Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3043▲ 582 respecto a la semana anterior
Críticas / altas1452▲ 283 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
17 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.59% | — | Nvidia Delegated License Service | 24/2/2026 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker could exploit an improper authentication issue. A successful exploit of this vulnerability might lead to information disclosure. | |
| Aplazada | Alta (8.7) | 0.23% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure. | |
| Aplazada | Media (4.6) | 0.22% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a SQL injection vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to partial denial of service (UI component). | |
| Aplazada | Baja (2.4) | 0.13% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure. | |
| Aplazada | Alta (7.6) | 0.25% | — | Nvidia Delegated Licensing ServiceAI | 23/11/2024 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker may cause an unauthorized action. A successful exploit of this vulnerability may lead to partial denial of service and confidential information disclosure. | |
| Modificada | Alta (7.8) | 1.3% | — | Delegate | 15/1/2020 | 17/6/2026 | DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program. | |
| Modificada | Media (6.8) | 7.2% | — | SUN Java System Delegated Administrator | 23/4/2009 | 16/6/2026 | CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the HELP_PAGE parameter. | |
| Modificada | Media (5) | 2.9% | — | Delegate | 27/4/2006 | 16/6/2026 | Multiple unspecified vulnerabilities in DeleGate 9.x before 9.0.6 and 8.x before 8.11.6 allow remote attackers to cause a denial of service via crafted DNS responses messages that cause (1) a buffer over-read or (2) infinite recursion, which can trigger a segmentation fault or invalid memory access, as demonstrated by… | |
| Modificada | Media (5) | 2.7% | — | DelegateETL Delegate | 31/12/2005 | 16/6/2026 | The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop. | |
| Modificada | Alta (7.5) | 2.6% | — | SUN Java Communications Services Delegated Administrator | 7/12/2005 | 16/6/2026 | Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (TLA) default password via unknown vectors, possibly involving configure_toplevel_admin.ldif. | |
| Modificada | Alta (7.5) | 2.4% | — | Delegate | 2/5/2005 | 16/6/2026 | Multiple buffer overflows in DeleGate before 8.11.1 may allow attackers to cause a denial of service or execute arbitrary code, possibly due to "overflows on arrays." | |
| Modificada | Media (5) | 2.8% | — | DelegateDnrdDON Moore MydnsMaradns+11 | 31/12/2004 | 16/6/2026 | Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by… | |
| Modificada | Alta (7.5) | 6.6% | — | Delegate | 6/5/2004 | 16/6/2026 | Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field. | |
| Modificada | Alta (7.5) | 3.2% | — | Delegate | 31/12/2002 | 16/6/2026 | Multiple buffer overflows in DeleGate 7.7.0 through 7.8.1 allow remote attackers to execute arbitrary code, as demonstrated using a long USER command to the POP proxy. | |
| Modificada | Alta (7.5) | 6.7% | — | Delegate | 28/12/2001 | 16/6/2026 | Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error. | |
| Modificada | Alta (7.5) | 11% | — | ETL Delegate | 13/11/1999 | 16/6/2026 | The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands. | |
| Modificada | Media (5) | 0.98% | — | Delegate | 21/7/1999 | 16/6/2026 | Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions. |