Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2811▼ 223 respecto a la semana anterior
Críticas / altas1356▲ 20 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)267▼ 257 respecto a la semana anterior
–

95 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.3)0.20%—Exim19/9/202624/9/2026
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.
AnalizadaAlta (7.5)0.24%—Exim19/9/202624/9/2026
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
AnalizadaMedia (5.3)0.29%—Exim19/9/202624/9/2026
Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.
AnalizadaMedia (5.3)0.27%—Exim19/9/202624/9/2026
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, has an out-of-bounds write.
AnalizadaAlta (7.8)0.14%—Exim24/7/202617/8/2026
Exim before 4.99.5 allows .forward privilege escalation because force_command for a pipe transport is mishandled.
AnalizadaAlta (7.8)0.39%—Exim24/7/202617/8/2026
Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.
ModificadaMedia (5.3)0.44%—Exim30/5/202622/7/2026
Exim 4.88 before 4.99.4, in some proxy configurations, mishandles certain short payloads, leading to disclosure of uninitialized stack memory values to a client.
AnalizadaCrítica (9.8)0.94%—Exim12/5/202617/6/2026
Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing path. It is triggered when a client sends a TLS close_notify mid-body during a CHUNKING transfer, followed by a final cleartext byte on the same TCP connection. This can lead to heap corruption. An…
AnalizadaCrítica (9.1)0.67%—Exim30/4/202617/6/2026
In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource, there can be an out-of-bounds write that crashes the connection instance, or erroneous data processing that divulges data from uninitialized heap memory.
AnalizadaMedia (5.3)0.40%—Exim30/4/202617/6/2026
In Exim before 4.99.2, when utf8 operators are enabled, there is an out-of-bounds read if large UTF-8 trailing characters are present (malformed UTF-8 header data). Information might be divulged within an error message produced during handling of an unrelated e-mail message.
AnalizadaCrítica (9.8)0.57%—Exim30/4/202617/6/2026
In Exim before 4.99.2, when JSON lookup is enabled, an out-of-bounds heap write can occur when a JSON operator encounters malformed JSON in an untrusted header, because of an incorrect implementation of \ skipping.
ModificadaAlta (7.5)0.61%—Exim30/4/202617/6/2026
In Exim before 4.99.2, on systems using musl libc (not glibc), an attacker can crash the connection instance when malformed DNS data is present in PTR records. This is caused by a dn_expand oddity in octal printing.
AnalizadaCrítica (9.8)0.47%—Exim14/12/202517/6/2026
Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow because database records are cast directly to internal structures without validation.
AnalizadaMedia (5.4)0.24%—Chinasystems Eximbills Enterprise1/12/202517/6/2026
Eximbills Enterprise 4.1.5 (Built on 2020-10-30) is vulnerable to authenticated stored cross-site scripting (CWE-79) via the /EximBillWeb/servlets/WSTrxManager endpoint. Unsanitized user input in the TMPL_INFO parameter is stored server-side and rendered to other users, enabling arbitrary JavaScript execution in their…
AplazadaMedia (6.9)0.17%—EximAI2/10/202517/6/2026
A UNIX Symbolic Link (Symlink) Following vulnerability in logrotate config in the exim package allowed privilege escalation from mail user/group to root.This issue affects Tumbleweed: from ? before 4.98.2-lp156.248.1.
AplazadaAlta (8.1)0.54%—Unfoldwp Eximious-magazineAI28/8/202517/6/2026
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in unfoldwp Magazine eximious-magazine allows PHP Local File Inclusion.This issue affects Magazine: from n/a through <= 1.2.2.
AplazadaCrítica (9.9)0.51%—Dkszone EximiusAI19/5/202517/6/2026
Unrestricted Upload of File with Dangerous Type vulnerability in dkszone Eximius allows Using Malicious Files.This issue affects Eximius: from n/a through 2.2.
AnalizadaMedia (6.1)0.17%—Bulktheme Wooexim15/5/202517/6/2026
The WOOEXIM WordPress plugin through 5.0.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make an unauthenticated user vulnerable to reflected XSS via a CSRF attack.
AnalizadaAlta (7.8)0.52%—Exim28/3/202517/6/2026
A use-after-free in Exim 4.96 through 4.98.1 could allow users (with command-line access) to escalate privileges.
ModificadaCrítica (9.8)78%—Exim21/2/202517/6/2026
Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection. (Resolving SQL injection requires an update to 4.99.1 in certain non-default rate-limit configurations.)
AplazadaAlta (8.8)0.68%—Bulktheme WooeximAI22/1/202517/6/2026
Deserialization of Untrusted Data vulnerability in bulktheme WOOEXIM wooexim allows Object Injection.This issue affects WOOEXIM: from n/a through <= 5.0.0.
AplazadaAlta (7.6)0.58%—Bulktheme WooeximAI7/1/202517/6/2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bulktheme WOOEXIM wooexim allows SQL Injection.This issue affects WOOEXIM: from n/a through <= 5.0.0.
AnalizadaMedia (5.4)0.14%—Intel License Manager FOR Flexim14/8/202417/6/2026
Uncontrolled search path for some Intel(R) License Manager for FLEXlm product software before version 11.19.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
AnalizadaMedia (5.4)41%—Exim4/7/202417/6/2026
Exim through 4.97.1 misparses a multiline RFC 2231 header filename, and thus remote attackers can bypass a $mime_filename extension-blocking protection mechanism, and potentially deliver executable attachments to the mailboxes of end users.
ModificadaBaja (3.1)1.6%—Exim3/5/202417/6/2026
Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on…