Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3043▲ 582 respecto a la semana anterior
Críticas / altas1452▲ 283 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.86% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume CPU resources via crafted string in the application URL. | |
| Modificada | Crítica (9.8) | 1.3% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | Stack Overflow vulnerability in the validate() function in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in the application URL. | |
| Modificada | Alta (7.5) | 0.83% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL. | |
| Modificada | Crítica (9.8) | 2.5% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in application URL. | |
| Modificada | Alta (7.5) | 0.83% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | Buffer Overflow vulnerability in the main() function in Mathtex 1.05 and before allows a remote attacker to cause a denial of service when using \convertpath. | |
| Modificada | Crítica (9.8) | 1.3% | — | Ctan Mathtex | 24/1/2024 | 17/6/2026 | Buffer Overflow vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via the length of the LaTeX string component. | |
| Modificada | Alta (7.2) | 0.36% | — | Forkosh Mathtex | 14/7/2009 | 16/6/2026 | mathtex.cgi in mathTeX, when downloaded before 20090713, does not securely create temporary files, which has unspecified impact and local attack vectors. | |
| Modificada | Alta (10) | 2.7% | — | Forkosh Mathtex | 14/7/2009 | 16/6/2026 | Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors. | |
| Modificada | Alta (7.5) | 2.2% | — | Forkosh Mathtex | 14/7/2009 | 16/6/2026 | The getdirective function in mathtex.cgi in mathTeX, when downloaded before 20090713, allows remote attackers to execute arbitrary commands via shell metacharacters in the dpi tag. |