Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2882▼ 181 respecto a la semana anterior
Críticas / altas1279▼ 60 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 4.3% | — | Software602 602pro LAN Suite | 12/6/2007 | 16/6/2026 | Stack-based buffer overflow in smtpdll.dll in the SMTP service in 602Pro LAN SUITE 2003 2003.0.03.0828 allows remote attackers to execute arbitrary code via an e-mail message with a long address. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |
| Modificada | Media (6.8) | 2.0% | — | Software602 602pro LAN Suite | 23/11/2004 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in LAN SUITE Web Mail 602Pro allows remote attackers to execute arbitrary script or HTML as other users via a URL to index.html, followed by a / (slash) and the desired script. NOTE: the vendor states that this bug could not be reproduced, so this issue may be REJECTed in the… | |
| Modificada | Media (5) | 1.5% | — | Software602 602pro LAN Suite | 23/11/2004 | 16/6/2026 | LAN SUITE Web Mail 602Pro allows remote attackers to gain sensitive information via the mail login form, which contains the path to the mail directory. | |
| Modificada | Media (5) | 1.4% | — | Software602 602pro LAN Suite | 23/11/2004 | 16/6/2026 | LAN SUITE Web Mail 602Pro, when configured to use the "Directory browsing" feature, allows remote attackers to obtain a directory listing via an HTTP request to (1) index.html, (2) cgi-bin/, or (3) users/. | |
| Modificada | Alta (10) | 2.4% | — | Software602 602pro LAN Suite | 31/12/2002 | 16/6/2026 | The Czech edition of Software602's Web Server before 2002.0.02.0916 allows remote attackers to gain administrator privileges via direct HTTP requests to the /admin/ directory, which is not password protected. | |
| Modificada | Media (5) | 1.2% | — | Software602 602pro LAN Suite | 31/12/2002 | 16/6/2026 | 602Pro LAN SUITE 2002 allows remote attackers to view the directory tree via an HTTP GET request with a trailing "~" (tilde) or ".bak" extension. | |
| Modificada | Media (5) | 2.5% | — | Software602 602pro LAN Suite | 31/12/2002 | 16/6/2026 | The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, which allows remote attackers to create a denial of service (memory consumption) via a large number of connections. | |
| Modificada | Alta (7.5) | 1.9% | — | Software602 602pro LAN Suite | 18/6/2001 | 16/6/2026 | Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing "%2e" (dot dot) characters. | |
| Modificada | Media (5) | 1.3% | — | Software602 602pro LAN Suite | 18/6/2001 | 16/6/2026 | Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service via an HTTP GET HTTP request to the aux directory, and possibly other directories with legacy DOS device names. | |
| Modificada | Alta (7.5) | 2.4% | — | Software602 602pro LAN Suite | 9/1/2001 | 16/6/2026 | Buffer overflow in remote web administration component (webprox.dll) of 602Pro LAN SUITE before 2000.0.1.33 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request. |