Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1100 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.34% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel Zones. | |
| Modificada | Media (5.3) | 1.8% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect confidentiality via unknown vectors. | |
| Modificada | Baja (3.1) | 1.7% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect availability via vectors related to IKE. | |
| Modificada | Media (4.1) | 0.34% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect integrity via vectors related to Kernel. | |
| Modificada | Media (5) | 0.40% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via unknown vectors. | |
| Modificada | Alta (7.8) | 0.41% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect confidentiality, integrity, and availability via vectors related to Kernel/X86. | |
| Modificada | Baja (3.3) | 0.33% | — | Oracle Solaris Cluster | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 3.3 and 4.3 allows local users to affect integrity via vectors related to Cluster check files. | |
| Modificada | Baja (3.3) | 0.37% | — | Oracle Solaris Cluster | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 4.3 allows local users to affect confidentiality via vectors related to Cluster Geo. | |
| Modificada | Media (5.3) | 0.36% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors. | |
| Modificada | Baja (2.8) | 0.39% | — | Oracle Solaris | 25/10/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect integrity via vectors related to Bash. | |
| Modificada | Alta (7.5) | 89% | 💥 Exploit | Oracle LinuxOracle VM ServerISC BindHp-ux+1 | 28/9/2016 | 17/6/2026 | buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query. | |
| Modificada | Media (6.5) | 4.1% | — | LibarchiveRedhat Enterprise Linux DesktopRedhat Enterprise Linux HPC NodeRedhat Enterprise Linux Server+6 | 21/9/2016 | 17/6/2026 | Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file. | |
| Modificada | Alta (7.5) | 28% | — | OpensslOracle LinuxOracle Solaris | 16/9/2016 | 17/6/2026 | The tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0 does not consider the HMAC size during validation of the ticket length, which allows remote attackers to cause a denial of service via a ticket that is too short. | |
| Modificada | Media (5.9) | 2.3% | — | WiresharkOracle Solaris | 7/8/2016 | 17/6/2026 | epan/dissectors/packet-pktap.c in the Ethernet dissector in Wireshark 2.x before 2.0.4 mishandles the packet-header data type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | |
| Modificada | Media (5.9) | 2.5% | — | WiresharkOracle Solaris | 7/8/2016 | 17/6/2026 | wiretap/netscreen.c in the NetScreen file parser in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles sscanf unsigned-integer processing, which allows remote attackers to cause a denial of service (application crash) via a crafted file. | |
| Modificada | Alta (7.8) | 0.79% | — | PerlFedoraproject FedoraDebian LinuxOracle Solaris+1 | 2/8/2016 | 17/6/2026 | The XSLoader::load method in XSLoader in Perl does not properly locate .so files when called in a string eval, which might allow local users to execute arbitrary code via a Trojan horse library under the current working directory. | |
| Modificada | Media (5.5) | 0.38% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5469. | |
| Modificada | Media (5.5) | 0.38% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-3497 and CVE-2016-5471. | |
| Modificada | Media (6.4) | 0.32% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect integrity and availability via vectors related to Verified Boot. | |
| Modificada | Media (5.5) | 0.38% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality via vectors related to Verified Boot. | |
| Modificada | Alta (7) | 0.34% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect confidentiality, integrity, and availability via vectors related to Libadimalloc. | |
| Modificada | Media (5.5) | 0.39% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Kernel, a different vulnerability than CVE-2016-5469 and CVE-2016-5471. | |
| Modificada | Media (4.4) | 0.41% | — | Oracle Solaris Cluster | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in the Solaris Cluster component in Oracle Sun Systems Products Suite 3.3 and 4.3 allows local users to affect confidentiality via vectors related to HA for Postgresql. | |
| Modificada | Media (5.5) | 0.39% | — | Oracle Solaris | 21/7/2016 | 17/6/2026 | Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect availability via vectors related to Kernel. | |
| Modificada | Alta (8.1) | 56% | — | Apache Http ServerHP System Management HomepageOracle Communications User Data RepositoryOracle Enterprise Manager OPS Center+16 | 19/7/2016 | 17/6/2026 | The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a… |