Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2635▼ 214 respecto a la semana anterior
Críticas / altas1385▲ 153 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
–

4 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)4.5%—EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software23/8/200516/6/2026
EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.
ModificadaMedia (6.4)4.3%—EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software23/8/200516/6/2026
The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2)…
ModificadaAlta (7.5)4.6%—EMC Legato NetworkerSUN Solstice BackupSUN Storedge Enterprise Backup Software23/8/200516/6/2026
EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
ModificadaBaja (2.1)0.39%—SUN Solstice Backup1/1/200016/6/2026
The recover program in Solstice Backup allows local users to restore sensitive files.