Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
31 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.6) | 0.26% | — | Cisco Unified IP Phone 7906Cisco Unified IP Phone 7911gCisco Unified IP Phone 7931gCisco Unified IP Phone 7941g+11 | 2/6/2011 | 16/6/2026 | Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bug ID CSCtn65815. | |
| Modificada | Media (6.6) | 0.26% | — | Cisco Unified IP Phone 7906Cisco Unified IP Phone 7911gCisco Unified IP Phone 7931gCisco Unified IP Phone 7941g+11 | 2/6/2011 | 16/6/2026 | The su utility on Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.0.3 allows local users to gain privileges via unspecified vectors, aka Bug ID CSCtf07426. | |
| Modificada | Alta (7.1) | 2.6% | — | Cisco Unified IP Phone 7940gCisco Unified IP Phone 7960g | 16/1/2009 | 16/6/2026 | Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to cause a denial of service (device reboot) or possibly execute arbitrary code via a Realtime Transport Protocol (RTP) packet with malformed headers. | |
| Modificada | Baja (3.5) | 1.0% | — | Cisco Unified IP Phone | 30/11/2007 | 16/6/2026 | The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that… | |
| Modificada | Alta (7.2) | 0.34% | — | Cisco Unified IP Phone Firmware 7906gCisco Unified IP Phone Firmware 7911gCisco Unified IP Phone Firmware 7941gCisco Unified IP Phone Firmware 7961g+2 | 22/2/2007 | 16/6/2026 | The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063. | |
| Modificada | Alta (10) | 3.4% | — | Cisco Unified IP Phone Firmware 7906gCisco Unified IP Phone Firmware 7911gCisco Unified IP Phone Firmware 7941gCisco Unified IP Phone Firmware 7961g+2 | 22/2/2007 | 16/6/2026 | The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device. |