Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2680▼ 660 respecto a la semana anterior
Críticas / altas1277▼ 279 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)228▼ 274 respecto a la semana anterior
11 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 0.76% | — | Microfocus Cobol ServerMicrofocus Enterprise DeveloperMicrofocus Enterprise ServerMicrofocus Enterprise Test Server+1 | 12/9/2023 | 4/8/2026 | User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), versions 7.0 patch updates 19 and 20, 8.0 patch updates 8 and 9, and 9.0 patch update… | |
| Modificada | Media (6.5) | 0.45% | — | Microfocus Cobol ServerMicrofocus Enterprise DeveloperMicrofocus Enterprise ServerMicrofocus Enterprise Test Server+1 | 20/7/2023 | 17/6/2026 | A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) component used in Enterprise Server, Enterprise Test Server, Enterprise Developer, Visual COBOL, and COBOL Server. An attacker would need to be authenticated into ESCWA to attempt to exploit this… | |
| Modificada | Alta (7.8) | 1.1% | — | Gnucobol Project Gnucobol | 17/9/2019 | 17/6/2026 | GnuCOBOL 2.2 has a use-after-free in the end_scope_of_program_name() function in cobc/parser.y via crafted COBOL source code. | |
| Modificada | Alta (7.8) | 0.98% | — | Gnucobol Project Gnucobol | 17/9/2019 | 17/6/2026 | GnuCOBOL 2.2 has a stack-based buffer overflow in the cb_name() function in cobc/tree.c via crafted COBOL source code. | |
| Modificada | Alta (7.8) | 1.1% | — | Gnucobol Project Gnucobol | 2/8/2019 | 17/6/2026 | GnuCOBOL 2.2 has a stack-based buffer overflow in cb_encode_program_id in cobc/typeck.c via crafted COBOL source code. | |
| Modificada | Alta (7.8) | 0.97% | — | Gnucobol Project Gnucobol | 2/8/2019 | 17/6/2026 | GnuCOBOL 2.2 has a heap-based buffer overflow in read_literal in cobc/scanner.l via crafted COBOL source code. | |
| Modificada | Alta (7.8) | 0.97% | — | Gnucobol Project Gnucobol | 1/8/2019 | 17/6/2026 | GnuCOBOL 2.2 has a buffer overflow in cb_evaluate_expr in cobc/field.c via crafted COBOL source code. | |
| Modificada | Alta (7.8) | 1.0% | — | Gnucobol Project Gnucobol | 1/8/2019 | 17/6/2026 | GnuCOBOL 2.2 has a buffer overflow in cb_push_op in cobc/field.c via crafted COBOL source code. | |
| Modificada | Alta (10) | 3.5% | — | Hitachi Cobol GUI OptionHitachi Cobol GUI Option Server | 13/8/2012 | 16/6/2026 | Unspecified vulnerability in Hitachi Cobol GUI Option 06-00, 06-01 through 06-01-/A, 07-00, 07-01 before 07-01-/B, and 08-00 before 08-00-/B and Cobol GUI Option Server 07-00, 07-01 before 07-01-/B, and 08-00 before 08-00-/B allows remote attackers to execute arbitrary code via unknown attack vectors. | |
| Modificada | Alta (10) | 4.1% | — | Hitachi Cobol2002 NET DeveloperHitachi Cobol2002 NET Server SuiteHitachi Cobol2002 NET Client Suite | 24/1/2012 | 16/6/2026 | Unspecified vulnerability in Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite 01-00, 01-01 through 01-01-/D, 01-02 through 01-02-/F, 01-03 through 01-03-/F, 02-00 through 02-00-/D, 02-01 through 02-01-/C, and possibly other versions before 02-01-/D allows remote attackers to execute arbitrary… | |
| Modificada | Media (4.6) | 0.70% | 💥 Exploit | Microfocus Cobol | 2/6/2001 | 16/6/2026 | MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with insecure permissions, which allows local users to gain privileges by modifying files. |