Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
414 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6) | 0.15% | — | Cisco Secure Firewall Adaptive Security ApplianceAICisco Secure Firewall Threat DefenseAI | 14/8/2025 | 17/6/2026 | A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges. To exploit this vulnerability, the… | |
| Aplazada | Alta (8.6) | 0.64% | — | Cisco Secure Firewall Adaptive Security ApplianceAICisco Secure Firewall Threat DefenseAI | 14/8/2025 | 17/6/2026 | This vulnerability is due to an infinite loop condition that occurs when a Cisco Secure ASA or Cisco Secure FTD device processes DNS packets with DNS inspection enabled and the device is configured for NAT44, NAT64, or NAT46. An attacker could exploit this vulnerability by sending crafted DNS packets that match a… | |
| Aplazada | Media (4.3) | 0.20% | — | Cisco Secure Firewall Adaptive Security ApplianceAICisco Secure Firewall Threat DefenseAI | 14/8/2025 | 17/6/2026 | A vulnerability in the DHCP client functionality of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to exhaust available memory. This vulnerability is due to improper validation of incoming DHCP… | |
| Aplazada | Alta (8.6) | 0.42% | — | Cisco Secure Firewall Adaptive Security ApplianceAICisco Secure Firewall Threat DefenseAI | 14/8/2025 | 17/6/2026 | A vulnerability in the certificate processing of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This… | |
| Analizada | Alta (7.7) | 0.66% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 14/8/2025 | 11/8/2026 | A vulnerability in the TLS 1.3 implementation for a specific cipher for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Firepower 3100 and 4200 Series devices could allow an authenticated, remote attacker to consume resources that are… | |
| Analizada | Media (5.8) | 0.71% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 14/8/2025 | 18/9/2026 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition. This… | |
| Analizada | Alta (8.6) | 0.56% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 7/5/2025 | 11/8/2026 | A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol processing of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS)… | |
| Aplazada | Media (6.1) | 0.43% | — | Cisco Adaptive Security ApplianceAICisco Firepower Threat DefenseAI | 18/11/2024 | 17/6/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. This vulnerability is due to… | |
| Analizada | Alta (8.6) | 0.92% | — | Cisco Adaptive Security Appliance Software | 18/11/2024 | 17/6/2026 | A vulnerability in the SSL/TLS handler of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause the affected device to reload unexpectedly, leading to a denial of service (DoS) condition. The vulnerability is due to improper error handling on established SSL/TLS… | |
| Analizada | Media (5.3) | 0.49% | — | Cisco Adaptive Security Appliance Software | 23/10/2024 | 17/6/2026 | A vulnerability in the SSH server of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition for the SSH server of an affected device. This vulnerability is due to a logic error when an SSH session is established. An attacker could… | |
| Analizada | Alta (8.6) | 0.51% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition on an affected device. This… | |
| Analizada | Alta (8.6) | 0.51% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is… | |
| Analizada | Media (5.3) | 0.55% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 23/10/2024 | 11/8/2026 | A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to deny further VPN user authentications for several minutes, resulting in… | |
| Analizada | Media (6.7) | 0.18% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the VPN web server of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary code with root-level privileges. Administrator-level privileges are required to exploit this vulnerability. This… | |
| Analizada | Media (5.8) | 16% | ⚠ Explotación activa | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 23/10/2024 | 11/8/2026 | A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the RAVPN service. This vulnerability is due to resource exhaustion. An… | |
| Analizada | Alta (8.6) | 0.52% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This… | |
| Analizada | Alta (7.7) | 0.44% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Dynamic Access Policies (DAP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause an affected device to reload unexpectedly. To exploit this vulnerability, an attacker would need… | |
| Analizada | Alta (8.6) | 0.52% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due… | |
| Analizada | Media (5.8) | 0.45% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the Network Service Group (NSG) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should be denied to flow through an… | |
| Analizada | Media (6.1) | 0.41% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This… | |
| Aplazada | Media (6) | 0.17% | — | Cisco Adaptive Security ApplianceAICisco Firepower Threat DefenseAICisco FxosAI | 23/10/2024 | 17/6/2026 | A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to elevate their administrative privileges to root. The attacker would need valid… | |
| Analizada | Media (6.1) | 0.42% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This… | |
| Analizada | Media (5.9) | 0.67% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the session authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to prevent users from authenticating. This vulnerability is due to… | |
| Analizada | Crítica (9.9) | 1.2% | — | Cisco Adaptive Security Appliance Software | 23/10/2024 | 17/6/2026 | A vulnerability in the SSH subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to execute operating system commands as root. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by submitting crafted… | |
| Analizada | Media (5.8) | 0.48% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 23/10/2024 | 11/8/2026 | A vulnerability in the AnyConnect firewall for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should have been denied to flow through an affected… |