Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2683▼ 54 respecto a la semana anterior
Críticas / altas1442▲ 305 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
50 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.9) | 0.84% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the external engine plugin loader concatenates a user-supplied engine name into a filesystem path without filtering path separators or .. components. An authenticated user with CREATE FUNCTION privileges can… | |
| Analizada | Alta (7.5) | 0.69% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the sdl_desc() function does not validate the length of a decoded SDL descriptor from a slice packet. A zero-length descriptor is later used to calculate the number of slice items, causing a division by… | |
| Analizada | Alta (7.5) | 0.69% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the xdr_status_vector() function does not handle the isc_arg_cstring type when decoding an op_response packet, causing a server crash when one is encountered in the status vector. An unauthenticated attacker… | |
| Analizada | Alta (7.5) | 0.81% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when deserializing a slice packet, the xdr_datum() function does not validate that a cstring length conforms to the slice descriptor bounds, allowing a cstring longer than the allocated buffer to overflow… | |
| Analizada | Alta (8.2) | 0.72% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when the server receives an op_crypt_key_callback packet without prior authentication, the port_server_crypt_callback handler is not initialized, resulting in a null pointer dereference and server crash. An… | |
| Analizada | Media (6) | 0.59% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, the ClumpletReader::getClumpletSize() function can overflow the totalLength value when parsing a Wide type clumplet, causing an infinite loop. An authenticated user with INSERT privileges on any table can… | |
| Analizada | Alta (7.5) | 0.75% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 6.0.0, 5.0.4, 4.0.7 and 3.0.14, when processing an op_slice network packet, the server passes an unprepared structure containing a null pointer to the SDL_info() function, resulting in a null pointer dereference and server crash. An… | |
| Analizada | Alta (8.2) | 0.72% | — | Firebirdsql Firebird | 17/4/2026 | 17/6/2026 | Firebird is an open-source relational database management system. In versions prior to 5.0.4, 4.0.7 and 3.0.14, when processing CNCT_specific_data segments during authentication, the server assumes segments arrive in strictly ascending order. If segments arrive out of order, the Array class's grow() method computes a… | |
| Analizada | Alta (7.5) | 0.18% | — | Firebirdsql Firebird | 17/4/2026 | 30/9/2026 | Firebird is an open-source relational database management system. In versions FB3 of the client library placed incorrect data length values into XSQLDA fields when communicating with FB4 or higher servers, resulting in an information leak. This issue is fixed by upgrading to the FB4 client or higher. | |
| Modificada | Alta (7.5) | 0.58% | — | Firebirdsql Firebird | 15/8/2025 | 17/6/2026 | Firebird is a relational database. Prior to versions 3.0.13, 4.0.6, and 5.0.3, there is an XDR message parsing NULL pointer dereference denial-of-service vulnerability in Firebird. This specific flaw exists within the parsing of xdr message from client. It leads to NULL pointer dereference and DoS. This issue has been… | |
| Analizada | Alta (8.8) | 0.52% | — | Firebirdsql Firebird | 15/8/2025 | 17/6/2026 | Firebird is a relational database. Prior to snapshot versions 4.0.6.3183, 5.0.2.1610, and 6.0.0.609, Firebird is vulnerable if ExtConnPoolSize is not set equal to 0. If connections stored in ExtConnPool are not verified for presence and suitability of the CryptCallback interface is used when created versus what is… | |
| Aplazada | Alta (7.8) | 0.19% | — | FirebirdAIElefantcms ElefantAI | 8/11/2024 | 17/6/2026 | Attackers with local access to the medical office computer can escalate their Windows user privileges to "NT AUTHORITY\SYSTEM" by overwriting one of two Elefant service binaries with weak permissions. The default installation directory of Elefant is "C:\Elefant1" which is writable for all users. In addition, the… | |
