Skip to content
Toggle Navigation
ISO/IEC 27001
Introducción a ISO 27001
Requisitos Normativos
ISO 27001 – GAP Analysis (Tool)
Concientización
Todos el contenido
Ciberseguridad
Introducción a la ciberseguridad
Defensa de sistemas informáticos
Amenazas y tendencias
Eventos de ciberseguridad
Glosario
Todos los artículos
Vulnerabilidades CVE
Desarrollo seguro (SDLC)
Desarrollo de software seguro
Normativa y Leyes
Leyes de protección de datos
Agencias nacionales de ciberseguridad
Contacto
Vulnerabilidades CVE
Vulnerabilidades CVE
drmunozcl
2025-06-04T18:44:58-04:00
Vulnerabilidades CVE
A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:
Filtrar por severidad:
Todas
NONE
LOW
MEDIUM
HIGH
CRITICAL
UNKNOWN
Filtrar
CVE ID
Publicado
Severidad
CVSS
Descripción
CVE-2025-45787
2025-05-08
CRITICAL
9.8
TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow viathe comment parameter in setIpPortFilterRules.
CVE-2025-45788
2025-05-08
CRITICAL
9.8
TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the comment parameter in setMacFilterRules.
CVE-2025-45789
2025-05-08
CRITICAL
9.8
TOTOLINK A3100R V5.9c.1527 is vulnerable to buffer overflow via the urlKeyword parameter in setParentalRules.
CVE-2025-45790
2025-05-08
CRITICAL
9.8
TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the priority parameter in the setMacQos interface of /lib/cste_modules/firewall.so.
CVE-2025-45797
2025-05-08
CRITICAL
9.8
TOTOlink A950RG V4.1.2cu.5204_B20210112 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the NoticeUrl parameter…
CVE-2025-4458
2025-05-09
MEDIUM
6.3
A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affected by this…
CVE-2025-4459
2025-05-09
MEDIUM
6.3
A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this…
CVE-2025-4463
2025-05-09
HIGH
7.3
A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an unknown function…
CVE-2025-4464
2025-05-09
HIGH
7.3
A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vulnerability is…
CVE-2025-4465
2025-05-09
HIGH
7.3
A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue is some…
CVE-2025-4466
2025-05-09
HIGH
7.3
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an unknown…
CVE-2025-4471
2025-05-09
MEDIUM
5.3
A vulnerability, which was classified as critical, has been found in code-projects Jewelery Store Management system 1.0. Affected by this…
CVE-2025-4472
2025-05-09
MEDIUM
5.3
A vulnerability was found in code-projects Departmental Store Management System 1.0. It has been classified as critical. Affected is the…
CVE-2025-4480
2025-05-09
MEDIUM
5.3
A vulnerability was found in code-projects Simple College Management System 1.0. It has been declared as critical. This vulnerability affects…
CVE-2025-4481
2025-05-09
HIGH
7.3
A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been rated as critical. This issue affects…
CVE-2025-4482
2025-05-09
HIGH
7.3
A vulnerability classified as critical was found in Project Worlds Student Project Allocation System 1.0. Affected by this vulnerability is…
CVE-2021-40438
2021-09-16
CRITICAL
9.0
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user.…
CVE-2025-48050
2025-05-15
HIGH
7.5
In DOMPurify through 3.2.5 before 6bc6d60, scripts/server.js does not ensure that a pathname is located under the current working directory.…
CVE-2024-52880
2025-05-15
HIGH
7.9
An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kernel 5.4 before…
CVE-2025-30712
2025-04-15
HIGH
8.1
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6.…
CVE-2022-2720
2022-10-12
MEDIUM
5.3
In affected versions of Octopus Server it was identified that when a sensitive value is a substring of another value,…
CVE-2025-4182
2025-05-01
HIGH
7.3
A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is…
CVE-2025-4183
2025-05-01
HIGH
7.3
A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the…
CVE-2025-4184
2025-05-02
HIGH
7.3
A vulnerability classified as critical was found in PCMan FTP Server 2.0.7. This vulnerability affects unknown code of the component…
CVE-2025-4236
2025-05-03
HIGH
7.3
A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an…
CVE-2025-4237
2025-05-03
HIGH
7.3
A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown…
CVE-2025-0787
2025-01-28
LOW
3.5
A vulnerability was found in ESAFENET CDG V5. It has been declared as problematic. Affected by this vulnerability is an…
CVE-2025-3371
2025-04-07
HIGH
7.3
A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown…
CVE-2025-3349
2025-04-07
HIGH
7.3
A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown…
CVE-2025-0788
2025-01-28
MEDIUM
6.3
A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some…
CVE-2025-0786
2025-01-28
MEDIUM
6.3
A vulnerability was found in ESAFENET CDG V5. It has been classified as critical. Affected is an unknown function of…
CVE-2025-0785
2025-01-28
LOW
3.5
A vulnerability was found in ESAFENET CDG V5 and classified as problematic. This issue affects some unknown processing of the…
CVE-2024-9536
2024-10-05
MEDIUM
6.3
A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some…
CVE-2025-3240
2025-04-04
HIGH
7.3
A vulnerability, which was classified as critical, has been found in PHPGurukul Online Fire Reporting System 1.2. Affected by this…
CVE-2025-3377
2025-04-07
HIGH
7.3
A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. This issue affects some unknown…
CVE-2025-3376
2025-04-07
HIGH
7.3
A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknown code…
CVE-2025-3375
2025-04-07
HIGH
7.3
A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part…
CVE-2025-3373
2025-04-07
HIGH
7.3
A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an…
CVE-2025-3372
2025-04-07
HIGH
7.3
A vulnerability, which was classified as critical, was found in PCMan FTP Server 2.0.7. Affected is an unknown function of…
CVE-2025-4497
2025-05-10
MEDIUM
5.3
A vulnerability was found in code-projects Simple Banking System up to 1.0. It has been rated as critical. This issue…
CVE-2025-26492
2025-02-11
HIGH
7.7
In JetBrains TeamCity before 2024.12.2 improper Kubernetes connection settings could expose sensitive resources
CVE-2025-26493
2025-02-11
MEDIUM
4.6
In JetBrains TeamCity before 2024.12.2 several DOM-based XSS were possible on the Code Inspection Report tab
CVE-2025-31139
2025-03-27
MEDIUM
4.3
In JetBrains TeamCity before 2025.03 base64 encoded password could be exposed in build log
CVE-2025-31140
2025-03-27
MEDIUM
4.6
In JetBrains TeamCity before 2025.03 stored XSS was possible on Cloud Profiles page
CVE-2025-31141
2025-03-27
LOW
2.7
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles page
CVE-2025-46432
2025-04-25
MEDIUM
4.3
In JetBrains TeamCity before 2025.03.1 base64-encoded credentials could be exposed in build logs
CVE-2025-46433
2025-04-25
MEDIUM
4.9
In JetBrains TeamCity before 2025.03.1 improper path validation in loggingPreset parameter was possible
CVE-2025-46618
2025-04-25
LOW
3.5
In JetBrains TeamCity before 2025.03.1 stored XSS was possible on Data Directory tab
CVE-2025-33104
2025-05-14
MEDIUM
4.4
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript…
CVE-2025-2900
2025-05-14
HIGH
7.5
IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17.0.14.0, and 21.0.0.0 through 12.0.6.0 is vulnerable to a…
« Anterior
Página 429 de 3527
Siguiente »
Page load link
Go to Top