Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 554 respecto a la semana anterior
Críticas / altas1325▼ 178 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 242 respecto a la semana anterior
1895 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.1) | 4.4% | — | Zohocorp Manageengine Assetexplorer | 8/8/2019 | 17/6/2026 | Server Side Request Forgery (SSRF) exists in Zoho ManageEngine AssetExplorer version 6.2.0 for the AJaxServlet servlet via a parameter in a URL. | |
| Modificada | Alta (8.8) | 3.1% | — | Zohocorp Manageengine Assetexplorer | 8/8/2019 | 17/6/2026 | Server Side Request Forgery (SSRF) exists in Zoho ManageEngine AssetExplorer 6.2.0 and before for the ClientUtilServlet servlet via a URL in a parameter. | |
| Modificada | Alta (7.5) | 7.1% | — | Microsoft Internet ExplorerMicrosoft Edge | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'. | |
| Modificada | Alta (7.5) | 7.2% | — | Microsoft Internet Explorer | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory Corruption Vulnerability'. | |
| Modificada | Alta (7.5) | 7.8% | — | Microsoft Internet Explorer | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1001, CVE-2019-1004, CVE-2019-1056. | |
| Modificada | Alta (7.5) | 7.8% | — | Microsoft Internet Explorer | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1001, CVE-2019-1004, CVE-2019-1059. | |
| Modificada | Alta (7.5) | 7.8% | — | Microsoft Internet Explorer | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1001, CVE-2019-1056, CVE-2019-1059. | |
| Modificada | Alta (7.5) | 8.1% | — | Microsoft ChakracoreMicrosoft Internet ExplorerMicrosoft Edge | 15/7/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1004, CVE-2019-1056, CVE-2019-1059. | |
| Modificada | Media (6.1) | 2.2% | — | Zohocorp Manageengine Assetexplorer | 11/7/2019 | 17/6/2026 | An issue was discovered in Zoho ManageEngine AssetExplorer. There is XSS via ResourcesAttachments.jsp with the parameter pageName. | |
| Modificada | Media (6.1) | 2.2% | — | Zohocorp Manageengine Assetexplorer | 11/7/2019 | 17/6/2026 | An issue was discovered in Zoho ManageEngine AssetExplorer. There is XSS via SoftwareListView.do with the parameter swType or swComplianceType. | |
| Modificada | Media (6.1) | 2.2% | — | Zohocorp Manageengine Assetexplorer | 11/7/2019 | 17/6/2026 | An issue was discovered in Zoho ManageEngine AssetExplorer. There is XSS via the RCSettings.do rdsName parameter. | |
| Modificada | Media (6.1) | 2.2% | — | Zohocorp Manageengine Assetexplorer | 11/7/2019 | 17/6/2026 | An issue was discovered in Zoho ManageEngine AssetExplorer. There is XSS via the SearchN.do search field. | |
| Modificada | Media (4.2) | 2.3% | — | Microsoft EdgeMicrosoft Internet Explorer | 12/6/2019 | 17/6/2026 | An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability, in a web-based attack scenario, an attacker… | |
| Modificada | Alta (7.5) | 3.3% | — | Microsoft Internet Explorer | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability… | |
| Modificada | Alta (7.5) | 3.3% | — | Microsoft Internet Explorer | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability… | |
| Modificada | Alta (7.5) | 3.3% | — | Microsoft Internet ExplorerMicrosoft Edge | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerability could corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the… | |
| Modificada | Alta (7.5) | 3.3% | — | Microsoft Internet Explorer | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability… | |
| Modificada | Alta (7.5) | 5.7% | — | Microsoft Internet Explorer | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability… | |
| Modificada | Media (4.3) | 5.5% | — | Microsoft Internet Explorer | 12/6/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability… | |
| Modificada | Alta (8.8) | 4.9% | — | Microsoft Internet Explorer | 16/5/2019 | 17/6/2026 | A security feature bypass vulnerability exists when urlmon.dll improperly handles certain Mark of the Web queries, aka 'Internet Explorer Security Feature Bypass Vulnerability'. | |
| Modificada | Alta (7.5) | 23% | — | Microsoft Internet ExplorerMicrosoft Edge | 16/5/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'. | |
| Modificada | Media (6.5) | 6.6% | — | Microsoft Internet Explorer | 16/5/2019 | 17/6/2026 | An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory, aka 'Internet Explorer Information Disclosure Vulnerability'. | |
| Modificada | Alta (7.5) | 8.1% | — | Microsoft Internet Explorer | 16/5/2019 | 17/6/2026 | A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory Corruption Vulnerability'. | |
| Modificada | Media (6.5) | 3.3% | — | Microsoft Internet Explorer | 16/5/2019 | 17/6/2026 | An spoofing vulnerability exists when Internet Explorer improperly handles URLs, aka 'Internet Explorer Spoofing Vulnerability'. | |
| Modificada | Alta (7.5) | 8.0% | — | Microsoft Internet Explorer | 16/5/2019 | 17/6/2026 | A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0884, CVE-2019-0911. |