Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 56% | — | Atrium Software Mercur ImapdAtrium Software Mercur Messaging 2005 | 21/3/2007 | 16/6/2026 | Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command. | |
| Modificada | Alta (7.8) | 2.0% | — | Atrium Software Mercur Messaging 2005 | 23/2/2007 | 16/6/2026 | Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name service queries that are not properly handled by the SMTP service. | |
| Modificada | Media (5) | 1.5% | — | Atrium Software Mercur Messaging 2005 | 23/2/2007 | 16/6/2026 | The IMAP4 service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a message with a long subject field. | |
| Modificada | Alta (7.8) | 1.8% | — | Atrium Software Mercur Messaging 2005 | 23/2/2007 | 16/6/2026 | The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (infinite loop) via a message in which neither the originator nor recipient address is known. | |
| Modificada | Alta (7.8) | 1.8% | — | Atrium Software Mercur Messaging 2005 | 23/2/2007 | 16/6/2026 | Unspecified vulnerability in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a TOP command to the POP3 service. | |
| Modificada | Alta (10) | 69% | — | Mercur Messaging | 19/3/2006 | 16/6/2026 | Stack-based buffer overflow in the IMAP service in Mercur Messaging 5.0 SP3 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string to the (1) LOGIN or (2) SELECT command, a different set of attack vectors and possibly a different… | |
| Modificada | Alta (7.5) | 1.9% | — | Mercur Messaging | 18/5/2005 | 16/6/2026 | Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) deletemessage.ctml, (3) origmessage.ctml, or (4) readmessage.ctml, the Message.Id parameter to editmessage.ctml, or the (5)… | |
| Modificada | Media (5) | 1.3% | — | Mercur Messaging | 18/5/2005 | 16/6/2026 | Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20"). |