Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2741▼ 480 respecto a la semana anterior
Críticas / altas1308▼ 182 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
–

414 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance26/6/201316/6/2026
The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (device reload or traffic-processing outage) via fragmented (1) IPv4 or (2) IPv6…
ModificadaMedia (6.8)0.35%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco ASA 550025/4/201316/6/2026
The vpnclient program in the Easy VPN component on Cisco Adaptive Security Appliances (ASA) 5505 devices allows local users to gain privileges via unspecified vectors, aka Bug ID CSCuf85295.
ModificadaAlta (9.3)2.4%—Cisco Adaptive Security Appliance Device ManagerCisco Nexus 5000Cisco Nexus 5010Cisco Nexus 5010p Switch+625/4/201316/6/2026
The JAR files on Cisco Device Manager for Cisco MDS 9000 devices before 5.2.8, and Cisco Device Manager for Cisco Nexus 5000 devices, allow remote attackers to execute arbitrary commands on Windows client machines via a crafted element-manager.jnlp file, aka Bug IDs CSCty17417 and CSCty10802.
ModificadaMedia (5)1.8%—Cisco Firewall Services ModuleCisco Adaptive Security Appliance Software24/4/201316/6/2026
The time-based ACL implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properly handle periodic statements for the time-range command, which allows remote attackers to bypass intended access restrictions by sending network traffic during denied…
ModificadaMedia (4.9)0.90%—Cisco Adaptive Security Appliance Clientless SSL VPNCisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance18/4/201316/6/2026
Race condition in the CIFS implementation in the rewriter module in the Clientless SSL VPN component on Cisco Adaptive Security Appliances (ASA) devices allows remote authenticated users to cause a denial of service (device reload) by accessing resources within multiple sessions, aka Bug ID CSCub58996.
ModificadaMedia (5)1.7%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance18/4/201316/6/2026
The ISAKMP implementation on Cisco Adaptive Security Appliances (ASA) devices generates different responses for IKE aggressive-mode messages depending on whether invalid VPN groups are specified, which allows remote attackers to enumerate groups via a series of messages, aka Bug ID CSCue73708.
ModificadaMedia (5)1.8%—Cisco Firewall Services ModuleCisco Adaptive Security Appliance Software16/4/201316/6/2026
The Secure Shell (SSH) implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properly terminate sessions, which allows remote attackers to cause a denial of service (SSH service outage) by repeatedly establishing SSH connections, aka Bug IDs…
ModificadaMedia (5.4)0.80%—Cisco 5500 Adaptive Security ApplianceCisco 5500 Series Adaptive Security ApplianceCisco Adaptive Security Appliance16/4/201316/6/2026
Race condition on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (CPU consumption or device reload) by establishing multiple connections, leading to improper handling of hash lookups for secondary flows, aka Bug IDs CSCue31622 and CSCuc71272.
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance11/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 9.0 before 9.0(1.2) allow remote attackers to cause a denial of service (device reload) via a crafted field in a DNS message, aka Bug ID CSCuc80080.
ModificadaAlta (7.1)0.73%—Cisco Adaptive Security Appliance Software11/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.31), 8.1 and 8.2 before 8.2(5.38), 8.3 before 8.3(2.37), 8.4 before 8.4(5), 8.5 before 8.5(1.17), 8.6 before 8.6(1.10), and 8.7 before 8.7(1.3) allow remote attackers to cause a denial of service (device reload) via a…
ModificadaAlta (7.8)2.1%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance11/4/201316/6/2026
The authentication-proxy implementation on Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.31), 8.1 and 8.2 before 8.2(5.38), 8.3 before 8.3(2.37), 8.4 before 8.4(5.3), 8.5 and 8.6 before 8.6(1.10), 8.7 before 8.7(1.4), 9.0 before 9.0(1.1), and 9.1 before 9.1(1.2)…
ModificadaAlta (7.8)1.3%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 6500 Series Adaptive Security ApplianceCisco 7600 Series Adaptive Security Appliance+111/4/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with software 7.x before 7.2(5.10), 8.0 before 8.0(5.28), 8.1 and 8.2 before 8.2(5.35), 8.3 before 8.3(2.34), 8.4 before 8.4(4.11), 8.6 before 8.6(1.10), and 8.7 before 8.7(1.3), and Cisco Firewall Services Module (FWSM) software 3.1 and 3.2 before 3.2(24.1) and 4.0 and…
ModificadaMedia (5)1.5%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance25/2/201316/6/2026
The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory consumption) via crafted packets, aka Bug ID CSCue46386.
ModificadaMedia (6.3)1.8%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security ApplianceCisco ASA 1000v Cloud FirewallCisco ASA 550018/1/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.4 do not properly validate unspecified input related to UNC share pathnames, which allows remote authenticated users to cause a denial of service (device crash) via unknown vectors, aka Bug ID CSCuc65775.
ModificadaMedia (6.3)1.3%—Cisco Adaptive Security Appliance SoftwareCisco Adaptive Security ApplianceCisco ASA 1000v Cloud FirewallCisco ASA 550018/1/201316/6/2026
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device crash) by establishing multiple sessions, aka Bug ID CSCtc59462.
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco ASA 1000v Cloud Firewall17/1/201316/6/2026
Cisco Adaptive Security Appliance (ASA) software 8.7.1 and 8.7.1.1 for the Cisco ASA 1000V Cloud Firewall allows remote attackers to cause a denial of service (device reload) via a malformed H.225 H.323 IPv4 packet, aka Bug IDs CSCuc42812 and CSCuc88741.
ModificadaAlta (7.1)1.7%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco…
ModificadaAlta (7.1)1.7%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.13) and the Firewall Services Module (FWSM) 4.1 before 4.1(7) in Cisco…
ModificadaAlta (9)4.0%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco 7600 RouterCisco Catalyst 6500+829/10/201216/6/2026
Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.34), 8.4 before 8.4(4.4), 8.5 before 8.5(1.13), and 8.6 before 8.6(1.3) and the Firewall…
ModificadaAlta (7.8)1.8%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.17), 8.3 before 8.3(2.28), 8.4 before 8.4(2.13), 8.5 before 8.5(1.4), and 8.6 before 8.6(1.5) allows remote attackers to…
ModificadaAlta (7.1)2.6%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.30) and 8.3 before 8.3(2.34) allows remote attackers to cause a denial of service (device…
ModificadaAlta (7.1)1.5%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+729/10/201216/6/2026
The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 before 7.2(5.8), 7.1 before 7.2(5.8), 7.2 before 7.2(5.8), 8.0 before 8.0(5.28), 8.1 before 8.1(2.56), 8.2 before 8.2(5.27), 8.3 before…
ModificadaMedia (4)1.4%—Cisco 5500 Series Adaptive Security ApplianceCisco Adaptive Security Appliance Software6/8/201216/6/2026
Memory leak on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 allows remote authenticated users to cause a denial of service (memory consumption and blank response page) by using the clientless WebVPN feature, aka Bug ID CSCth34278.
ModificadaAlta (7.8)1.9%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security Appliance6/8/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-allocated secondary pinholes, which might allow remote attackers to cause a denial of service (CPU consumption) via crafted SIP traffic, aka Bug ID CSCtz63143.
ModificadaAlta (7.8)2.0%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco Catalyst 6500Cisco Catalyst 6503-e+720/6/201216/6/2026
Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.4 before 8.4(4.1), 8.5 before 8.5(1.11), and 8.6 before 8.6(1.3) allow remote attackers to cause a denial of service (device reload) via IPv6 transit traffic that…