Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3006▼ 69 respecto a la semana anterior
Críticas / altas1420▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.8) | 1.8% | — | Knusperleicht Shoutbox | 23/12/2006 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in shout.php in Knusperleicht ShoutBox 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) sbNick or (2) sbKommentar parameter. | |
| Modificada | Alta (7.5) | 2.6% | — | Knusperleicht Guestbook | 7/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in index.php in Knusperleicht Guestbook 3.5 allows remote attackers to execute arbitrary PHP code via a URL in the GB_PATH parameter. | |
| Modificada | Alta (7.5) | 2.6% | — | Knusperleicht FAQ | 7/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in index.php in Knusperleicht Faq 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the faq_path parameter. | |
| Modificada | Alta (7.5) | 3.4% | — | Knusperleicht Newsletter | 5/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in index.php in Knusperleicht Newsletter 3.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the NL_PATH parameter. | |
| Modificada | Media (5.1) | 3.2% | — | Knusperleicht Newsreporter | 5/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in index.php in Knusperleicht newsReporter 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the news_include_path parameter. | |
| Modificada | Media (5.1) | 3.4% | — | Knusperleicht Shoutbox | 5/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in index.php in Knusperleicht Shoutbox 4.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sb_include_path parameter. | |
| Modificada | Alta (7.5) | 2.6% | — | Knusperleicht Quickie | 5/8/2006 | 16/6/2026 | PHP remote file inclusion vulnerability in quickie.php in Knusperleicht Quickie, probably 0.2, allows remote attackers to execute arbitrary PHP code via a URL in the QUICK_PATH parameter. | |
| Modificada | Media (5.1) | 3.2% | — | Knusperleicht Filemanager | 5/8/2006 | 16/6/2026 | Multiple PHP remote file inclusion vulnerabilities in index.php in Knusperleicht FileManager 1.2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) dwl_download_path or (2) dwl_include_path parameters. | |
| Modificada | Alta (7.5) | 1.6% | — | Knusperleicht Shoutbox Script | 2/5/2005 | 16/6/2026 | Shoutbox SCRIPT 3.0.2 and earlier allows remote attackers to obtain sensitive information via a direct request to db/settings.dat, which displays usernames and password hashes. |