Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.9) | 0.53% | — | Oretnom23 Online Birth Certificate Management System | 17/5/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Online Birth Certificate Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin. The manipulation leads to files or directories accessible. The attack can be initiated remotely. The exploit has been disclosed to… | |
| Modificada | Media (4.3) | 0.43% | — | Oretnom23 Online Birth Certificate Management System | 14/10/2022 | 17/6/2026 | Online Birth Certificate Management System version 1.0 suffers from an Insecure Direct Object Reference (IDOR) vulnerability | |
| Modificada | Media (6.1) | 0.39% | — | Oretnom23 Online Birth Certificate Management System | 14/10/2022 | 17/6/2026 | Online Birth Certificate Management System version 1.0 suffers from a Cross Site Scripting (XSS) Vulnerability. | |
| Modificada | Alta (8.8) | 0.36% | — | Oretnom23 Online Birth Certificate Management System | 14/10/2022 | 17/6/2026 | Online Birth Certificate Management System version 1.0 is vulnerable to Cross Site Request Forgery (CSRF). | |
| Modificada | Media (5.4) | 0.35% | — | Oretnom23 Online Birth Certificate Management System | 14/10/2022 | 17/6/2026 | Online Birth Certificate Management System version 1.0 suffers from a persistent Cross Site Scripting (XSS) vulnerability. | |
| Modificada | Alta (7.5) | 1.1% | — | Netscape Certificate Management System | 7/7/2008 | 16/6/2026 | Red Hat PKI Common Framework (rhpki-common) in Red Hat Certificate System (aka Certificate Server or RHCS) 7.1 through 7.3, and Netscape Certificate Management System 6.x, does not recognize Certificate Authority profile constraints on Extensions, which might allow remote attackers to bypass intended restrictions and… | |
| Modificada | Media (5) | 6.0% | 💥 Exploit | Netscape Directory ServerSUN Iplanet Certificate Management System | 11/12/2000 | 16/6/2026 | Directory traversal vulnerability in iPlanet Certificate Management System 4.2 and Directory Server 4.12 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the Agent, End Entity, or Administrator services. | |
| Modificada | Alta (10) | 1.6% | — | Netscape Directory ServerSUN Iplanet Certificate Management System | 11/12/2000 | 16/6/2026 | Netscape (iPlanet) Certificate Management System 4.2 and Directory Server 4.12 stores the administrative password in plaintext, which could allow local and possibly remote attackers to gain administrative privileges on the server. |