Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2860▼ 336 respecto a la semana anterior
Críticas / altas1383▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 214 respecto a la semana anterior
–

341 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.7)0.66%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software14/8/202511/8/2026
A vulnerability in the TLS 1.3 implementation for a specific cipher for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Firepower 3100 and 4200 Series devices could allow an authenticated, remote attacker to consume resources that are…
AnalizadaMedia (5.8)0.71%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software14/8/202518/9/2026
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition. This…
AnalizadaAlta (8.6)0.56%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense7/5/202511/8/2026
A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol processing of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS)…
AplazadaMedia (6.1)0.43%—Cisco Adaptive Security ApplianceAICisco Firepower Threat DefenseAI18/11/202417/6/2026
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. This vulnerability is due to…
AnalizadaMedia (5.3)0.66%—Cisco Secure Firewall Threat Defense15/11/202411/8/2026
A vulnerability in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured rules for ENIP traffic. This vulnerability is due to incomplete processing during deep packet inspection for…
AnalizadaAlta (7.5)1.4%—Cisco Cyber VisionCisco Secure Firewall Threat DefenseCisco Unified Threat Defense Snort Intrusion Prevention System Engine15/11/202411/8/2026
A vulnerability in the Modbus preprocessor of the Snort detection engine could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer overflow while processing Modbus traffic. An attacker could exploit this vulnerability by…
AnalizadaAlta (8.6)0.51%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Remote Access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition on an affected device. This…
AnalizadaAlta (8.6)0.51%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is…
AnalizadaMedia (5.3)0.55%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software23/10/202411/8/2026
A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to deny further VPN user authentications for several minutes, resulting in…
AnalizadaMedia (6.7)0.18%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the VPN web server of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary code with root-level privileges. Administrator-level privileges are required to exploit this vulnerability. This…
AnalizadaMedia (5.8)16%⚠ Explotación activaCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software23/10/202411/8/2026
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the RAVPN service. This vulnerability is due to resource exhaustion. An…
AnalizadaMedia (5.8)0.40%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the geolocation access control feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access control policy. This vulnerability is due to improper assignment of geolocation data. An attacker could exploit this vulnerability by sending…
AnalizadaAlta (8.6)0.52%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This…
AnalizadaAlta (8.4)0.21%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 1000, 2100, 3100, and 4200 Series could allow an unauthenticated, local attacker to access an affected system using static credentials. This vulnerability is due to the presence of static accounts with hard-coded passwords on an…
AnalizadaAlta (7.7)0.44%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Dynamic Access Policies (DAP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause an affected device to reload unexpectedly. To exploit this vulnerability, an attacker would need…
AnalizadaMedia (5.8)0.40%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the interaction between the TCP Intercept feature and the Snort 3 detection engine on Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured policies on an affected system. Devices that are configured with Snort 2 are not affected by this…
AnalizadaAlta (8.6)0.52%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due…
AnalizadaMedia (5.3)0.41%—Cisco Firepower Management CenterCisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the password change feature of Cisco Firepower Management Center (FMC) software could allow an unauthenticated, remote attacker to determine valid user names on an affected device. This vulnerability is due to improper authentication of password update responses. An attacker could exploit this…
AnalizadaMedia (5.8)0.45%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Network Service Group (NSG) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should be denied to flow through an…
AnalizadaMedia (6.1)0.41%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This…
AplazadaMedia (6)0.17%—Cisco Adaptive Security ApplianceAICisco Firepower Threat DefenseAICisco FxosAI23/10/202417/6/2026
A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to elevate their administrative privileges to root. The attacker would need valid…
AnalizadaAlta (7.5)0.73%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the TCP/IP traffic handling function of the Snort Detection Engine of Cisco Firepower Threat Defense (FTD) Software and Cisco FirePOWER Services could allow an unauthenticated, remote attacker to cause legitimate network traffic to be dropped, resulting in a denial of service (DoS) condition. This…
AnalizadaAlta (8.6)0.49%—Cisco SnortCisco Secure Firewall Threat Defense23/10/202411/8/2026
This vulnerability is due to an incorrect connection count comparison. An attacker could exploit this vulnerability by sending traffic through an affected device at a rate that exceeds a configured rate filter. A successful exploit could allow the attacker to successfully bypass the rate filter. This could allow…
AnalizadaMedia (6.1)0.42%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a browser that is accessing an affected device. This…
AnalizadaAlta (7.5)0.71%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the TLS processing feature of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an issue that occurs when TLS traffic is…
Orbitaley — Vulnerabilidades