Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

56 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.7)0.45%—Cisco Firepower Extensible Operating SystemCisco Nx-os15/5/201917/6/2026
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device with elevated privileges. The vulnerability is due to insufficient validation of arguments passed to certain CLI…
ModificadaMedia (4.4)0.38%—Cisco Firepower Extensible Operating SystemCisco Nx-os7/3/201917/6/2026
A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to access sensitive information that is stored in the file system of an affected system. The vulnerability is due to improper implementation of file system permissions. An…
ModificadaAlta (7.5)2.5%—Cisco Firepower Extensible Operating SystemCisco Nx-os7/3/201917/6/2026
Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerabilities are due…
ModificadaAlta (7.5)2.5%—Cisco Firepower Extensible Operating SystemCisco Nx-os7/3/201917/6/2026
Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerabilities are due…
ModificadaMedia (5.3)0.79%—Cisco Nx-osCisco Firepower Extensible Operating System17/10/201817/6/2026
A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition when the device unexpectedly reloads. The vulnerability is due to improper input validation of…
ModificadaMedia (6.5)0.64%—Cisco Nx-osCisco Firepower Extensible Operating SystemCisco Fxos21/6/201817/6/2026
A vulnerability in the Cisco Discovery Protocol (formerly known as CDP) subsystem of devices running, or based on, Cisco NX-OS Software contain a vulnerability that could allow an unauthenticated, adjacent attacker to create a denial of service (DoS) condition. The vulnerability is due to a failure to properly…
ModificadaAlta (7.5)2.8%—Cisco Nx-osCisco Firepower Extensible Operating System21/6/201817/6/2026
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability exists because the affected software insufficiently validates Cisco Fabric…
ModificadaCrítica (9.8)4.1%—Cisco Nx-osCisco Firepower Extensible Operating System21/6/201817/6/2026
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to obtain sensitive information from memory or cause a denial of service (DoS) condition on the affected product. The vulnerability exists because the affected software…
ModificadaAlta (8.8)1.1%—Cisco Nx-osCisco Firepower Extensible Operating System21/6/201817/6/2026
A vulnerability in the Cisco Discovery Protocol component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code as root or cause a denial of service (DoS) condition on the affected device. The vulnerability exists because of insufficiently validated…
ModificadaAlta (7.8)0.43%—Cisco Nx-osCisco Firepower Extensible Operating System21/6/201817/6/2026
A vulnerability in the CLI parser of Cisco FXOS Software and Cisco UCS Fabric Interconnect Software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to incorrect input validation in the CLI parser subsystem. An attacker could exploit this…
ModificadaAlta (7.5)2.0%—Cisco Nx-osCisco Firepower Extensible Operating System21/6/201817/6/2026
A vulnerability in the web UI of Cisco FXOS and Cisco UCS Fabric Interconnect Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected system. The vulnerability is due to incorrect input validation in the web UI. An attacker could exploit this vulnerability by sending a…
ModificadaMedia (6.7)0.45%—Cisco Nx-osCisco Firepower Extensible Operating SystemCisco Fxos20/6/201817/6/2026
A vulnerability in the write-erase feature of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to configure an unauthorized administrator account for an affected device. The vulnerability exists because the affected software does not properly delete sensitive files when certain…
ModificadaMedia (6.3)1.1%—Cisco Nx-osCisco Unified Computing SystemCisco Firepower Extensible Operating System30/11/201717/6/2026
A vulnerability in the CLI of Cisco Firepower Extensible Operating System (FXOS) and NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. The vulnerability is due to insufficient input validation of command arguments to the CLI parser. An attacker could exploit this…
ModificadaMedia (5.3)1.2%—Cisco Firepower Extensible Operating System16/11/201717/6/2026
A vulnerability exists in the process of creating default IP blocks during device initialization for Cisco ASA Next-Generation Firewall Services that could allow an unauthenticated, remote attacker to send traffic to the local IP address of the device, bypassing any filters that are configured to deny local IP…
ModificadaAlta (8.8)3.8%—Cisco Firepower Extensible Operating System2/11/201717/6/2026
A vulnerability in the Smart Licensing Manager service of the Cisco Firepower 4100 Series Next-Generation Firewall (NGFW) and Firepower 9300 Security Appliance could allow an authenticated, remote attacker to inject arbitrary commands that could be executed with root privileges. The vulnerability is due to…
ModificadaAlta (8.6)4.5%—Cisco Firepower Extensible Operating SystemCisco FxosCisco Nx-os19/10/201717/6/2026
A vulnerability in the authentication, authorization, and accounting (AAA) implementation of Cisco Firepower Extensible Operating System (FXOS) and NX-OS System Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability occurs because AAA processes prevent the…
ModificadaMedia (4.4)0.80%—Cisco Firepower Extensible Operating SystemCisco Unified Computing System7/4/201717/6/2026
A vulnerability in the CLI of Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb66189 CSCvb86775. Known…
ModificadaAlta (7.1)0.82%—Cisco Firepower Extensible Operating SystemCisco Unified Computing System7/4/201717/6/2026
A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb61384 CSCvb86764. Known…
ModificadaAlta (7.8)0.81%—Cisco Firepower Extensible Operating SystemCisco Unified Computing System7/4/201717/6/2026
A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb61351 CSCvb61637. Known…
ModificadaMedia (6.7)0.40%—Cisco Firepower Extensible Operating SystemCisco Unified Computing System7/4/201717/6/2026
A vulnerability in the debug plug-in functionality of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to execute arbitrary commands, aka Privilege Escalation. More…
ModificadaAlta (7.8)0.81%—Cisco Unified Computing SystemCisco Firepower Extensible Operating System7/4/201717/6/2026
A vulnerability in the local-mgmt CLI command of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb61394…
ModificadaCrítica (9.8)8.7%—Cisco Firepower Extensible Operating SystemCisco Unified Computing System22/1/201617/6/2026
An unspecified CGI script in Cisco FX-OS before 1.1.2 on Firepower 9000 devices and Cisco Unified Computing System (UCS) Manager before 2.2(4b), 2.2(5) before 2.2(5a), and 3.0 before 3.0(2e) allows remote attackers to execute arbitrary shell commands via a crafted HTTP request, aka Bug ID CSCur90888.
ModificadaMedia (6.5)1.1%—Cisco Firepower Extensible Operating System24/11/201517/6/2026
An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622.
ModificadaMedia (4.3)0.82%—Cisco Firepower Extensible Operating System19/11/201517/6/2026
The web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, aka Bug ID CSCux10604.
ModificadaMedia (4)0.97%—Cisco Firepower Extensible Operating System19/11/201517/6/2026
Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to read arbitrary files via crafted parameters to unspecified scripts, aka Bug ID CSCux10621.
Orbitaley — Vulnerabilidades