Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
–

341 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.9)0.67%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the session authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to prevent users from authenticating. This vulnerability is due to…
AnalizadaAlta (7.5)0.66%—Cisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Snort 2 and Snort 3 TCP and UDP detection engine of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Appliances could allow an unauthenticated, remote attacker to cause memory corruption, which could cause the Snort detection engine to restart unexpectedly. This…
AnalizadaMedia (5.8)0.48%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the AnyConnect firewall for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should have been denied to flow through an affected…
AnalizadaMedia (5.8)0.48%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the AnyConnect firewall for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access control list (ACL) and allow traffic that should have been denied to flow through an affected…
AnalizadaAlta (7.7)0.64%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense23/10/202411/8/2026
A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause an unexpected reload of the device. This vulnerability is due to insufficient input…
AplazadaAlta (8.6)0.59%—Cisco Adaptive Security Virtual ApplianceAICisco Secure Firewall Threat Defense VirtualAI23/10/202416/9/2026
Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv) models. However, it was later found that this vulnerability affects all Cisco Secure Firewall Adaptive Security Appliance…
AnalizadaMedia (6.5)0.42%—Cisco Unified Threat Defense Snort Intrusion Prevention System Engine25/9/202417/6/2026
A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS) Engine for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass configured security policies or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to…
AnalizadaMedia (5.8)0.37%—Cisco Secure Firewall Threat DefenseCisco Unified Threat Defense Snort Intrusion Prevention System EngineCisco Snort22/5/202411/8/2026
Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System (IPS) rule engine that could allow an unauthenticated, remote attacker to bypass the configured rules on an affected system. This vulnerability is due to incorrect HTTP packet handling. An attacker could exploit this…
AnalizadaMedia (5)0.33%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense22/5/202411/8/2026
A vulnerability in the implementation of SAML 2.0 single sign-on (SSO) for remote access VPN services in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to successfully establish a VPN session on an affected device. This…
AnalizadaMedia (5.8)0.40%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense22/5/202411/8/2026
A vulnerability in the activation of an access control list (ACL) on Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the protection that is offered by a configured ACL on an affected device. This vulnerability…
AnalizadaMedia (5.8)0.37%—Cisco Secure Firewall Threat Defense22/5/202411/8/2026
A vulnerability in the file policy feature that is used to inspect encrypted archive files of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured file policy to block an encrypted archive file. This vulnerability exists because of a logic error when a…
ModificadaMedia (6.7)0.70%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense24/4/202411/8/2026
A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in Cisco ASA Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges.…
AnalizadaMedia (6)19%⚠ Explotación activaCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense24/4/202411/8/2026
A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been available in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary code with root-level…
AnalizadaAlta (8.6)71%⚠ Explotación activaCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense24/4/202411/8/2026
A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability…
ModificadaMedia (4.3)0.41%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense12/12/202311/8/2026
A vulnerability in the AnyConnect SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to send packets with another VPN user's source IP address. This vulnerability is due to improper validation of the…
ModificadaMedia (5.3)0.43%—Cisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attacker to potentially bypass IP address restrictions. This vulnerability exists because the configuration for IP geolocation rules is not parsed properly. An attacker could exploit this vulnerability by spoofing an IP…
ModificadaMedia (6.1)0.38%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 single sign-on (SSO) for remote access VPN in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to intercept the SAML assertion of a…
ModificadaMedia (4.3)0.29%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the remote access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to bypass a configured multiple certificate authentication policy and connect using only a valid username and…
ModificadaMedia (5.3)0.56%—SnortCisco Secure Firewall Threat DefenseCisco IOS XE1/11/202311/8/2026
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker…
ModificadaAlta (8.6)0.64%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of…
ModificadaAlta (8.6)0.69%—Cisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in ICMPv6 inspection when configured with the Snort 2 detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the CPU of an affected device to spike to 100 percent, which could stop all traffic processing and result in a denial of…
ModificadaMedia (5.8)0.52%—Cisco Secure Firewall Threat DefenseCisco Cyber VisionCisco Unified Threat DefenseCisco Meraki MX Security Appliance Firmware1/11/202311/8/2026
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a flaw in the FTP module of the Snort detection engine. An attacker could exploit this…
ModificadaMedia (4)0.54%—Cisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the TLS 1.3 implementation of the Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to unexpectedly restart. This vulnerability is due to a logic error in how memory allocations are handled during a TLS 1.3 session.…
ModificadaAlta (8.2)0.43%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the inter-device communication mechanisms between devices that are running Cisco Firepower Threat Defense (FTD) Software and devices that are running Cisco Firepower Management (FMC) Software could allow an authenticated, local attacker to execute arbitrary commands with root permissions on the…
ModificadaAlta (8.6)0.68%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software1/11/202311/8/2026
A vulnerability in the AnyConnect SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an implementation…
Orbitaley — Vulnerabilidades