Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2693▼ 77 respecto a la semana anterior
Críticas / altas1446▲ 303 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 10% | — | Omnicron OmnihttpdAI | 31/12/2004 | 16/6/2026 | Buffer overflow in Omnicron OmniHTTPd 3.0a and earlier allows remote attackers to execute arbitrary code via an HTTP GET request with a long Range header. | |
| Modificada | Media (4.3) | 3.9% | — | Omnicron Omnihttpd | 9/6/2003 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in OmniHTTPd allow remote attackers to insert script or HTML into web pages via (1) test.php, (2) test.shtml, or (3) redir.exe. | |
| Modificada | Media (5) | 1.6% | — | Omnicron Omnihttpd | 4/10/2002 | 16/6/2026 | Omnicron OmniHTTPd 2.09 allows remote attackers to cause a denial of service (crash) via an HTTP request with a long, malformed HTTP 1version number. | |
| Modificada | Media (5) | 1.7% | — | Omnicron Omnihttpd | 18/10/2001 | 16/6/2026 | Omnicron OmniHTTPd 2.0.8 allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests for PHP scripts. | |
| Modificada | Media (5) | 6.3% | — | Omnicron Omnihttpd | 18/10/2001 | 16/6/2026 | OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20). | |
| Modificada | Media (5) | 1.7% | — | Omnicron Omnihttpd | 22/8/2001 | 16/6/2026 | Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request. | |
| Modificada | Alta (10) | 10% | — | Omnicron Omnihttpd | 12/3/2001 | 16/6/2026 | statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script. | |
| Modificada | Media (5) | 2.2% | — | Omnicron Omnihttpd | 12/3/2001 | 16/6/2026 | statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter. | |
| Modificada | Alta (10) | 10.0% | — | Omnicron Omnihttpd | 22/10/1999 | 16/6/2026 | Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands. | |
| Modificada | Media (5) | 3.2% | — | Omnicron Omnihttpd | 5/6/1999 | 16/6/2026 | The OmniHTTPD visadmin.exe program allows a remote attacker to conduct a denial of service via a malformed URL which causes a large number of temporary files to be created. |