Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2507▼ 423 respecto a la semana anterior
Críticas / altas1283▲ 4 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.8) | 1.1% | — | Openeuler Gala-gopherAI | 25/3/2024 | 17/6/2026 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in openEuler gala-gopher on Linux allows Command Injection. This vulnerability is associated with program files… | |
| Modificada | Media (6.1) | 0.86% | — | Golangtc Gopher | 13/3/2019 | 17/6/2026 | jimmykuu Gopher 2.0 has DOM-based XSS via vectors involving the '<EMBED SRC="data:image/svg+xml' substring. | |
| Modificada | Alta (7.5) | 10% | — | University OF Minnesota Gopher | 2/9/2005 | 16/6/2026 | Multiple stack-based buffer overflows in University of Minnesota gopher client 3.0.9 allow remote malicious servers to execute arbitrary code via (1) a long "+VIEWS:" reply, which is not properly handled in the VIfromLine function, and (2) certain arguments when launching third party programs such as a web browser… | |
| Modificada | Alta (7.2) | 0.52% | — | University OF Minnesota Gopher | 3/8/2005 | 16/6/2026 | gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privileges. | |
| Modificada | Alta (7.5) | 3.0% | — | University OF Minnesota Gopherd | 31/12/2004 | 16/6/2026 | Integer overflow in gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted content of a certain size that triggers the overflow. | |
| Modificada | Alta (7.5) | 2.3% | — | University OF Minnesota Gopherd | 31/12/2004 | 16/6/2026 | Format string vulnerability in the log routine for gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code. | |
| Modificada | Alta (7.5) | 5.0% | — | University OF Minnesota Gopherd | 6/10/2003 | 16/6/2026 | Multiple buffer overflows in UMN gopher daemon (gopherd) 2.x and 3.x before 3.0.6 allows attackers to execute arbitrary code via (1) a long filename as a result of a LIST command, and (2) the GSisText function, which calculates the view-type. | |
| Modificada | Alta (7.5) | 54% | — | Microsoft Internet ExplorerMicrosoft ISA ServerMicrosoft Proxy ServerUniversity OF Minnesota Gopher | 3/7/2002 | 16/6/2026 | Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackers to execute arbitrary code via a gopher:// URL that redirects the user to a real or simulated gopher server that sends a long response. | |
| Modificada | Alta (10) | 13% | — | University OF Minnesota Gopherd | 20/10/2000 | 16/6/2026 | Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (GDESkey) that contains a long ticket value. | |
| Modificada | Alta (10) | 1.8% | — | University OF Minnesota Gopherd | 9/8/1993 | 16/6/2026 | Vulnerabilities in UMN gopher and gopher+ versions 1.12 and 2.0x allow an intruder to read any files that can be accessed by the gopher daemon. |