Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▲ 13 respecto a la semana anterior
Críticas / altas1459▲ 323 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 3.7% | — | Yard Radius Project Yard Radius | 9/8/2013 | 16/6/2026 | Multiple format string vulnerabilities in Yet Another Radius Daemon (YARD RADIUS) 1.1.2 allow context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in a request in the (1) log_msg function in log.c or (2) version or (3) build_version function… | |
| Modificada | Alta (10) | 5.2% | — | Yard RadiusYard Radius Project Yard Radius | 10/1/2005 | 16/6/2026 | Buffer overflow in the process_menu function in yardradius 1.0.20 allows remote attackers to execute arbitrary code. | |
| Modificada | Media (5) | 5.4% | — | FreeradiusGNU RadiusIcradiusLivingston Radius+7 | 4/3/2002 | 16/6/2026 | Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2. | |
| Modificada | Alta (7.5) | 8.5% | — | Ascend RadiusFreeradiusGNU RadiusIcradius+8 | 4/3/2002 | 16/6/2026 | Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data. |