Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

182 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.3)7.9%💥 ExploitMacromedia Shockwave31/12/200616/6/2026
An ActiveX control in SwDir.dll in Macromedia Shockwave 10 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long string in the swURL attribute.
ModificadaAlta (9.3)20%—Adobe Shockwave Player31/12/200516/6/2026
Stack-based buffer overflow in an ActiveX control for the installer for Adobe Macromedia Shockwave Player 10.1.0.11 and earlier allows remote attackers to execute arbitrary code via crafted large values for unspecified parameters.
ModificadaMedia (5)1.9%—Macromedia Flash PlayerMacromedia Shockwave22/4/200316/6/2026
Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file).
ModificadaAlta (7.5)3.2%—Macromedia Shockwave Flash12/8/200216/6/2026
The decoder for Macromedia Shockwave Flash allows remote attackers to execute arbitrary code via a malformed SWF header that contains more data than the specified length.
ModificadaAlta (7.6)1.7%—Macromedia Shockwave Flash Plugin26/3/200116/6/2026
Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.
ModificadaMedia (5)1.1%—Macromedia Shockwave Flash Plugin11/3/199916/6/2026
Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia.
ModificadaMedia (5.1)1.2%—Macromedia Shockwave Flash Plugin14/3/199716/6/2026
Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie.
Orbitaley — Vulnerabilidades