Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3029▼ 65 respecto a la semana anterior
Críticas / altas1425▲ 60 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
14 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.6) | 0.18% | — | Jetaudio Jetcast ServerAI | 22/3/2026 | 17/6/2026 | JetAudio jetCast Server 2.0 contains a stack-based buffer overflow vulnerability in the Log Directory configuration field that allows local attackers to overwrite structured exception handling pointers. Attackers can inject alphanumeric encoded shellcode through the Log Directory field to trigger an SEH exception… | |
| Aplazada | Media (6.9) | 0.12% | — | JetaudioAI | 22/3/2026 | 17/6/2026 | jetAudio 8.1.7.20702 Basic contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string through the URL input handler. Attackers can trigger the crash by pasting a buffer of 5000 characters into the Open URL dialog, causing the application to… | |
| Analizada | Media (6.8) | 0.20% | — | Jetaudio | 21/3/2026 | 17/6/2026 | jetAudio 8.1.7 contains a buffer overflow vulnerability in the video converter component that allows local attackers to crash the application by supplying an oversized string in the File Naming field. Attackers can paste a malicious buffer of 512 bytes into the File Naming parameter and trigger the crash by clicking… | |
| Analizada | Media (6.9) | 0.18% | — | Jetaudio Lyric Maker | 21/3/2026 | 17/6/2026 | Lyric Maker 2.0.1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Title field. Attackers can paste a 5000-byte buffer into the Title input field and save the file to trigger a denial of service condition. | |
| Modificada | Media (4.3) | 2.3% | — | Jetaudio | 14/5/2014 | 17/6/2026 | JetMPAd.ax in JetAudio 8.1.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted .ogg file. | |
| Modificada | Alta (9.3) | 4.3% | — | Jetaudio | 5/2/2014 | 16/6/2026 | Stack-based buffer overflow in the JetMPG.ax module in jetAudio 8.0.17 allows remote attackers to execute arbitrary code via a crafted MPEG2-TS video file, related to the MPEG2 transport stream. | |
| Modificada | Media (6.9) | 0.35% | — | Jetaudio | 6/9/2012 | 16/6/2026 | Untrusted search path vulnerability in JetAudio 8.0.7.1000 Basic allows local users to gain privileges via a Trojan horse WNASPI32.DLL file in the current working directory, as demonstrated by a directory that contains a .mp3 file. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (9.3) | 4.0% | — | Cowon America Jetaudio | 5/3/2010 | 16/6/2026 | Stack-based buffer overflow in JetCast.exe 2.0.4.1109 in jetAudio 7.5.2 and 7.5.3.15 allows remote attackers to execute arbitrary code via a long title in a FLAC file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |
| Modificada | Alta (9.3) | 5.6% | — | Cowon America Jetaudio | 5/3/2010 | 16/6/2026 | Stack-based buffer overflow in JetCast.exe 2.0.4.1109 in jetAudio 7.5.2 and 7.5.3.15 allows remote attackers to execute arbitrary code via a long ID3 tag in an MP3 file. NOTE: some of these details are obtained from third party information. | |
| Modificada | Media (4.3) | 1.9% | — | Cowonamerica Cowon Media Center-jetaudio | 16/11/2009 | 16/6/2026 | JetAudio 7.5.3 COWON Media Center allows remote attackers to cause a denial of service (memory consumption and application crash) via a long string at the end of a .wav file. | |
| Modificada | Alta (9.3) | 6.9% | — | Cowon America Jetaudio Basic | 13/2/2008 | 16/6/2026 | Stack-based buffer overflow in COWON America jetAudio 7.0.5 and earlier allows user-assisted remote attackers to execute arbitrary code via a long URL in a .asx file, a different vulnerability than CVE-2007-5487. | |
| Modificada | Alta (9.3) | 5.8% | — | Cowon America Jetaudio | 16/10/2007 | 16/6/2026 | Stack-based buffer overflow in COWON America jetAudio Basic 7.0.3 allows user-assisted remote attackers to execute arbitrary code via a long URL in an EXTM3U section of a .m3u file. | |
| Modificada | Alta (10) | 47% | — | Cowon America Jetaudio | 19/9/2007 | 16/6/2026 | Directory traversal vulnerability in the JetAudio.Interface.1 ActiveX control in JetFlExt.dll in jetAudio 7.0.3 Basic and 7.0.3.3016 allows remote attackers to create or overwrite arbitrary local files via a ..\ (dot dot backslash) in the second argument to the DownloadFromMusicStore method. NOTE: some of these… | |
| Modificada | Media (5.1) | 2.1% | — | Cowon America Jetaudio | 5/7/2006 | 23/9/2026 | Buffer overflow in jetAudio 6.2.6.8330 (Basic), and possibly other versions, allows user-assisted attackers to execute arbitrary code via an audio file (such as WMA) with long ID Tag values including (1) Title, (2) Author, and (3) Album, which triggers the overflow in the tooltip display string if the sound card… |