Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2841▼ 157 respecto a la semana anterior
Críticas / altas1370▲ 51 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 258 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 3.3% | — | RetrospectRetrospect Client | 21/9/2015 | 17/6/2026 | Retrospect and Retrospect Client before 10.0.2.119 on Windows, before 12.0.2.116 on OS X, and before 10.0.2.104 on Linux improperly generate password hashes, which makes it easier for remote attackers to bypass authentication and obtain access to backup files by leveraging a collision. | |
| Modificada | Media (5) | 2.7% | — | EMC Dantz Retrospect Backup Client | 24/7/2008 | 16/6/2026 | retroclient.exe in EMC Dantz Retrospect Backup Client 7.5.116 allows remote attackers to cause a denial of service (daemon crash) via malformed packets to TCP port 497, which trigger a NULL pointer dereference. | |
| Modificada | Alta (7.5) | 5.2% | — | Storcentric Retrospect Backup Client | 24/7/2008 | 16/6/2026 | EMC Dantz Retrospect Backup Client 7.5.116 sends the password hash in cleartext at an unspecified point, which allows remote attackers to obtain sensitive information via a crafted packet. | |
| Modificada | Media (5) | 2.2% | — | EMC Dantz Retrospect Backup Server | 24/7/2008 | 16/6/2026 | The Server Authentication Module in EMC Dantz Retrospect Backup Server 7.5.508 uses a "weak hash algorithm," which makes it easier for context-dependent attackers to recover passwords. | |
| Modificada | Media (5) | 2.6% | — | EMC Dantz Retrospect Backup Client | 24/7/2008 | 16/6/2026 | retroclient.exe in EMC Dantz Retrospect Backup Client 7.5.116 allows remote attackers to cause a denial of service (daemon crash) via a series of long packets containing 0x00 characters to TCP port 497 that trigger memory corruption, probably involving an English product version on a Chinese OS version. | |
| Modificada | Alta (7.5) | 8.1% | — | EMC Retrospect Client | 16/5/2006 | 16/6/2026 | Buffer overflow in EMC Retrospect Client 5.1 through 7.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet to port 497. | |
| Modificada | Alta (7.2) | 0.39% | — | EMC Retrospect | 3/5/2006 | 16/6/2026 | EMC Retrospect for Windows 6.5 before 6.5.382, 7.0 before 7.0.344, and 7.5 before 7.5.1.105 does not drop privileges before opening files, which allows local users to execute arbitrary code via the File>Open dialog. | |
| Modificada | Media (4.6) | 0.38% | — | EMC Retrospect | 3/5/2006 | 16/6/2026 | EMC Retrospect for Windows 6.5 before 6.5.382, 7.0 before 7.0.344, and 7.5 before 7.5.1.105 allows local users to execute arbitrary code by replacing the Retrospect.exe file, possibly due to improper file permissions. | |
| Modificada | Media (5) | 1.8% | — | EMC Dantz Retrospect | 3/3/2006 | 16/6/2026 | EMC Dantz Retrospect 7 backup client 7.0.107, and other versions before 7.0.109, and 6.5 before 6.5.138 allows remote attackers to cause a denial of service (client termination and loss of backup service) via a malformed packet to TCP port 497, which triggers an assert error. | |
| Modificada | Alta (7.2) | 0.34% | — | Dantz Retrospect Client | 7/8/2003 | 16/6/2026 | The installation of Dantz Retrospect Client 5.0.540 on MacOS X 10.2.6, and possibly other versions, creates critical directories and files with world-writable permissions, which allows local users to gain privileges as other users by replacing programs with malicious code. |