Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3043▲ 582 respecto a la semana anterior
Críticas / altas1452▲ 283 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)393▲ 186 respecto a la semana anterior
–

9 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)0.86%—Ctan Mathtex24/1/202417/6/2026
An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume CPU resources via crafted string in the application URL.
ModificadaCrítica (9.8)1.3%—Ctan Mathtex24/1/202417/6/2026
Stack Overflow vulnerability in the validate() function in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in the application URL.
ModificadaAlta (7.5)0.83%—Ctan Mathtex24/1/202417/6/2026
Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL.
ModificadaCrítica (9.8)2.5%—Ctan Mathtex24/1/202417/6/2026
Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in application URL.
ModificadaAlta (7.5)0.83%—Ctan Mathtex24/1/202417/6/2026
Buffer Overflow vulnerability in the main() function in Mathtex 1.05 and before allows a remote attacker to cause a denial of service when using \convertpath.
ModificadaCrítica (9.8)1.3%—Ctan Mathtex24/1/202417/6/2026
Buffer Overflow vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via the length of the LaTeX string component.
ModificadaAlta (7.2)0.36%—Forkosh Mathtex14/7/200916/6/2026
mathtex.cgi in mathTeX, when downloaded before 20090713, does not securely create temporary files, which has unspecified impact and local attack vectors.
ModificadaAlta (10)2.7%—Forkosh Mathtex14/7/200916/6/2026
Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.
ModificadaAlta (7.5)2.2%—Forkosh Mathtex14/7/200916/6/2026
The getdirective function in mathtex.cgi in mathTeX, when downloaded before 20090713, allows remote attackers to execute arbitrary commands via shell metacharacters in the dpi tag.