Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2730▼ 572 respecto a la semana anterior
Críticas / altas1301▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)295▼ 215 respecto a la semana anterior
–

32 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaCrítica (9.8)50%💥 ExploitCisco Sg200-50 FirmwareCisco Sg200-50p FirmwareCisco Sg200-50fp FirmwareCisco Sg200-26 Firmware+1108/11/201817/6/2026
A vulnerability in the Cisco Small Business Switches software could allow an unauthenticated, remote attacker to bypass the user authentication mechanism of an affected device. The vulnerability exists because under specific circumstances, the affected software enables a privileged user account without notifying…
ModificadaMedia (6.1)0.80%—Cisco Sf302-08pp FirmwareCisco Sf302-08mpp FirmwareCisco Sg300-10pp FirmwareCisco Sg300-10mpp Firmware+235/10/201817/6/2026
A vulnerability in the web-based management interface of Cisco Small Business 300 Series Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected system. The vulnerability exists because the affected management…
ModificadaMedia (5.4)0.68%—Cisco Sf300-08 FirmwareCisco Sf302-08 FirmwareCisco Sf302-08p FirmwareCisco Sf302-08pp Firmware+241/8/201817/6/2026
A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due…
ModificadaMedia (5.4)0.68%—Cisco Sf300-08 FirmwareCisco Sf302-08 FirmwareCisco Sf302-08p FirmwareCisco Sf302-08pp Firmware+241/8/201817/6/2026
A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a persistent cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due…
ModificadaMedia (6.1)0.83%—Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+8118/1/201817/6/2026
A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of some parameters…
ModificadaMedia (6.1)0.87%—Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+8118/1/201817/6/2026
A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of…
ModificadaMedia (6.5)1.4%—Cisco Sf302-08pp FirmwareCisco Sf302-08mpp FirmwareCisco Sg300-10pp FirmwareCisco Sg300-10mpp Firmware+8121/9/201717/6/2026
A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker to cause a reload of the affected switch, resulting in a denial of service (DoS) condition. The vulnerability is due to improper processing of SSH connections. An attacker…