Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2882▼ 181 respecto a la semana anterior
Críticas / altas1279▼ 60 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)487▼ 22 respecto a la semana anterior
–

120 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)2.0%—Cisco Telepresence System Software IX12/2/201517/6/2026
The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-recovery account's access, which allows remote authenticated users to obtain HelpDesk-equivalent privileges by leveraging device-recovery authentication, aka Bug ID…
ModificadaBaja (2.9)0.55%—Juniper SmartpassJuniper Mobile System SoftwareJuniper Ringmaster12/12/201417/6/2026
Juniper WLC devices with WLAN Software releases 8.0.x before 8.0.4, 9.0.x before 9.0.2.11, 9.0.3.x before 9.0.3.5, and 9.1.x before 9.1.1, when "Proxy ARP" or "No Broadcast" features are enabled in a clustered setup, allows remote attackers to cause a denial of service (device disconnect) via unspecified vectors.
ModificadaAlta (7.8)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System Edge 75 MXPCisco Telepresence System Edge 85 MXPCisco Telepresence System Edge 95 MXP12/9/201417/6/2026
Memory leak in Cisco TelePresence System Edge MXP Series Software F9.3.3 and earlier allows remote attackers to cause a denial of service (management outage) via multiple TELNET connections, aka Bug ID CSCuo63677.
ModificadaAlta (8.5)2.6%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center16/7/201417/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Management System (BIMS) before 7.0 E0201P02 allows remote authenticated users to obtain sensitive information or modify data via unknown vectors, aka ZDI-CAN-2312.
ModificadaAlta (7.8)4.6%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center16/7/201417/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Management System (BIMS) before 7.0 E0201P02 allows remote attackers to obtain sensitive information via unknown vectors, aka ZDI-CAN-2090.
ModificadaAlta (7.8)4.6%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center16/7/201417/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Management System (BIMS) before 7.0 E0201P02 allows remote attackers to obtain sensitive information via unknown vectors, aka ZDI-CAN-2089.
ModificadaAlta (7.8)4.6%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center16/7/201417/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Management System (BIMS) before 7.0 E0201P02 allows remote attackers to obtain sensitive information via unknown vectors, aka ZDI-CAN-2088.
ModificadaAlta (7.8)4.6%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center16/7/201417/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Management System (BIMS) before 7.0 E0201P02 allows remote attackers to obtain sensitive information via unknown vectors, aka ZDI-CAN-2080.
ModificadaAlta (7.6)2.0%—Cisco Unified Computing System 6120xp Fabric InterconnectCisco Unified Computing System 6140xp Fabric InterconnectCisco Unified Computing System 6248up Fabric InterconnectCisco Unified Computing System 6296up Fabric Interconnect+2326/5/201417/6/2026
Buffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX-OS 5.0 before 5.0(3)U2(2) on Nexus 3000 devices, NX-OS 4.1 before 4.1(2)E1(1l) on Nexus 4000 devices, NX-OS 5.x before 5.1(3)N1(1) on Nexus 5000 devices, NX-OS 5.2…
ModificadaMedia (4.3)1.1%—Cisco Telepresence System Software26/5/201417/6/2026
Cisco TelePresence System (CTS) 6.0(.5)(5) and earlier falls back to HTTP when certain HTTPS sessions cannot be established, which allows man-in-the-middle attackers to obtain sensitive directory information by leveraging a network position between CTS and Cisco Unified Communications Manager (UCM) to block HTTPS…
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45731.
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45745.
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722.
ModificadaAlta (7.8)1.3%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45720.
ModificadaAlta (7.1)1.2%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45733.
ModificadaAlta (7.1)1.2%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45739.
ModificadaMedia (6.5)0.72%—Bluecoat Content Analysis System SoftwareBluecoat Content Analysis System30/4/201417/6/2026
The commandline interface in Blue Coat Content Analysis System (CAS) 1.1 before 1.1.4.2 allows remote administrators to execute arbitrary commands via unspecified vectors, related to "command injection."
ModificadaMedia (5)1.8%—Cisco ONS 15454 System SoftwareCisco ONS 15454 System SoftwareCisco ONS 1545412/4/201417/6/2026
Cisco ONS 15454 controller cards with software 10.0 and earlier allow remote attackers to cause a denial of service (card reload) via a crafted HTTP URI, aka Bug ID CSCun06870.
ModificadaMedia (5)1.8%—Cisco ONS 15454 System SoftwareCisco ONS 1545412/4/201417/6/2026
Cisco ONS 15454 controller cards with software 9.6 and earlier allow remote attackers to cause a denial of service (card reset) via a TCP FIN attack that triggers file-descriptor exhaustion and a failure to open a CAL pipe, aka Bug ID CSCug97348.
ModificadaMedia (5)1.8%—Cisco ONS 15454 System SoftwareCisco ONS 1545412/4/201417/6/2026
Cisco ONS 15454 controller cards with software 9.6 and earlier allow remote attackers to cause a denial of service (flash write outage) via a TCP FIN attack that triggers file-descriptor exhaustion, aka Bug ID CSCug97315.
ModificadaMedia (4)1.4%—Cisco ONS 15454 System SoftwareCisco ONS 1545410/4/201417/6/2026
The session-termination functionality on Cisco ONS 15454 controller cards with software 9.6 and earlier does not initialize an unspecified pointer, which allows remote authenticated users to cause a denial of service (card reset) via crafted session-close actions, aka Bug ID CSCug97416.
ModificadaAlta (8.3)2.3%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1300-65Cisco Telepresence System 3000+1022/1/201417/6/2026
The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX1310 65, and TX9xxx before 6.0.4(11), allows remote attackers to execute arbitrary commands or cause a denial of service (stack memory corruption) via a crafted XML-RPC…
ModificadaMedia (5)1.9%—Cisco ONS 15454 System SoftwareCisco ONS 15454 MsppCisco ONS 15454 MstpCisco ONS 15454e Optical Transport Platform+418/12/201317/6/2026
The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to cause a denial of service (watchdog timeout and TNC reset) via a flood of network traffic, aka Bug ID CSCud97155.
ModificadaMedia (5)38%—HP Intelligent Management CenterHP IMC Branch Intelligent Management System Software Module13/10/201316/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) and HP IMC Branch Intelligent Management System Software Module (aka BIMS) allows remote attackers to obtain sensitive information via unknown vectors, aka ZDI-CAN-1607.
ModificadaAlta (10)63%—HP IMC Branch Intelligent Management System Software ModuleHP Intelligent Management Center13/10/201316/6/2026
Unspecified vulnerability in HP Intelligent Management Center (iMC) and HP IMC Branch Intelligent Management System Software Module (aka BIMS) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1606.