Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2841▼ 157 respecto a la semana anterior
Críticas / altas1370▲ 51 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 258 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.4)1.4%—Fujitsu Interstage Application Server EnterpriseFujitsu Interstage Application Server PlusFujitsu Interstage Application Server Standard JFujitsu Interstage Application Server Plus Developer+412/6/200816/6/2026
Unspecified vulnerability in the Interstage Management Console, as used in Fujitsu Interstage Application Server 6.0 through 9.0.0A, Apworks Modelers-J 6.0 through 7.0, and Studio 8.0.1 and 9.0.0, allows remote attackers to read or delete arbitrary files via unspecified vectors.
ModificadaMedia (5)1.7%—Fujitsu Interstage Application Server EnterpriseFujitsu Interstage Application Server PlusFujitsu Interstage Application Server Standard JFujitsu Interstage Apworks Enterprise+48/3/200816/6/2026
Multiple unspecified vulnerabilities in Fujitsu Interstage Smart Repository, as used in multiple Fujitsu Interstage products, allow remote attackers to cause a denial of service (daemon crash) via (1) an invalid request or (2) a large amount of data sent to the registered attribute value.
ModificadaAlta (10)4.6%—Fujitsu Interstage Application Server EnterpriseFujitsu Interstage Application Server Standard JFujitsu Interstage Apworks EnterpriseFujitsu Interstage Apworks Standard J+227/2/200816/6/2026
Buffer overflow in the Single Sign-On function in Fujitsu Interstage Application Server 8.0.0 through 8.0.3 and 9.0.0, Interstage Studio 8.0.1 and 9.0.0, and Interstage Apworks 8.0.0 allows remote attackers to execute arbitrary code via a long URI.
ModificadaMedia (5)2.2%—Fujitsu Interstage Application ServerFujitsu Interstage ApworksFujitsu Interstage Studio11/10/200716/6/2026
The Tomcat 4.1-based Servlet Service in Fujitsu Interstage Application Server 7.0 through 9.0.0 and Interstage Apworks/Studio 7.0 through 9.0.0 allows remote attackers to obtain sensitive information (web root path) via unspecified vectors that trigger an error message, probably related to enabling the useCanonCaches…
ModificadaMedia (4.3)1.6%—Fujitsu Interstage Application ServerFujitsu Interstage Apworks19/3/200716/6/2026
Cross-site scripting (XSS) vulnerability in the Servlet Service in Fujitsu Interstage Application Server (IJServer) 8.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly involving web.xml and HTTP 404 and 500 status codes.