Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
39 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 6.1% | — | Cisco IOSCisco Css11000 Content Services SwitchCisco PIX FirewallOpenssl+1 | 1/12/2003 | 16/6/2026 | OpenSSL 0.9.6k allows remote attackers to cause a denial of service (crash via large recursion) via malformed ASN.1 sequences. | |
| Modificada | Media (6.4) | 1.2% | — | Cisco PIX Firewall Software | 31/12/2002 | 16/6/2026 | Cisco PIX Firewall 6.0.3 and earlier, and 6.1.x to 6.1.3, do not delete the duplicate ISAKMP SAs for a user's VPN session, which allows local users to hijack a session via a man-in-the-middle attack. | |
| Modificada | Media (5) | 2.0% | — | Cisco PIX Firewall Software | 31/12/2002 | 16/6/2026 | Buffer overflow in Cisco PIX Firewall 5.2.x to 5.2.8, 6.0.x to 6.0.3, 6.1.x to 6.1.3, and 6.2.x to 6.2.1 allows remote attackers to cause a denial of service via HTTP traffic authentication using (1) TACACS+ or (2) RADIUS. | |
| Modificada | Alta (7.5) | 0.70% | — | Cisco PIX Firewall | 4/10/2002 | 16/6/2026 | The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques. | |
| Modificada | Alta (7.1) | 3.3% | — | Cisco IOSCisco PIX Firewall SoftwareCisco Css11000 Content Services SwitchCisco Catos | 4/10/2002 | 16/6/2026 | Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144). | |
| Modificada | Baja (2.1) | 0.46% | — | Cisco PIX Firewall Manager | 10/10/2001 | 16/6/2026 | Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow local users to obtain the password by reading the file. | |
| Modificada | Media (5) | 10% | 💥 Exploit | Cisco PIX Firewall 515Cisco PIX Firewall 520 | 18/6/2001 | 16/6/2026 | Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa authentication to a TACACS+ server allows remote attackers to cause a denial of service via a large number of authentication requests. | |
| Modificada | Alta (7.5) | 7.1% | 💥 Exploit | Cisco PIX Firewall Software | 11/12/2000 | 16/6/2026 | The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands. | |
| Modificada | Media (5) | 3.5% | 💥 Exploit | Cisco PIX Firewall Software | 11/12/2000 | 23/9/2026 | Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established. | |
| Modificada | Media (5) | 9.2% | 💥 Exploit | Cisco PIX Firewall | 20/3/2000 | 16/6/2026 | Cisco Secure PIX Firewall does not properly identify forged TCP Reset (RST) packets, which allows remote attackers to force the firewall to close legitimate connections. | |
| Modificada | Alta (7.5) | 2.2% | — | Checkpoint Firewall-1Cisco PIX Firewall Software | 12/2/2000 | 16/6/2026 | Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt. | |
| Modificada | Media (5) | 1.5% | — | Cisco PIX Firewall Software | 31/8/1998 | 16/6/2026 | Cisco PIX firewall manager (PFM) on Windows NT allows attackers to connect to port 8080 on the PFM server and retrieve any file whose name and location is known. | |
| Modificada | Media (5) | 1.1% | — | Cisco IOSCisco PIX Firewall Software | 18/8/1998 | 16/6/2026 | Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service. | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco PIX Firewall | 15/7/1998 | 16/6/2026 | By design, the "established" command on the Cisco PIX firewall allows connections from one host to arbitrary ports of a target host if an alternative conduit has already been allowed, which can cause administrators to configure less restrictive access controls than intended if they do not understand this functionality. |