Vulnerabilities

Summary — last 7 days

New vulnerabilities2,683▼ 54 vs. last week
Critical / high1,442▲ 305 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)64▼ 462 vs. last week
–

4 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.8)1.5%—Conquest Dicom Server Project Conquest Dicom Server3/31/20216/17/2026
CONQUEST DICOM SERVER before 1.5.0 has a code execution vulnerability which can be exploited by attackers to execute malicious code.
ModifiedMedium (5.4)0.27%—Ingen-studios Conquest OF Fantasia9/22/20146/17/2026
The Conquest Of Fantasia (aka air.com.ingen.studios.cof.sg) application 1.0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
ModifiedMedium (6.9)4.1%—Radscan Conquest3/10/20076/16/2026
Multiple buffer overflows in Conquest 8.2a and earlier (1) allow local users to gain privileges by querying a metaserver that sends a long server entry processed by metaGetServerList and allow remote metaservers to execute arbitrary code via a long server entry processed by metaGetServerList; (2) allow attackers to…
ModifiedMedium (4.6)0.40%—Conquest12/1/20036/16/2026
Buffer overflow in conquest 7.2 and earlier may allow a local user to execute arbitrary code via a long environment variable.