Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2736▼ 485 respecto a la semana anterior
Críticas / altas1304▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
256 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.9) | 1.9% | — | F5 Big-ip Local Traffic ManagerF5 Big-ip Application Acceleration ManagerF5 Big-ip Advanced Firewall ManagerF5 Big-ip Analytics+6 | 10/1/2017 | 17/6/2026 | Under certain conditions for BIG-IP systems using a virtual server with an associated FastL4 profile and TCP analytics profile, a specific sequence of packets may cause the Traffic Management Microkernel (TMM) to restart. | |
| Modificada | Crítica (9.8) | 6.4% | — | F5 Big-ip Policy Enforcement ManagerF5 Big-ip Local Traffic ManagerF5 Big-ip WebsafeF5 Big-ip Link Controller+4 | 3/10/2016 | 17/6/2026 | Virtual servers in F5 BIG-IP systems 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF4, and 12.1.0 before HF2, when configured with the HTTP Explicit Proxy functionality or SOCKS profile, allow remote attackers to modify the system configuration,… | |
| Modificada | Alta (7.5) | 1.6% | — | Dell Bsafe | 18/9/2016 | 17/6/2026 | The client in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.9 and 4.1.x before 4.1.5 places the weakest algorithms first in a signature-algorithm list transmitted to a server, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging server behavior in which the… | |
| Modificada | Alta (7.5) | 2.3% | — | F5 Big-ip Application Acceleration ManagerF5 Big-ip WebacceleratorF5 Big-ip AnalyticsF5 Big-ip Domain Name System+11 | 19/8/2016 | 17/6/2026 | The default configuration of the IPsec IKE peer listener in F5 BIG-IP LTM, Analytics, APM, ASM, and Link Controller 11.2.1 before HF16, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.x before 12.0.0 HF2; BIG-IP AAM, AFM, and PEM 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.x before… | |
| Modificada | Alta (7.5) | 2.7% | — | F5 Big-ip Global Traffic ManagerF5 Big-ip Local Traffic ManagerF5 Big-ip WebacceleratorF5 Big-ip Policy Enforcement Manager+10 | 19/8/2016 | 17/6/2026 | The Configuration utility in F5 BIG-IP LTM, Analytics, APM, ASM, GTM, and Link Controller 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, and 11.6.x before 11.6.1; BIG-IP AAM 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, and 11.6.x before 11.6.1; BIG-IP AFM and PEM 11.3.x, 11.4.x… | |
| Modificada | Media (5.9) | 3.5% | — | Dell Bsafe Crypto-c-micro-editionDell Bsafe Crypto-jDell Bsafe Micro-edition-suiteDell Bsafe Ssl-c+1 | 12/4/2016 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x and 4.1.x before 4.1.5, RSA BSAFE Crypto-C Micro Edition (CCME) 4.0.x and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2.1, RSA BSAFE SSL-J before 6.2.1, and RSA BSAFE SSL-C before 2.8.9 allow remote attackers to discover a private-key prime by conducting a Lenstra… | |
| Modificada | Crítica (9.8) | 2.6% | — | Dell BsafeDell Bsafe Crypto-cDell Bsafe Ssl-c | 20/8/2015 | 17/6/2026 | Integer underflow in the base64-decoding implementation in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-C Micro Edition (Crypto-C ME) before 4.0.4 and 4.1, and RSA BSAFE SSL-C 2.8.9 and earlier allows remote attackers to cause a denial of service (memory… | |
| Modificada | Alta (7.5) | 2.0% | — | Dell BsafeDell Bsafe Ssl-c | 20/8/2015 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier, when client authentication and an ephemeral Diffie-Hellman ciphersuite are enabled, allow remote attackers to cause a denial of service (daemon crash) via a ClientKeyExchange message with a length… | |
| Modificada | Alta (7.5) | 1.1% | — | Dell BsafeDell Bsafe Ssl-c | 20/8/2015 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier do not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK"… | |
| Modificada | Alta (7.5) | 1.4% | — | Dell BsafeDell Bsafe Ssl-cDell Bsafe Ssl-j | 20/8/2015 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2, RSA BSAFE SSL-J before 6.2, and RSA BSAFE SSL-C 2.8.9 and earlier do not enforce certain constraints on certificate data, which allows remote attackers to defeat a fingerprint-based certificate-blacklist… | |
| Modificada | Alta (7.5) | 0.80% | — | Dell BsafeDell Bsafe Ssl-c | 20/8/2015 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier allow remote SSL servers to conduct ECDHE-to-ECDH downgrade attacks and trigger a loss of forward secrecy by omitting the ServerKeyExchange message, a similar issue to CVE-2014-3572. | |
