Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
–

588 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.66%—Cisco Secure Firewall Management Center3/5/201917/6/2026
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to perform a command injection attack. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by injecting commands into arguments for a specific…
ModificadaAlta (7.4)1.8%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense3/5/201911/8/2026
Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent or remote attacker to cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details…
ModificadaMedia (4.8)0.85%—Cisco Secure Firewall Management Center18/4/201917/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected system. The vulnerability is due to insufficient validation…
ModificadaMedia (6.1)1.2%—Cisco Secure Firewall Management Center7/2/201917/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected system. The vulnerability is due to insufficient validation…
ModificadaMedia (6.1)3.9%💥 ExploitCisco Secure Firewall Management Center23/1/201917/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected software. The vulnerability is due to…
ModificadaAlta (7.5)3.1%—Cisco Secure Firewall Management Center10/1/201917/6/2026
A vulnerability in the Shell Access Filter feature of Cisco Firepower Management Center (FMC), when used in conjunction with remote authentication, could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial of service (DoS) condition. The vulnerability occurs because the…
ModificadaAlta (7.5)10%—HP Intelligent Management Center3/12/201817/6/2026
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to a remote denial of service via dbman Opcode 10003 'Filename'. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions.
ModificadaMedia (5.3)13%—HP Intelligent Management Center3/12/201817/6/2026
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to a remote buffer overflow in dbman.exe opcode 10001 on Windows. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions.
ModificadaCrítica (9.8)33%—HP Intelligent Management Center3/12/201817/6/2026
HPE Intelligent Management Center (IMC) prior to IMC PLAT 7.3 (E0605P06) is vulnerable to remote buffer overflow in dbman leading to code execution. This problem is resolved in IMC PLAT 7.3 (E0605P06) or subsequent versions.
ModificadaCrítica (9.8)12%—HP Intelligent Management Center17/10/201817/6/2026
A remote code execution vulnerability was identified in HPE Intelligent Management Center (iMC) prior to iMC PLAT 7.3 E0605P04.
ModificadaMedia (6.8)1.2%—Cisco Secure Firewall Management CenterCisco Adaptive Security Appliance Software5/10/201817/6/2026
A vulnerability in the implementation of Traffic Flow Confidentiality (TFC) over IPsec functionality in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly, resulting in a…
ModificadaCrítica (9.8)8.9%—HP Intelligent Management Center Wireless Services Manager Software27/9/201817/6/2026
A Remote Code Execution vulnerability was identified in HPE Intelligent Management Center (iMC) Wireless Services Manager Software earlier than version IMC WSM 7.3 E0506P02.
ModificadaCrítica (9.8)8.9%—HP Intelligent Management Center Wireless Services Manager Software27/9/201817/6/2026
A Remote Code Execution vulnerability was identified in HPE Intelligent Management Center (iMC) Wireless Services Manager Software earlier than version IMC WSM 7.3 E0506P02.
ModificadaAlta (7.5)2.9%—HP Intelligent Management Center27/9/201817/6/2026
A security vulnerability in HPE Intelligent Management Center (iMC) PLAT E0506P09, createFabricAutoCfgFile could be remotely exploited via directory traversal to allow remote arbitrary file modification.
ModificadaAlta (7.5)2.5%—HP Arcsight Management Center20/9/201817/6/2026
A potential Unauthenticated File Download vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Unauthenticated File Downloads.
ModificadaAlta (8.8)0.57%—Microfocus Arcsight Management Center20/9/201817/6/2026
A potential Cross-Site Request Forgery (CSRF) vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Cross-Site Request Forgery (CSRF).
ModificadaMedia (6.5)1.1%—HP Arcsight Management Center20/9/201817/6/2026
A potential Access Control vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for vulnerable Access Controls.
ModificadaMedia (6.1)1.3%—HP Arcsight Management Center20/9/201817/6/2026
A potential Reflected Cross-Site Scripting (XSS) Security vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Reflected Cross-site Scripting (XSS).
ModificadaMedia (6.5)0.83%—HP Arcsight Management Center20/9/201817/6/2026
Potential security vulnerability of Insufficient Access Controls has been identified in ArcSight Management Center (ArcMC) for versions prior to 2.81. This vulnerability could be exploited to allow for insufficient access controls.
ModificadaAlta (7.5)4.0%—HP Arcsight Management Center20/9/201817/6/2026
A potential Directory Traversal Security vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be remotely exploited to allow Directory Traversal.
ModificadaCrítica (9.8)2.4%—Iceqube Thermal Management Center Firmware6/9/201817/6/2026
In Ice Qube Thermal Management Center versions prior to version 4.13, passwords are stored in plaintext in a file that is accessible without authentication.
ModificadaAlta (7.5)1.8%—Iceqube Thermal Management Center Firmware6/9/201817/6/2026
In Ice Qube Thermal Management Center versions prior to version 4.13, the web application does not properly authenticate users which may allow an attacker to gain access to sensitive information.
ModificadaAlta (7.5)53%—HP Intelligent Management Center6/8/201817/6/2026
A potential security vulnerability has been identified in HPE Intelligent Management Center Platform (IMC Plat) 7.3 E0506P09. The vulnerability could be remotely exploited to allow for remote directory traversal leading to arbitrary file deletion.
ModificadaMedia (6.1)0.97%—HP Intelligent Management Center6/8/201817/6/2026
A remote cross-site scripting (XSS) vulnerability was identified in HPE Intelligent Management Center (iMC) PLAT version v7.3 (E0506). The vulnerability is fixed in Intelligent Management Center PLAT 7.3 E0605P04 or subsequent version.
ModificadaCrítica (9.8)17%—HP Intelligent Management Center6/8/201817/6/2026
A remote code execution vulnerability was identified in HPE Intelligent Management Center (iMC) PLAT 7.3 E0506P07. The vulnerability was resolved in iMC PLAT 7.3 E0605P04 or subsequent version.
Orbitaley — Vulnerabilidades