Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
1724 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.4) | 0.30% | — | Cisco Firepower Management CenterCisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Alta (8.6) | 0.52% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due… | |
| Analizada | Media (5.3) | 0.41% | — | Cisco Firepower Management CenterCisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could allow an unauthenticated, remote attacker to determine valid user names on an affected device. This vulnerability is due to improper authentication of password update responses. An attacker could exploit this… | |
| Analizada | Media (5.4) | 0.31% | — | Cisco Firepower Management CenterCisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco FMC Software could allow an authenticated, remote attacker to store malicious content for use in XSS attacks. This vulnerability is due to improper input sanitization in the web-based management interface of Cisco FMC Software. An attacker could exploit… | |
| Analizada | Media (6.1) | 0.39% | — | Cisco Firepower Management CenterCisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Media (5.8) | 0.45% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Network Service Group (NSG) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should be denied to flow through an… | |
| Analizada | Media (6.1) | 0.41% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This… | |
| Analizada | Media (6.5) | 0.62% | — | Cisco Firepower Management CenterCisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to read arbitrary files from the underlying operating system. This vulnerability exists because the web-based… | |
| Analizada | Media (5.4) | 0.37% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to the web-based management interface not properly validating… | |
| Analizada | Alta (7.2) | 0.79% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker with Administrator-level privileges to execute arbitrary commands on the underlying operating system. This… | |
| Analizada | Media (6.1) | 0.41% | — | Cisco Firepower Management CenterCisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Media (5.4) | 0.37% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Alta (7.5) | 0.73% | — | Cisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the TCP/IP traffic handling function of the Snort Detection Engine of Cisco Firepower Threat Defense (FTD) Software and Cisco FirePOWER Services could allow an unauthenticated, remote attacker to cause legitimate network traffic to be dropped, resulting in a denial of service (DoS) condition. This… | |
| Analizada | Alta (8.6) | 0.49% | — | Cisco SnortCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | This vulnerability is due to an incorrect connection count comparison. An attacker could exploit this vulnerability by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter. This could allow… | |
| Analizada | Media (6.1) | 0.42% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This… | |
| Modificada | Media (6.5) | 0.45% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to perform an SQL injection attack against an affected device. To exploit this vulnerability, an attacker must… | |
| Analizada | Alta (7.5) | 0.71% | — | Cisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the TLS processing feature of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an issue that occurs when TLS traffic is… | |
| Analizada | Media (5.9) | 0.67% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the session authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to prevent users from authenticating. This vulnerability is due to… | |
| Analizada | Alta (7.5) | 0.66% | — | Cisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Snort 2 and Snort 3 TCP and UDP detection engine of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Appliances could allow an unauthenticated, remote attacker to cause memory corruption, which could cause the Snort detection engine to restart unexpectedly. This… | |
| Analizada | Media (5.4) | 0.41% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Media (5.8) | 0.48% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the AnyConnect firewall for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should have been denied to flow through an affected… | |
| Analizada | Media (5.4) | 0.41% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of… | |
| Analizada | Media (5.8) | 0.48% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the AnyConnect firewall for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should have been denied to flow through an affected… | |
| Analizada | Media (6.1) | 0.55% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the cluster backup feature of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system. This vulnerability is due to insufficient validation of… | |
| Analizada | Media (5.5) | 0.43% | — | Cisco Secure Firewall Management Center | 23/10/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to inject arbitrary HTML content into a device-generated document. This vulnerability is due to improper… |