Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

341 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.9%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the TCP proxy functionality for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due…
ModificadaAlta (7.5)2.1%—Cisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the TCP ingress handler for the data interfaces that are configured with management access to Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an increase in CPU and memory usage, resulting in a denial of service (DoS) condition. The…
ModificadaAlta (8.6)2.0%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for existing…
ModificadaMedia (5.8)2.3%—Cisco Secure Firewall Threat Defense21/2/201911/8/2026
A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause the unexpected restart of the SNORT detection engine, resulting in a denial of service (DoS) condition. The vulnerability is due to the incomplete error handling of the SSL or TLS…
ModificadaAlta (8.6)1.2%—Cisco Secure Firewall Threat Defense24/1/201911/8/2026
A vulnerability in the data acquisition (DAQ) component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access control policies or cause a denial of service (DoS) condition. The vulnerability exists because the affected software improperly manages…
ModificadaAlta (8.6)4.4%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/201811/8/2026
A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload or trigger high CPU, resulting in a denial of service…
ModificadaMedia (6.8)1.8%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust the 1550-byte buffers on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is…
ModificadaMedia (4)1.9%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access control list (ACL) that is configured for an interface of an affected device. The vulnerability is…
ModificadaMedia (6.8)1.1%—Cisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software fails to release spinlocks when a…
ModificadaAlta (7.5)2.5%—Cisco Firepower Threat DefenseCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software5/10/201811/8/2026
A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a temporary denial of service (DoS) condition. The…
ModificadaAlta (8.2)0.41%—Cisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Firepower Threat Defense (FTD) sensors could allow an authenticated, local attacker to execute specific CLI commands with root privileges on the Cisco Firepower Management Center (FMC), or through…
AnalizadaAlta (7.5)100%⚠ Explotación activa💥 ExploitCisco Adaptive Security Appliance SoftwareCisco Firepower Threat DefenseCisco Secure Firewall Threat Defense7/6/201811/8/2026
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. It is also possible on certain software releases that the ASA will not reload, but an…
ModificadaMedia (5.8)1.2%—Cisco Secure Firewall Threat Defense17/5/201811/8/2026
A vulnerability in the detection engine of Cisco Firepower Threat Defense software could allow an unauthenticated, remote attacker to bypass a configured Secure Sockets Layer (SSL) Access Control (AC) policy to block SSL traffic. The vulnerability is due to the incorrect handling of TCP SSL packets received out of…
ModificadaMedia (5.3)1.2%—Cisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured. The vulnerability is due to incorrect counting of the…
ModificadaMedia (5.8)1.2%—Cisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy to drop the Server Message Block (SMB) protocol if a malware file is detected. The vulnerability is due to how the SMB protocol handles a case in which a…
ModificadaMedia (5.8)1.2%—Cisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy that is intended to drop the Server Message Block Version 2 (SMB2) and SMB Version 3 (SMB3) protocols if malware is detected. The vulnerability is due to…
ModificadaAlta (8.6)3.9%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software19/4/201811/8/2026
Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS)…
ModificadaAlta (8.6)4.5%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of the affected device, resulting in a denial of service (DoS) condition. The…
ModificadaAlta (8.6)2.4%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software19/4/201811/8/2026
A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Security Appliances could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition.…
ModificadaAlta (8.6)3.6%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the CPU to increase upwards of 100% utilization, causing a denial of service (DoS) condition on an affected system. The vulnerability is due to incorrect…
ModificadaAlta (7.5)2.1%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense19/4/201811/8/2026
A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication feature for Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to establish an SSL VPN connection and bypass certain SSL certificate verification steps. The…
ModificadaMedia (5.3)1.2%—Cisco Secure Firewall Threat Defense8/2/201811/8/2026
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass file policies that are configured to block files transmitted to an affected device via the BitTorrent protocol. The vulnerability exists because the affected software does not detect…
ModificadaCrítica (10)87%💥 ExploitCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense29/1/201811/8/2026
A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to an attempt to double free a region of memory when…
ModificadaAlta (8.8)1.2%—Mcafee Advanced Threat Defense12/7/201717/6/2026
Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands.
ModificadaAlta (7.5)1.4%—Mcafee Advanced Threat Defense12/7/201717/6/2026
Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to bypass ATD detection via loose enforcement of authentication and authorization.
Orbitaley — Vulnerabilidades