Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3043▲ 582 respecto a la semana anterior
Críticas / altas1452▲ 283 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
–

17 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.5)0.59%—Nvidia Delegated License Service24/2/202617/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker could exploit an improper authentication issue. A successful exploit of this vulnerability might lead to information disclosure.
AplazadaAlta (8.7)0.23%—Nvidia Delegated Licensing ServiceAI30/9/202517/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure.
AplazadaMedia (4.6)0.22%—Nvidia Delegated Licensing ServiceAI30/9/202517/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a SQL injection vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to partial denial of service (UI component).
AplazadaBaja (2.4)0.13%—Nvidia Delegated Licensing ServiceAI30/9/202517/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure.
AplazadaAlta (7.6)0.25%—Nvidia Delegated Licensing ServiceAI23/11/202417/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker may cause an unauthorized action. A successful exploit of this vulnerability may lead to partial denial of service and confidential information disclosure.
ModificadaAlta (7.8)1.3%—Delegate15/1/202017/6/2026
DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program.
ModificadaMedia (6.8)7.2%—SUN Java System Delegated Administrator23/4/200916/6/2026
CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the HELP_PAGE parameter.
ModificadaMedia (5)2.9%—Delegate27/4/200616/6/2026
Multiple unspecified vulnerabilities in DeleGate 9.x before 9.0.6 and 8.x before 8.11.6 allow remote attackers to cause a denial of service via crafted DNS responses messages that cause (1) a buffer over-read or (2) infinite recursion, which can trigger a segmentation fault or invalid memory access, as demonstrated by…
ModificadaMedia (5)2.7%—DelegateETL Delegate31/12/200516/6/2026
The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.
ModificadaAlta (7.5)2.6%—SUN Java Communications Services Delegated Administrator7/12/200516/6/2026
Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (TLA) default password via unknown vectors, possibly involving configure_toplevel_admin.ldif.
ModificadaAlta (7.5)2.4%—Delegate2/5/200516/6/2026
Multiple buffer overflows in DeleGate before 8.11.1 may allow attackers to cause a denial of service or execute arbitrary code, possibly due to "overflows on arrays."
ModificadaMedia (5)2.8%—DelegateDnrdDON Moore MydnsMaradns+1131/12/200416/6/2026
Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by…
ModificadaAlta (7.5)6.6%—Delegate6/5/200416/6/2026
Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field.
ModificadaAlta (7.5)3.2%—Delegate31/12/200216/6/2026
Multiple buffer overflows in DeleGate 7.7.0 through 7.8.1 allow remote attackers to execute arbitrary code, as demonstrated using a long USER command to the POP proxy.
ModificadaAlta (7.5)6.7%—Delegate28/12/200116/6/2026
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.
ModificadaAlta (7.5)11%—ETL Delegate13/11/199916/6/2026
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
ModificadaMedia (5)0.98%—Delegate21/7/199916/6/2026
Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.