Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2729▼ 513 respecto a la semana anterior
Críticas / altas1298▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
–

362 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)1.7%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance18/4/201316/6/2026
The ISAKMP implementation on Cisco Adaptive Security Appliances (ASA) devices generates different responses for IKE aggressive-mode messages depending on whether invalid VPN groups are specified, which allows remote attackers to enumerate groups via a series of messages, aka Bug ID CSCue73708.
ModificadaMedia (5)1.8%—Cisco Firewall Services ModuleCisco Adaptive Security Appliance Software16/4/201316/6/2026
The Secure Shell (SSH) implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properly terminate sessions, which allows remote attackers to cause a denial of service (SSH service outage) by repeatedly establishing SSH connections, aka Bug IDs…
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance11/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 9.0 before 9.0(1.2) allow remote attackers to cause a denial of service (device reload) via a crafted field in a DNS message, aka Bug ID CSCuc80080.
ModificadaAlta (7.1)0.73%—Cisco Adaptive Security Appliance Software11/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.31), 8.1 and 8.2 before 8.2(5.38), 8.3 before 8.3(2.37), 8.4 before 8.4(5), 8.5 before 8.5(1.17), 8.6 before 8.6(1.10), and 8.7 before 8.7(1.3) allow remote attackers to cause a denial of service (device reload) via a…
ModificadaAlta (7.8)2.1%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance11/4/201316/6/2026
The authentication-proxy implementation on Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.31), 8.1 and 8.2 before 8.2(5.38), 8.3 before 8.3(2.37), 8.4 before 8.4(5.3), 8.5 and 8.6 before 8.6(1.10), 8.7 before 8.7(1.4), 9.0 before 9.0(1.1), and 9.1 before 9.1(1.2)…
ModificadaAlta (7.8)1.3%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 6500 Series Adaptive Security ApplianceCisco 7600 Series Adaptive Security Appliance+111/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.28), 8.1 and 8.2 before 8.2(5.35), 8.3 before 8.3(2.34), 8.4 before 8.4(4.11), 8.6 before 8.6(1.10), and 8.7 before 8.7(1.3), and Cisco Firewall Services Module (FWSM) software 3.1 and 3.2 before 3.2(24.1) and 4.0 and…
ModificadaMedia (5)1.5%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance25/2/201316/6/2026
The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory consumption) via crafted packets, aka Bug ID CSCue46386.
ModificadaMedia (6.3)1.8%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security ApplianceCisco ASA 1000v Cloud FirewallCisco ASA 550018/1/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.4 do not properly validate unspecified input related to UNC share pathnames, which allows remote authenticated users to cause a denial of service (device crash) via unknown vectors, aka Bug ID CSCuc65775.
ModificadaMedia (6.3)1.3%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security ApplianceCisco ASA 1000v Cloud FirewallCisco ASA 550018/1/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device crash) by establishing multiple sessions, aka Bug ID CSCtc59462.
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco ASA 1000v Cloud Firewall17/1/201316/6/2026
Cisco Adaptive Security Appliance (ASA) software 8.7.1 and 8.7.1.1 for the Cisco ASA 1000V Cloud Firewall allows remote attackers to cause a denial of service (device reload) via a malformed H.225 H.323 IPv4 packet, aka Bug IDs CSCuc42812 and CSCuc88741.
ModificadaAlta (7.1)1.7%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco…
ModificadaAlta (7.1)1.7%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco…
ModificadaAlta (9)4.0%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.34), 8.4 before 8.4(4.4), 8.5 before 8.5(1.13), and 8.6 before 8.6(1.3) and the Firewall…
ModificadaAlta (7.8)1.8%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.17), 8.3 before 8.3(2.28), 8.4 before 8.4(2.13), 8.5 before 8.5(1.4), and 8.6 before 8.6(1.5) allows remote attackers to…
ModificadaAlta (7.1)2.6%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.30) and 8.3 before 8.3(2.34) allows remote attackers to cause a denial of service (device…
ModificadaAlta (7.1)1.5%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 before 7.2(5.8), 7.1 before 7.2(5.8), 7.2 before 7.2(5.8), 8.0 before 8.0(5.28), 8.1 before 8.1(2.56), 8.2 before 8.2(5.27), 8.3 before…
ModificadaMedia (4)1.4%—Cisco 5500 Series Adaptive Security ApplianceCisco Adaptive Security Appliance Software6/8/201216/6/2026
Memory leak on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 allows remote authenticated users to cause a denial of service (memory consumption and blank response page) by using the clientless WebVPN feature, aka Bug ID CSCth34278.
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance6/8/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-allocated secondary pinholes, which might allow remote attackers to cause a denial of service (CPU consumption) via crafted SIP traffic, aka Bug ID CSCtz63143.
ModificadaAlta (7.8)2.0%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+720/6/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.4 before 8.4(4.1), 8.5 before 8.5(1.11), and 8.6 before 8.6(1.3) allow remote attackers to cause a denial of service (device reload) via IPv6 transit traffic that…
ModificadaAlta (7.8)1.3%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance3/5/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 through 8.4 allow remote attackers to cause a denial of service (connection limit exceeded) by triggering a large number of stale connections that result in an incorrect value for an MPF connection count, aka Bug ID CSCtv19854.
ModificadaMedia (5)2.2%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance2/5/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 through 8.4 do not properly perform proxy authentication during attempts to cut through a firewall, which allows remote attackers to obtain sensitive information via a connection attempt, aka Bug ID CSCtx42746.
ModificadaAlta (7.8)1.3%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance2/5/201216/6/2026
The ESMTP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.5 allows remote attackers to cause a denial of service (CPU consumption) via an unspecified closing sequence, aka Bug ID CSCtt32565.
ModificadaMedia (4.3)1.1%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance2/5/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 process IKE requests despite a vpnclient mode configuration, which allows remote attackers to obtain potentially sensitive information by reading IKE responder traffic, aka Bug ID CSCtt07749.
ModificadaMedia (5)2.0%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance2/5/201216/6/2026
CRLF injection vulnerability in /+CSCOE+/logon.html on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 through 8.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors, aka Bug ID CSCth63101.
ModificadaAlta (9.3)6.1%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance15/3/201216/6/2026
Buffer overflow in the Cisco Port Forwarder ActiveX control in cscopf.ocx, as distributed through the Clientless VPN feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 through 7.2 before 7.2(5.6), 8.0 before 8.0(5.26), 8.1 before 8.1(2.53), 8.2 before 8.2(5.18), 8.3 before…