Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2853▼ 343 respecto a la semana anterior
Críticas / altas1376▼ 50 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)339▼ 171 respecto a la semana anterior
31 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.80% | — | Cisco Sf302-08pp FirmwareCisco Sf302-08mpp FirmwareCisco Sg300-10pp FirmwareCisco Sg300-10mpp Firmware+23 | 5/10/2018 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Small Business 300 Series Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected system. The vulnerability exists because the affected management… | |
| Modificada | Media (5.4) | 0.68% | — | Cisco Sf300-08 FirmwareCisco Sf302-08 FirmwareCisco Sf302-08p FirmwareCisco Sf302-08pp Firmware+24 | 1/8/2018 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due… | |
| Modificada | Media (5.4) | 0.68% | — | Cisco Sf300-08 FirmwareCisco Sf302-08 FirmwareCisco Sf302-08p FirmwareCisco Sf302-08pp Firmware+24 | 1/8/2018 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a persistent cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due… | |
| Modificada | Media (6.1) | 0.83% | — | Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+81 | 18/1/2018 | 17/6/2026 | A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of some parameters… | |
| Modificada | Media (6.1) | 0.87% | — | Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+81 | 18/1/2018 | 17/6/2026 | A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of… | |
| Modificada | Media (6.5) | 1.4% | — | Cisco Sf302-08pp FirmwareCisco Sf302-08mpp FirmwareCisco Sg300-10pp FirmwareCisco Sg300-10mpp Firmware+81 | 21/9/2017 | 17/6/2026 | A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker to cause a reload of the affected switch, resulting in a denial of service (DoS) condition. The vulnerability is due to improper processing of SSH connections. An attacker… |