Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
341 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 2.9% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 3/5/2019 | 11/8/2026 | A vulnerability in the TCP proxy functionality for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due… | |
| Modificada | Alta (7.5) | 2.1% | — | Cisco Secure Firewall Threat Defense | 3/5/2019 | 11/8/2026 | A vulnerability in the TCP ingress handler for the data interfaces that are configured with management access to Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an increase in CPU and memory usage, resulting in a denial of service (DoS) condition. The… | |
| Modificada | Alta (8.6) | 2.0% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 3/5/2019 | 11/8/2026 | A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for existing… | |
| Modificada | Media (5.8) | 2.3% | — | Cisco Secure Firewall Threat Defense | 21/2/2019 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause the unexpected restart of the SNORT detection engine, resulting in a denial of service (DoS) condition. The vulnerability is due to the incomplete error handling of the SSL or TLS… | |
| Modificada | Alta (8.6) | 1.2% | — | Cisco Secure Firewall Threat Defense | 24/1/2019 | 11/8/2026 | A vulnerability in the data acquisition (DAQ) component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access control policies or cause a denial of service (DoS) condition. The vulnerability exists because the affected software improperly manages… | |
| Modificada | Alta (8.6) | 4.4% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 1/11/2018 | 11/8/2026 | A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload or trigger high CPU, resulting in a denial of service… | |
| Modificada | Media (6.8) | 1.8% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 5/10/2018 | 11/8/2026 | A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust the 1550-byte buffers on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is… | |
| Modificada | Media (4) | 1.9% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 5/10/2018 | 11/8/2026 | A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access control list (ACL) that is configured for an interface of an affected device. The vulnerability is… | |
| Modificada | Media (6.8) | 1.1% | — | Cisco Secure Firewall Threat Defense | 5/10/2018 | 11/8/2026 | A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software fails to release spinlocks when a… | |
| Modificada | Alta (7.5) | 2.5% | — | Cisco Firepower Threat DefenseCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 5/10/2018 | 11/8/2026 | A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a temporary denial of service (DoS) condition. The… | |
| Modificada | Alta (8.2) | 0.41% | — | Cisco Secure Firewall Threat Defense | 5/10/2018 | 11/8/2026 | A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Firepower Threat Defense (FTD) sensors could allow an authenticated, local attacker to execute specific CLI commands with root privileges on the Cisco Firepower Management Center (FMC), or through… | |
| Analizada | Alta (7.5) | 100% | ⚠ Explotación activa💥 Exploit | Cisco Adaptive Security Appliance SoftwareCisco Firepower Threat DefenseCisco Secure Firewall Threat Defense | 7/6/2018 | 11/8/2026 | A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. It is also possible on certain software releases that the ASA will not reload, but an… | |
| Modificada | Media (5.8) | 1.2% | — | Cisco Secure Firewall Threat Defense | 17/5/2018 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower Threat Defense software could allow an unauthenticated, remote attacker to bypass a configured Secure Sockets Layer (SSL) Access Control (AC) policy to block SSL traffic. The vulnerability is due to the incorrect handling of TCP SSL packets received out of… | |
| Modificada | Media (5.3) | 1.2% | — | Cisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured. The vulnerability is due to incorrect counting of the… | |
| Modificada | Media (5.8) | 1.2% | — | Cisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy to drop the Server Message Block (SMB) protocol if a malware file is detected. The vulnerability is due to how the SMB protocol handles a case in which a… | |
| Modificada | Media (5.8) | 1.2% | — | Cisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy that is intended to drop the Server Message Block Version 2 (SMB2) and SMB Version 3 (SMB3) protocols if malware is detected. The vulnerability is due to… | |
| Modificada | Alta (8.6) | 3.9% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 19/4/2018 | 11/8/2026 | Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS)… | |
| Modificada | Alta (8.6) | 4.5% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of the affected device, resulting in a denial of service (DoS) condition. The… | |
| Modificada | Alta (8.6) | 2.4% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 19/4/2018 | 11/8/2026 | A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Security Appliances could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition.… | |
| Modificada | Alta (8.6) | 3.6% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the CPU to increase upwards of 100% utilization, causing a denial of service (DoS) condition on an affected system. The vulnerability is due to incorrect… | |
| Modificada | Alta (7.5) | 2.1% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 19/4/2018 | 11/8/2026 | A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate Authentication feature for Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to establish an SSL VPN connection and bypass certain SSL certificate verification steps. The… | |
| Modificada | Media (5.3) | 1.2% | — | Cisco Secure Firewall Threat Defense | 8/2/2018 | 11/8/2026 | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass file policies that are configured to block files transmitted to an affected device via the BitTorrent protocol. The vulnerability exists because the affected software does not detect… | |
| Modificada | Crítica (10) | 87% | 💥 Exploit | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 29/1/2018 | 11/8/2026 | A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to an attempt to double free a region of memory when… | |
| Modificada | Alta (8.8) | 1.2% | — | Mcafee Advanced Threat Defense | 12/7/2017 | 17/6/2026 | Privilege Escalation vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to gain elevated privileges via the GUI or GUI terminal commands. | |
| Modificada | Alta (7.5) | 1.4% | — | Mcafee Advanced Threat Defense | 12/7/2017 | 17/6/2026 | Exploitation of Authentication vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to bypass ATD detection via loose enforcement of authentication and authorization. |