Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
140 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9) | 3.7% | — | Cisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN ControllerCisco 4100 Wireless LAN Controller+5 | 24/1/2013 | 16/6/2026 | The HTTP Profiling functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.3.101.0 allows remote authenticated users to execute arbitrary code via a crafted HTTP User-Agent header, aka Bug ID CSCuc15636. | |
| Modificada | Alta (7.8) | 1.8% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN Controller+5 | 24/1/2013 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote attackers to cause a denial of service (Access Point reload) via crafted SIP packets, aka Bug ID CSCts87659. | |
| Modificada | Alta (7.8) | 1.8% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN Controller+5 | 24/1/2013 | 16/6/2026 | The Wireless Intrusion Prevention System (wIPS) component on Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.0, 7.1 and 7.2 before 7.2.110.0, and 7.3 before 7.3.101.0 allows remote attackers to cause a denial of service (device reload) via crafted IP packets, aka Bug ID CSCtx80743. | |
| Modificada | Media (4.3) | 3.7% | 💥 Exploit | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN Controller+5 | 19/12/2012 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka Bug ID CSCud65187, a different vulnerability than CVE-2012-5992. | |
| Modificada | Media (6.8) | 1.8% | 💥 Exploit | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN Controller+5 | 19/12/2012 | 16/6/2026 | Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrative accounts via screens/aaa/mgmtuser_create.html or (2) insert XSS sequences via… | |
| Modificada | Media (6.3) | 5.5% | 💥 Exploit | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2500 Wireless LAN Controller+5 | 19/12/2012 | 16/6/2026 | screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to cause a denial of service (device reload) via a certain buttonClicked value in an internal webauth_type request, aka Bug ID CSCud50209. | |
| Modificada | Alta (9.3) | 13% | 💥 Exploit | Sony Smartwi Connection UtillitySony Vaio Easy ConnectSony Vaio PC Wireless LAN WizardSony Vaio Wireless Wizard | 7/6/2012 | 16/6/2026 | Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wireless Wizard 1.00, 1.00_64, 1.0.1, 2.0, and 3.0; SmartWi Connection Utility 4.7, 4.7.4, 4.8, 4.9, 4.10, and 4.11; and VAIO Easy Connect software 1.0.0 and 1.1.0 allow remote… | |
| Modificada | Alta (9.3) | 1.8% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2106 Wireless LAN Controller+9 | 1/3/2012 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.4, when CPU-based ACLs are enabled, allow remote attackers to read or modify the configuration via unspecified vectors, aka Bug ID CSCtu56709. | |
| Modificada | Alta (7.8) | 1.3% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2106 Wireless LAN Controller+9 | 1/3/2012 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0 and 7.1 before 7.1.91.0, when WebAuth is enabled, allow remote attackers to cause a denial of service (device reload) via a sequence of (1) HTTP or (2) HTTPS packets, aka Bug ID CSCtt47435. | |
| Modificada | Alta (7.8) | 1.9% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2106 Wireless LAN Controller+9 | 1/3/2012 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) devices with software 6.0 and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote attackers to cause a denial of service (device reload) via a sequence of IPv6 packets, aka Bug ID CSCtt07949. | |
| Modificada | Alta (7.8) | 1.3% | — | Cisco Wireless LAN Controller SoftwareCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN ControllerCisco 2106 Wireless LAN Controller+9 | 1/3/2012 | 16/6/2026 | The administrative management interface on Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allows remote attackers to cause a denial of service (device crash) via a malformed URL in an HTTP request, aka Bug ID CSCts81997. | |
| Modificada | Alta (7.8) | 10% | 💥 Exploit | Cisco Wireless LAN Controller Software | 3/5/2011 | 16/6/2026 | Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 6.0 before 6.0.200.0, 7.0 before 7.0.98.216, and 7.0.1xx before 7.0.112.0 allows remote attackers to cause a denial of service (device reload) via a sequence of ICMP packets, aka Bug ID CSCth74426. | |
| Modificada | Media (5) | 1.1% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) software, possibly 6.0.x or possibly 4.1 through 6.0.x, allows remote attackers to bypass ACLs in the controller CPU, and consequently send network traffic to unintended segments or devices, via unspecified vectors, a different vulnerability than CVE-2010-0575. | |
