Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 79% | — | Western Digital Arkeia | 5/10/2015 | 17/6/2026 | The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation. | |
| Modificada | Alta (7.5) | 8.8% | — | Westerndigital Arkeia Virtual Appliance Firmware | 28/4/2014 | 17/6/2026 | Directory traversal vulnerability in opt/arkeia/wui/htdocs/index.php in the WD Arkeia virtual appliance (AVA) with firmware before 10.2.9 allows remote attackers to read arbitrary files and execute arbitrary PHP code via a ..././ (dot dot dot slash dot slash) in the lang Cookie parameter, as demonstrated by a request… | |
| Modificada | Alta (10) | 65% | — | Knox Software Arkeia Server Backup | 2/5/2005 | 16/6/2026 | Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request. | |
| Modificada | Crítica (9.8) | 2.9% | — | Arkeia Network Backup | 21/2/2005 | 16/6/2026 | Arkeia Network Backup Client 5.x contains hard-coded credentials that effectively serve as a back door, which allows remote attackers to access the file system and possibly execute arbitrary commands. | |
| Modificada | Crítica (9.8) | 0.95% | — | Arkeia | 31/8/2001 | 16/6/2026 | Knox Arkeia server 4.2, and possibly other versions, uses a constant salt when encrypting passwords using the crypt() function, which makes it easier for an attacker to conduct brute force password guessing. | |
| Modificada | Alta (10) | 2.2% | — | Knox Software Arkeia | 31/8/2001 | 16/6/2026 | Knox Arkeia server 4.2, and possibly other versions, installs its root user with a null password by default, which allows local and remote users to gain privileges. | |
| Modificada | Alta (7.2) | 0.35% | — | Knox Software Arkeia | 23/7/2001 | 16/6/2026 | Arkeia backup server 4.2.8-2 and earlier creates its database files with world-writable permissions, which could allow local users to overwrite the files or obtain sensitive information. | |
| Modificada | Media (5) | 1.3% | — | Knox Software Arkeia | 26/9/1999 | 16/6/2026 | Arkiea nlservd allows remote attackers to conduct a denial of service. | |
| Modificada | Alta (7.2) | 1.1% | — | Knox Software Arkeia | 23/9/1999 | 16/6/2026 | Buffer overflow in (1) nlservd and (2) rnavc in Knox Software Arkeia backup product allows local users to obtain root access via a long HOME environmental variable. |