Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
–

455 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)15%—Microsoft Windows 7Microsoft Windows Server 2003Microsoft Windows VistaMicrosoft Windows XP20/2/202016/6/2026
The IPv6 implementation in Microsoft Windows 7 and earlier allows remote attackers to cause a denial of service via a flood of ICMPv6 Router Advertisement packets containing multiple Routing entries.
ModificadaAlta (7.5)15%—Microsoft Windows 7Microsoft Windows Server 2003Microsoft Windows VistaMicrosoft Windows XP20/2/202016/6/2026
The IPv6 implementation in Microsoft Windows 7 and earlier allows remote attackers to cause a denial of service via a flood of ICMPv6 Neighbor Solicitation messages, a different vulnerability than CVE-2010-4669.
ModificadaAlta (8.1)46%—Microsoft Windows Server 2003Microsoft Windows XP22/6/201717/6/2026
A buffer overflow in Smart Card authentication code in gpkcsp.dll in Microsoft Windows XP through SP3 and Server 2003 through SP2 allows a remote attacker to execute arbitrary code on the target computer, provided that the computer is joined in a Windows domain and has Remote Desktop Protocol connectivity (or Terminal…
ModificadaAlta (7.8)54%—Microsoft Windows Server 2003Microsoft Windows XP15/6/201717/6/2026
Windows OLE in Windows XP and Windows Server 2003 allows an attacker to execute code when a victim opens a specially crafted file or program aka "Windows olecnv32.dll Remote Code Execution Vulnerability."
ModificadaAlta (7.8)20%—Microsoft Windows Server 2003Microsoft Windows XP15/6/201717/6/2026
Windows RPC with Routing and Remote Access enabled in Windows XP and Windows Server 2003 allows an attacker to execute code on a targeted RPC server which has Routing and Remote Access enabled via a specially crafted application, aka "Windows RPC Remote Code Execution Vulnerability."
AnalizadaAlta (7.8)35%⚠ Explotación activaMicrosoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+514/7/201517/6/2026
ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka…
AnalizadaAlta (8.8)15%⚠ Explotación activaMicrosoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges or cause a denial of service (memory…
ModificadaAlta (7.2)2.0%—Microsoft Windows 2003 ServerMicrosoft Windows Server 200310/6/201517/6/2026
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability."
ModificadaAlta (7.2)3.4%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka…
ModificadaAlta (7.2)3.4%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted…
ModificadaAlta (7.2)3.8%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Buffer overflow in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka…
ModificadaAlta (7.2)3.3%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted…
ModificadaAlta (7.2)3.3%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted…
ModificadaAlta (7.2)3.5%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted…
ModificadaAlta (7.2)3.3%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to gain privileges or cause a denial of service (NULL pointer dereference…
ModificadaAlta (7.2)1.9%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted…
ModificadaBaja (2.1)2.6%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+510/6/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to obtain sensitive information from kernel memory via a crafted…
ModificadaMedia (5)21%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
Schannel in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly restrict Diffie-Hellman Ephemeral (DHE) key lengths, which makes it easier for remote attackers to…
ModificadaMedia (6.9)1.6%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The Service Control Manager (SCM) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly constrain impersonation levels, which allows local users to gain…
ModificadaBaja (2.1)3.1%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft…
ModificadaBaja (2.1)3.1%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft…
ModificadaBaja (2.1)3.1%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft…
ModificadaBaja (2.1)3.1%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft…
ModificadaBaja (2.1)3.1%—Microsoft Windows 7Microsoft Windows 8Microsoft Windows 8.1Microsoft Windows RT+513/5/201517/6/2026
The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow local users to bypass the ASLR protection mechanism via a crafted function call, aka "Microsoft…
ModificadaAlta (9.3)25%—Microsoft Windows 7Microsoft Windows Server 2003Microsoft Windows Server 2008Microsoft Windows Vista14/4/201517/6/2026
Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allow remote attackers to execute arbitrary code via a crafted Enhanced Metafile (EMF) image, aka "EMF Processing Remote Code Execution Vulnerability."