| Modificada | Alta (9) | 1.5% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and modify the configuration, and possibly obtain administrative privileges, via unspecified vectors, a different vulnerability than CVE-2010-2842 and CVE-2010-2843. | |
| Modificada | Alta (9) | 1.5% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and modify the configuration, and possibly obtain administrative privileges, via unspecified vectors, a different vulnerability than CVE-2010-2842 and CVE-2010-3033. | |
| Modificada | Alta (9) | 1.5% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and modify the configuration, and possibly obtain administrative privileges, via unspecified vectors, a different vulnerability than CVE-2010-2843 and CVE-2010-3033. | |
| Modificada | Media (6.8) | 0.86% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 4.2 before 4.2.209.0; 4.2M before 4.2.207.54M; 5.0, 5.1, and 6.0 before 6.0.196.0; and 5.2 before 5.2.193.11 allows remote authenticated users to cause a denial of service (device reload) via crafted HTTP packets that trigger invalid arguments… | |
| Modificada | Media (5) | 1.1% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Cisco Wireless LAN Controller (WLC) software, possibly 6.0.x or possibly 4.1 through 6.0.x, allows remote attackers to bypass ACLs in the controller CPU, and consequently send network traffic to unintended segments or devices, via unspecified vectors, a different vulnerability than CVE-2010-3034. | |
| Modificada | Alta (7.8) | 1.2% | — | Cisco Wireless LAN Controller Software | 10/9/2010 | 16/6/2026 | Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 3.2 before 3.2.215.0; 4.1 and 4.2 before 4.2.205.0; 4.1M and 4.2M before 4.2.207.54M; 5.0, 5.1, and 6.0 before 6.0.188.0; and 5.2 before 5.2.193.11 allows remote attackers to cause a denial of service (device reload) via a crafted IKE packet,… | |
| Modificada | Alta (10) | 2.1% | — | Cisco Catalyst 3750gCisco 1500 Wireless LAN ControllerCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN Controller+3 | 29/7/2009 | 16/6/2026 | Unspecified vulnerability on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0 and 5.x before 5.2.191.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and Catalyst… | |
| Modificada | Alta (7.8) | 1.6% | — | Cisco Catalyst 3750gCisco 1500 Wireless LAN ControllerCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN Controller+3 | 29/7/2009 | 16/6/2026 | Memory leak on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0, 5.1 before 5.1.163.0, and 5.0 and 5.2 before 5.2.178.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers,… | |
| Modificada | Alta (7.8) | 1.4% | — | Cisco Catalyst 3750gCisco 1500 Wireless LAN ControllerCisco 2000 Wireless LAN ControllerCisco 2100 Wireless LAN Controller+3 | 29/7/2009 | 16/6/2026 | The administrative web interface on the Cisco Wireless LAN Controller (WLC) platform 4.2 before 4.2.205.0 and 5.x before 5.2.178.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and… | |
| Modificada | Alta (9) | 2.6% | — | Cisco Catalyst 3750 Series Integrated Wireless LAN ControllerCisco Catalyst 6500 Wireless Services ModulesCisco Wireless LAN Controller Software | 5/2/2009 | 16/6/2026 | Unspecified vulnerability in the Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Controller with software 4.2.173.0 allows remote authenticated users to gain privileges via unknown vectors, as demonstrated by escalation from the… | |
| Modificada | Alta (7.8) | 1.6% | — | Cisco 4400 Wireless LAN ControllerCisco Catalyst 3750 Series Integrated Wireless LAN ControllerCisco Catalyst 6500 Series Integrated Wireless LAN ControllerCisco Catalyst 7600 Series Wireless LAN Controller+1 | 5/2/2009 | 16/6/2026 | Unspecified vulnerability in the Wireless LAN Controller (WLC) TSEC driver in the Cisco 4400 WLC, Cisco Catalyst 6500 and 7600 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Controller with software 4.x before 4.2.176.0 and 5.x before 5.1 allows remote attackers to cause a denial of… | |
| Modificada | Alta (7.8) | 1.9% | — | Cisco 4400 Wireless LAN ControllerCisco Catalyst 3750 Series Integrated Wireless LAN ControllerCisco Catalyst 6500 Series Integrated Wireless LAN ControllerCisco Catalyst 7600 Series Wireless LAN Controller+1 | 5/2/2009 | 16/6/2026 | The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Controller with software 4.x before 4.2.176.0 and 5.2.x before 5.2.157.0 allow remote attackers to cause a denial of service (device reload) via a web authentication (aka… |