| Modificada | Media (4.3) | 0.90% | — | Dell Bsafe Micro-edition-suiteDell Bsafe Ssl-j | 30/12/2014 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple… | |
| Modificada | Media (5) | 2.1% | — | Dell Bsafe Share | 17/6/2014 | 17/6/2026 | The TLS implementation in EMC RSA BSAFE-Java Toolkits (aka Share for Java) supports the Extended Random extension during use of the Dual_EC_DRBG algorithm, which makes it easier for remote attackers to obtain plaintext from TLS sessions by requesting long nonces from a server, a different issue than CVE-2007-6755. | |
| Modificada | Media (5) | 1.7% | — | Dell Bsafe Share | 17/6/2014 | 17/6/2026 | The Dual_EC_DRBG implementation in EMC RSA BSAFE-C Toolkits (aka Share for C and C++) processes certain requests for output bytes by considering only the requested byte count and not the use of cached bytes, which makes it easier for remote attackers to obtain plaintext from TLS sessions by recovering the algorithm's… | |
| Modificada | Media (5) | 1.7% | — | Dell Bsafe Share | 17/6/2014 | 17/6/2026 | The TLS implementation in EMC RSA BSAFE-C Toolkits (aka Share for C and C++) sends a long series of random bytes during use of the Dual_EC_DRBG algorithm, which makes it easier for remote attackers to obtain plaintext from TLS sessions by recovering the algorithm's inner state, a different issue than CVE-2007-6755. | |
| Modificada | Media (5.8) | 1.0% | — | EMC RSA Bsafe ToolkitsEMC RSA Data Protection Manager | 17/6/2014 | 16/6/2026 | The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 uses the Dual Elliptic Curve Deterministic Random Bit Generation (Dual_EC_DRBG) algorithm, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by leveraging unspecified… | |
| Modificada | Media (5.8) | 0.67% | — | Dell Bsafe Micro-edition-suite | 11/4/2014 | 17/6/2026 | EMC RSA BSAFE Micro Edition Suite (MES) 3.2.x before 3.2.6 and 4.0.x before 4.0.5 does not properly validate X.509 certificate chains, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate chain. | |
| Modificada | Media (5) | 1.1% | — | Dell Bsafe Micro-edition-suite | 25/3/2014 | 17/6/2026 | The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors. | |
| Modificada | Media (5) | 1.5% | — | Dell Bsafe Ssl-jEMC RSA Bsafe Ssl-j | 18/2/2014 | 17/6/2026 | The SSLEngine API implementation in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 allows remote attackers to trigger the selection of a weak cipher suite by using the wrap method during a certain incomplete-handshake state. | |
| Modificada | Media (5) | 1.9% | — | Dell Bsafe Ssl-jEMC RSA Bsafe Ssl-j | 18/2/2014 | 17/6/2026 | The (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 make it easier for remote attackers to bypass intended cryptographic protection mechanisms by triggering application-data processing during the TLS handshake, a time at which the data is both unencrypted and unauthenticated. | |
| Modificada | Media (5) | 1.8% | — | Dell Bsafe Ssl-jEMC RSA Bsafe Ssl-j | 18/2/2014 | 17/6/2026 | The SSLSocket implementation in the (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 allows remote attackers to cause a denial of service (memory consumption) by triggering application-data processing during the TLS handshake, a time at which the data is internally buffered. | |
| Modificada | Media (5.8) | 1.6% | — | Dell Bsafe Crypto-c-micro-editionDell Bsafe Crypto-j | 11/10/2013 | 16/6/2026 | The NIST SP 800-90A default statement of the Dual Elliptic Curve Deterministic Random Bit Generation (Dual_EC_DRBG) algorithm contains point Q constants with a possible relationship to certain "skeleton key" values, which might allow context-dependent attackers to defeat cryptographic protection mechanisms by… | |
| Modificada | Media (5) | 4.4% | — | Dell Bsafe Cert-cDell Bsafe Crypto-c | 22/5/2007 | 16/6/2026 | The RSA Crypto-C before 6.3.1 and Cert-C before 2.8 libraries, as used by RSA BSAFE, multiple Cisco products, and other products, allows remote attackers to cause a denial of service via malformed ASN.1 objects. | |
| Modificada | Media (5) | 1.8% | — | Bsafe Global Security | 2/5/2005 | 16/6/2026 | Directory traversal vulnerability in the third party tool from Bsafe, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. | |
| Modificada | Media (5.1) | 6.7% | 💥 Exploit | Avaya Libsafe | 2/5/2005 | 16/6/2026 | Race condition in libsafe 2.0.16 and earlier, when running in multi-threaded applications, allows attackers to bypass libsafe protection and exploit other vulnerabilities before the _libsafe_die function call is completed. |