Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
184 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 0.94% | — | Minihttpserver.net Forum WEB Server | 31/12/2004 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in Forum Web Server 1.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Subject field in post1.htm and (2) the File Description field in postfile2.htm. | |
| Modificada | Media (4.6) | 0.31% | — | Minihttpserver.net WEB Forums ServerAI | 31/12/2004 | 16/6/2026 | Web Forums Server 1.6 and 2.0 Power Pack stores passwords in plaintext in the Username.ini file, which allows local users to gain privileges. | |
| Modificada | Media (5) | 1.9% | — | Geovision Geohttpserver | 31/12/2004 | 16/6/2026 | The sysinfo script in GeoHttpServer allows remote attackers to cause a denial of service (crash) via a long pwd parameter, possibly triggering a buffer overflow. | |
| Modificada | Media (5) | 1.4% | — | Geovision Geohttpserver | 31/12/2004 | 16/6/2026 | GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauthorized files via a URL that contains %0a%0a (encoded newlines). | |
| Modificada | Alta (7.5) | 1.5% | — | Appserv Open Project Appserv | 31/12/2004 | 16/6/2026 | AppServ 2.5.x and earlier installs a default username and password, which allows remote attackers to gain access. | |
| Modificada | Media (5) | 2.7% | — | Ypserv NIS Server | 24/7/2003 | 16/6/2026 | ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block. | |
| Modificada | Alta (10) | 4.5% | 💥 Exploit | Netscape Professional Services Ftpserver | 21/6/2000 | 16/6/2026 | Netscape Professional Services FTP Server 1.3.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | |
| Modificada | Alta (7.2) | 0.43% | — | Linux-nis Ypserv | 23/10/1999 | 16/6/2026 | ypserv allows local administrators to modify password tables. | |
| Modificada | Alta (7.2) | 0.41% | — | Linux-nis Ypserv | 23/10/1999 | 16/6/2026 | ypserv allows a local user to modify the GECOS and login shells of other users. |