Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3026▼ 51 respecto a la semana anterior
Críticas / altas1412▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)385▼ 125 respecto a la semana anterior
207 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 80% | — | Cisco IOSFissh SSH ClientIntersoft SecurenettermNetcomposite Shellguard SSH+3 | 23/12/2002 | 16/6/2026 | Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite. | |
| Modificada | Alta (7.2) | 1.3% | — | SSH Secure Shell | 14/8/2001 | 16/6/2026 | SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field. | |
| Modificada | Alta (7.5) | 2.7% | — | VAN Dyke Technologies Vshell | 2/6/2001 | 16/6/2026 | Format string vulnerability in VShell SSH gateway 1.0.1 and earlier allows remote attackers to execute arbitrary commands via a user name that contains format string specifiers. | |
| Modificada | Baja (2.1) | 0.45% | — | VAN Dyke Technologies Vshell | 2/6/2001 | 16/6/2026 | VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems. | |
| Modificada | Alta (7.2) | 0.39% | — | Cactus Software Shell-lock | 4/10/1999 | 16/6/2026 | shell-lock in Cactus Software Shell Lock allows local users to read or modify decoded shell files before they are executed, via a symlink attack on a temporary file. | |
| Modificada | Baja (2.1) | 0.26% | — | Cactus Software Shell-lock | 4/10/1999 | 16/6/2026 | shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code. | |
| Modificada | Media (5) | 3.5% | — | SSH Secure Shell | 12/6/1998 | 16/6/2026 | SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet,… |