflow. This…
ModificadaMedia (6.1)0.67%—Hcltech Notes5/11/202017/6/2026
HCL Notes versions previous to releases 9.0.1 FP10 IF8, 10.0.1 FP6 and 11.0.1 FP1 is susceptible to a Stored Cross-site Scripting (XSS) vulnerability. An attacker could use this vulnerability to execute script in a victim's Web browser within the security context of the hosting Web site and/or steal the victim's…
ModificadaCrítica (9.8)1.9%—Dot-notes Project Dot-notes1/9/202017/6/2026
All versions of package dot-notes are vulnerable to Prototype Pollution via the create function.
ModificadaAlta (7.8)0.49%—Pnotes.net Project Pnotes.net14/8/202017/6/2026
A File Upload Vulnerability in PNotes - Andrey Gruber PNotes.NET v3.8.1.2 allows a local attacker to execute arbitrary code via the Miscellaneous " External Programs by uploading the malicious .exe file to the external program.
ModificadaMedia (6.1)0.67%—IBM Inotes1/7/202017/6/2026
"HCL iNotes is susceptible to a Cross-Site Scripting (XSS) Vulnerability. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials."
ModificadaMedia (6.5)1.2%—Hcltech Notes26/6/202017/6/2026
HCL Notes is vulnerable to an information leakage vulnerability through its support for the 'mailto' protocol. This vulnerability could result in files from the user's filesystem or connected network filesystems being leaked to a third party. All versions of HCL Notes 9, 10 and 11 are affected.