Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

31 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.6)0.26%—Cisco Unified IP Phone 7906Cisco Unified IP Phone 7911gCisco Unified IP Phone 7931gCisco Unified IP Phone 7941g+112/6/201116/6/2026
Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bug ID CSCtn65815.
ModificadaMedia (6.6)0.26%—Cisco Unified IP Phone 7906Cisco Unified IP Phone 7911gCisco Unified IP Phone 7931gCisco Unified IP Phone 7941g+112/6/201116/6/2026
The su utility on Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.0.3 allows local users to gain privileges via unspecified vectors, aka Bug ID CSCtf07426.
ModificadaAlta (7.1)2.6%—Cisco Unified IP Phone 7940gCisco Unified IP Phone 7960g16/1/200916/6/2026
Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to cause a denial of service (device reboot) or possibly execute arbitrary code via a Realtime Transport Protocol (RTP) packet with malformed headers.
ModificadaBaja (3.5)1.0%—Cisco Unified IP Phone30/11/200716/6/2026
The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that…
ModificadaAlta (7.2)0.34%—Cisco Unified IP Phone Firmware 7906gCisco Unified IP Phone Firmware 7911gCisco Unified IP Phone Firmware 7941gCisco Unified IP Phone Firmware 7961g+222/2/200716/6/2026
The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063.
ModificadaAlta (10)3.4%—Cisco Unified IP Phone Firmware 7906gCisco Unified IP Phone Firmware 7911gCisco Unified IP Phone Firmware 7941gCisco Unified IP Phone Firmware 7961g+222/2/200716/6/2026
The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.
Orbitaley — Vulnerabilidades