Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2623▼ 237 respecto a la semana anterior
Críticas / altas1384▲ 151 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 2.2% | — | Mbedthis Software Mbedthis Appweb Http Server | 4/6/2007 | 16/6/2026 | Format string vulnerability in the MprLogToFile::logEvent function in Mbedthis AppWeb 2.0.5-4, when the build supports logging but the configuration disables logging, allows remote attackers to cause a denial of service (daemon crash) via format string specifiers in the HTTP scheme, as demonstrated by a "GET… | |
| Modificada | Media (4.3) | 1.5% | — | Mbedthis Software Mbedthis Appweb Http Server | 4/6/2007 | 16/6/2026 | Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has unspecified impact probably related to remote information leaks and cross-site tracing (XST) attacks, a related issue to CVE-2004-2320 and CVE-2005-3398. | |
| Modificada | Media (5) | 1.2% | — | Mbedthis Software Mbedthis Appweb Http Server | 31/12/2004 | 16/6/2026 | Information leak in Mbedthis AppWeb HTTP server 1.0 through 1.1.2 allows remote attackers to obtain sensitive information via a user message that is generated when Mbedthis denies access. | |
| Modificada | Crítica (9.8) | 2.7% | — | Mbedthis Appweb Http Server | 31/12/2004 | 16/6/2026 | Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to bypass access restrictions via a URI with mixed case characters. | |
| Modificada | Media (5) | 1.7% | — | Mbedthis Software Mbedthis Appweb Http Server | 31/12/2004 | 16/6/2026 | Mbedthis AppWeb HTTP server before 1.0.2 allows remote attackers to cause a denial of service (crash) via an empty OPTIONS request. | |
| Modificada | Media (5) | 1.4% | — | Mbedthis Software Mbedthis Appweb Http Server | 31/12/2004 | 16/6/2026 | Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to obtain the source code for scripts via a (1) trailing dot (".") or (2) trailing space in an HTTP request. |