Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
182 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 7.9% | 💥 Exploit | Macromedia Shockwave | 31/12/2006 | 16/6/2026 | An ActiveX control in SwDir.dll in Macromedia Shockwave 10 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long string in the swURL attribute. | |
| Modificada | Alta (9.3) | 20% | — | Adobe Shockwave Player | 31/12/2005 | 16/6/2026 | Stack-based buffer overflow in an ActiveX control for the installer for Adobe Macromedia Shockwave Player 10.1.0.11 and earlier allows remote attackers to execute arbitrary code via crafted large values for unspecified parameters. | |
| Modificada | Media (5) | 1.9% | — | Macromedia Flash PlayerMacromedia Shockwave | 22/4/2003 | 16/6/2026 | Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file). | |
| Modificada | Alta (7.5) | 3.2% | — | Macromedia Shockwave Flash | 12/8/2002 | 16/6/2026 | The decoder for Macromedia Shockwave Flash allows remote attackers to execute arbitrary code via a malformed SWF header that contains more data than the specified length. | |
| Modificada | Alta (7.6) | 1.7% | — | Macromedia Shockwave Flash Plugin | 26/3/2001 | 16/6/2026 | Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file. | |
| Modificada | Media (5) | 1.1% | — | Macromedia Shockwave Flash Plugin | 11/3/1999 | 16/6/2026 | Auto-update feature of Macromedia Shockwave 7 transmits a user's password and hard disk information back to Macromedia. | |
| Modificada | Media (5.1) | 1.2% | — | Macromedia Shockwave Flash Plugin | 14/3/1997 | 16/6/2026 | Macromedia Shockwave before 6.0 allows a malicious webmaster to read a user's mail box and possibly access internal web servers via the GetNextText command on a Shockwave movie. |