| Aplazada | Crítica (9.8) | 0.70% | — | FirebirdAIElefantcms ElefantAI | 8/11/2024 | 17/6/2026 | An unauthenticated attacker with access to the local network of the medical office can use known default credentials to gain remote DBA access to the Elefant Firebird database. The data in the database includes patient data and login credentials among other sensitive data. In addition, this enables an attacker to… | |
| Analizada | Alta (7.5) | 0.66% | — | Firebirdsql Firebird | 20/3/2024 | 17/6/2026 | Firebird is a relational database. Versions 4.0.0 through 4.0.3 and version 5.0 beta1 are vulnerable to a server crash when a user uses a specific form of SET BIND statement. Any non-privileged user with minimum access to a server may type a statement with a long `CHAR` length, which causes the server to crash due to… | |
| Modificada | Alta (8.8) | 6.2% | — | Firebirdsql FirebirdDebian Linux | 28/3/2018 | 17/6/2026 | An authenticated remote attacker can execute arbitrary code in Firebird SQL Server versions 2.5.7 and 3.0.2 by executing a malformed SQL statement. | |
| Analizada | Alta (8.8) | 3.3% | — | Firebirdsql Firebird | 24/3/2017 | 17/6/2026 | Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticated users to execute code by using a 'system' entrypoint from fbudf.so. | |
| Modificada | Media (6.5) | 2.3% | — | Firebirdsql Firebird | 13/1/2016 | 17/6/2026 | FireBird 2.5.5 allows remote authenticated users to cause a denial of service (daemon crash) by using service manager to invoke the gbak utility with an invalid parameter. | |
| Modificada | Alta (10) | 4.2% | — | Debian LinuxDebian Dbd-firebird | 14/4/2015 | 17/6/2026 | Multiple stack-based buffer overflows in the ib_fill_isqlda function in dbdimp.c in DBD-Firebird before 1.19 allow remote attackers to have unspecified impact via unknown vectors that trigger an error condition, related to binding octets to columns. | |
| Modificada | Media (5) | 2.9% | — | Firebirdsql FirebirdOpensuse EvergreenDebian LinuxCanonical Ubuntu Linux | 16/12/2014 | 17/6/2026 | The xdr_status_vector function in Firebird before 2.1.7 and 2.5.x before 2.5.3 SU1 allows remote attackers to cause a denial of service (NULL pointer dereference, segmentation fault, and crash) via an op_response action with a non-empty status. | |
| Modificada | Media (6.8) | 42% | — | Firebirdsql Firebird | 15/3/2013 | 16/6/2026 | Stack-based buffer overflow in Firebird 2.1.3 through 2.1.5 before 18514, and 2.5.1 through 2.5.3 before 26623, on Windows allows remote attackers to execute arbitrary code via a crafted packet to TCP port 3050, related to a missing size check during extraction of a group number from CNCT information. | |
| Modificada | Baja (3.5) | 1.8% | — | Firebirdsql Firebird | 20/11/2012 | 16/6/2026 | TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) by preparing an empty dynamic SQL query. | |
| Analizada | Media (5) | 8.6% | — | Firebirdsql Firebird | 29/7/2009 | 16/6/2026 | src/remote/server.cpp in fbserver.exe in Firebird SQL 1.5 before 1.5.6, 2.0 before 2.0.6, 2.1 before 2.1.3, and 2.5 before 2.5 Beta 2 allows remote attackers to cause a denial of service (daemon crash) via a malformed op_connect_request message that triggers an infinite loop or NULL pointer dereference. | |
| Modificada | Media (5) | 2.1% | — | Firebird | 12/5/2008 | 16/6/2026 | The default configuration of Firebird before 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD environment variable before starting Firebird, which allows remote attackers to bypass SYSDBA authentication and obtain sensitive database information via an empty password. | |
| Modificada | Alta (7.8) | 46% | — | Firebirdsql Firebird | 29/1/2008 | 16/6/2026 | Integer overflow in Firebird SQL 1.0.3 and earlier, 1.5.x before 1.5.6, 2.0.x before 2.0.4, and 2.1.x before 2.1.0 RC1 might allow remote attackers to execute arbitrary code via crafted (1) op_receive, (2) op_start, (3) op_start_and_receive, (4) op_send, (5) op_start_and_send, and (6) op_start_send_and_receive XDR… | |
| Modificada | Alta (10) | 6.4% | — | Firebirdsql Firebird | 29/1/2008 | 16/6/2026 | Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username. |