Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

588 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (6.5)0.37%—Cisco Secure Firewall Management Center14/8/202517/6/2026
A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, low-privileged, remote attacker to access troubleshoot files for a different domain. This vulnerability is due to missing authorization checks. An attacker could exploit this vulnerability by directly…
ModificadaCrítica (10)16%💥 PoCCisco Secure Firewall Management Center14/8/202517/6/2026
This vulnerability is due to a lack of proper handling of user input during the authentication phase. An attacker could exploit this vulnerability by sending crafted input when entering credentials that will be authenticated at the configured RADIUS server. A successful exploit could allow the attacker to execute…
AnalizadaMedia (6.1)0.29%—Cisco Secure Firewall Management Center14/8/202517/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user-supplied input by…
AplazadaMedia (6)0.17%—Cisco Secure Firewall Management CenterAICisco Secure Firewall Threat DefenseAI14/8/202517/6/2026
A vulnerability in the CLI of Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. This vulnerability is due to improper input validation for…
AnalizadaMedia (4.9)0.45%—Cisco Secure Firewall Management Center14/8/202517/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to retrieve sensitive information from an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this…
AnalizadaAlta (8.5)0.46%—Cisco Secure Firewall Management Center14/8/202517/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to inject arbitrary HTML content into a device-generated document. This vulnerability is due to improper validation of user-supplied data. An attacker could…
AnalizadaCrítica (9.8)1.0%—Hazelcast Management Center17/4/202517/6/2026
Hazelcast Management Center through 6.0 allows remote code execution via a JndiLoginModule user.provider.url in a hazelcast-client XML document (aka a client configuration file), which can be uploaded at the /cluster-connections URI.
AnalizadaMedia (4.3)0.28%—Cisco Secure Firewall Management Center15/11/202417/6/2026
—
AnalizadaMedia (4.3)0.28%—Cisco Secure Firewall Management Center15/11/202417/6/2026
A vulnerability in the administrative web-based GUI configuration manager of Cisco Firepower Management Center Software could allow an authenticated, remote attacker to access sensitive configuration information. The attacker would require low privilege credentials on an affected device. This vulnerability is due to…
AnalizadaAlta (7)0.24%—Microfocus Arcsight Management CenterMicrofocus Arcsight Platform8/11/202417/6/2026
A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSight Platform. The vulnerability could be remotely exploited.
AnalizadaMedia (6.5)0.49%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to elevate privileges on an affected device. To exploit this vulnerability, an attacker must have a valid account…
AnalizadaMedia (6.5)0.44%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability exists because the web-based management interface does not validate user input…
AnalizadaMedia (6.5)0.44%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability exists because the web-based management interface does not validate user input…
AnalizadaMedia (6.5)0.44%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability exists because the web-based management interface does not validate user input…
AnalizadaCrítica (9.9)0.94%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system as root. This vulnerability is due to…
AnalizadaMedia (6.1)0.32%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaMedia (6.1)0.32%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaMedia (6.1)0.32%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaMedia (5.4)0.30%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaMedia (5.3)0.41%—Cisco Firepower Management CenterCisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could allow an unauthenticated, remote attacker to determine valid user names on an affected device. This vulnerability is due to improper authentication of password update responses. An attacker could exploit this…
AnalizadaMedia (5.4)0.31%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco FMC Software could allow an authenticated, remote attacker to store malicious content for use in XSS attacks. This vulnerability is due to improper input sanitization in the web-based management interface of Cisco FMC Software. An attacker could exploit…
AnalizadaMedia (6.1)0.39%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaMedia (6.5)0.62%—Cisco Firepower Management CenterCisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker to read arbitrary files from the underlying operating system. This vulnerability exists because the web-based…
AnalizadaMedia (5.4)0.37%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to the web-based management interface not properly validating…
AnalizadaAlta (7.2)0.79%—Cisco Secure Firewall Management Center23/10/202417/6/2026
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote attacker with Administrator-level privileges to execute arbitrary commands on the underlying operating system. This…
Orbitaley — Vulnerabilidades