Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
53 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.3) | 1.7% | — | Cisco Secure Firewall Threat DefenseCisco IOS XESnort | 29/4/2021 | 11/8/2026 | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of specific HTTP header parameters. An attacker could exploit this vulnerability by… | |
| Modificada | Media (5.3) | 2.2% | — | Cisco IOS XECisco Secure Firewall Management CenterCisco Secure Firewall Threat DefenseSnort | 13/1/2021 | 11/8/2026 | Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerability is due to a flaw in the detection algorithm. An attacker could exploit this vulnerability by… | |
| Modificada | Media (5.3) | 2.0% | — | Cisco Secure Firewall Management CenterCisco Secure Firewall Threat DefenseCisco IOS XESnort+12 | 13/1/2021 | 11/8/2026 | Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect detection of the HTTP payload if it is… | |
| Modificada | Alta (7.5) | 2.0% | — | Cisco Secure Firewall Management CenterCisco Secure Firewall Threat DefenseCisco IOS XESnort | 13/1/2021 | 11/8/2026 | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of an HTTP range header. An attacker could exploit this vulnerability by sending crafted… | |
| Modificada | Media (5.8) | 2.3% | — | Cisco Secure Firewall Threat DefenseSnort | 21/10/2020 | 11/8/2026 | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured File Policy for HTTP. The vulnerability is due to incorrect detection of modified HTTP packets used in chunked responses. An attacker could exploit this… | |
| Modificada | Alta (7.5) | 1.1% | — | Cisco Sourcefire Snort | 16/5/2017 | 17/6/2026 | Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of 0xFFFF. Increasing the array size solves this problem. | |
| Modificada | Alta (7.5) | 1.1% | — | Cisco Snort++ | 16/5/2017 | 17/6/2026 | Cisco Sourcefire Snort 3.0 before build 233 mishandles Ether Type Validation. Since valid ether type and IP protocol numbers do not overlap, Snort++ stores all protocol decoders in a single array. That makes it possible to craft packets that have IP protocol numbers in the ether type field which will confuse the… | |
| Modificada | Alta (8.8) | 4.4% | — | Snort | 23/1/2017 | 17/6/2026 | Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse tcapi.dll that is located in the same folder on a remote file share as a pcap file that is being processed. | |
| Modificada | Media (5.8) | 2.1% | — | Netgate PfsensePfsense Snort Package | 2/7/2014 | 17/6/2026 | Multiple open redirect vulnerabilities in the Snort package before 3.0.13 for pfSense through 2.1.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the referer parameter to snort_rules_flowbits.php or (2) the returl parameter to snort_select_alias.php. | |
| Modificada | Media (4.3) | 1.7% | — | Netgate PfsensePfsense Snort Package | 2/7/2014 | 17/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in the Snort package before 3.0.13 for pfSense through 2.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the eng parameter to snort_import_aliases.php or (2) unspecified variables to snort_select_alias.php. | |
| Modificada | Media (4.4) | 0.60% | — | Cipherdyne Fwsnort | 8/2/2014 | 17/6/2026 | Untrusted search path vulnerability in fwsnort before 1.6.4, when not running as root, allows local users to execute arbitrary code via a Trojan horse fwsnort.conf in the current working directory. | |
| Modificada | Media (4.3) | 39% | 💥 Exploit | Snort | 28/10/2009 | 16/6/2026 | Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted IPv6 packet that uses the (1) TCP or (2) ICMP protocol. | |
| Modificada | Media (6.8) | 2.3% | — | Snort | 22/5/2008 | 16/6/2026 | preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment. | |
| Modificada | Alta (7.1) | 5.9% | 💥 Exploit | Snort | 10/3/2007 | 16/6/2026 | The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module loaded, allows remote attackers to cause a denial of service (segmentation fault and application crash) via certain UDP packets produced by send_morefrag_packet and… | |
| Modificada | Alta (10) | 79% | 💥 Exploit | SnortSourcefire Intrusion Sensor | 20/2/2007 | 16/6/2026 | Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic. | |
| Modificada | Alta (7.8) | 2.4% | — | Snort | 16/1/2007 | 16/6/2026 | Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locations via crafted GRE packets, which may cause corruption of log files or writing of sensitive information into log files. | |
| Modificada | Media (5) | 2.4% | — | Snort | 16/1/2007 | 16/6/2026 | Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote attackers to cause a denial of service (CPU consumption and detection outage) via crafted network traffic, aka a "backtracking attack." | |
| Modificada | Media (5) | 11% | 💥 Exploit | Sourcefire Snort | 2/6/2006 | 16/6/2026 | The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration. | |
| Modificada | Media (5) | 1.4% | — | Sourcefire Snort | 22/2/2006 | 16/6/2026 | The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths. | |
| Modificada | Alta (7.5) | 84% | 💥 Exploit | Sourcefire Snort | 18/10/2005 | 16/6/2026 | Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet. | |
| Modificada | Alta (7.8) | 11% | 💥 Exploit | Sourcefire Snort | 31/12/2004 | 16/6/2026 | The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference. | |
| Modificada | Alta (10) | 39% | 💥 Exploit | SmoothwallSourcefire Snort | 5/5/2003 | 16/6/2026 | Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow. | |
| Modificada | Alta (10) | 12% | — | Snort | 7/3/2003 | 16/6/2026 | Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets. | |
| Modificada | Baja (2.1) | 0.38% | — | Snortcenter | 31/12/2002 | 16/6/2026 | SnortCenter 0.9.5, when configured to push Snort rules, stores the rules in a temporary file with world-readable and world-writable permissions, which allows local users to obtain usernames and passwords for the alert database servers. | |
| Modificada | Media (5) | 3.6% | 💥 Exploit | Martin Roesch Snort | 25/3/2002 | 16/6/2026 | Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of service (crash and core dump) via a malformed ICMP packet. |