Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2553▼ 349 respecto a la semana anterior
Críticas / altas1314▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)76▼ 451 respecto a la semana anterior
–

9 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (5.4)0.15%—Nertworks ALL IN ONE Social Share ToolsAI28/3/202517/6/2026
Cross-Site Request Forgery (CSRF) vulnerability in nertworks NertWorks All in One Social Share Tools nertworks-all-in-one-social-share-tools allows Cross Site Request Forgery.This issue affects NertWorks All in One Social Share Tools: from n/a through <= 1.26.
ModificadaAlta (8.8)12%—Artworks Gallery IN Php, Css, Javascript, AND Mysql Project Artworks Gallery IN Php, Css, Javascript, AND Mysql17/11/202017/6/2026
The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.
ModificadaAlta (8.8)12%—Artworks Gallery IN Php, Css, Javascript, AND Mysql Project Artworks Gallery IN Php, Css, Javascript, AND Mysql17/11/202017/6/2026
The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.
ModificadaAlta (7.5)2.6%—Hornbill Supportworks Itsm21/1/201416/6/2026
SQL injection vulnerability in reports/calldiary.php in Hornbill Supportworks ITSM 1.0.0 through 3.4.14 allows remote attackers to execute arbitrary SQL commands via the callref parameter.
ModificadaAlta (10)6.4%—Tibco Enterprise Message ServiceTibco RtworksTibco SmartsocketsTibco Smartsockets Rtserver30/4/200916/6/2026
Stack-based buffer overflow in TIBCO SmartSockets before 6.8.2, SmartSockets Product Family (aka RTworks) before 4.0.5, and Enterprise Message Service (EMS) 4.0.0 through 5.1.1, as used in SmartSockets Server and RTworks Server (aka RTserver), SmartSockets client libraries and add-on products, RTworks libraries and…
ModificadaAlta (10)5.5%—Tibco RtworksTibco Smartsockets RtserverTibco Enterprise Message Service16/1/200816/6/2026
TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to execute arbitrary code via crafted requests containing values that are used as pointer offsets.
ModificadaAlta (10)5.5%—Tibco RtworksTibco Smartsockets RtserverTibco Enterprise Message Service16/1/200816/6/2026
TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to execute arbitrary code via crafted requests containing values that are used as pointers.
ModificadaAlta (10)6.4%—Tibco Enterprise Message ServiceTibco RtworksTibco Smartsockets Rtserver16/1/200816/6/2026
Heap-based buffer overflow in TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to execute arbitrary code via crafted requests containing size and copy-length values that trigger the overflow.
ModificadaAlta (10)5.4%—Tibco Enterprise Message ServiceTibco RtworksTibco Smartsockets Rtserver16/1/200816/6/2026
TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted requests that control loop operations related to memory.