Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
414 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.7) | 0.48% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 29/4/2021 | 11/8/2026 | A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) of an affected device. The vulnerability is due to insufficient input… | |
| Modificada | Alta (7.5) | 1.7% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 29/4/2021 | 11/8/2026 | Multiple vulnerabilities in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to lack of proper input validation of the HTTPS… | |
| Modificada | Media (6.1) | 0.83% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance Software | 21/10/2020 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not… | |
| Modificada | Baja (3.7) | 1.3% | — | Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the TLS handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 1000 Series firewalls could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper implementation… | |
| Modificada | Media (6.1) | 1.1% | — | Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.… | |
| Modificada | Media (6.1) | 1.2% | — | Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.… | |
| Modificada | Media (6.1) | 1.2% | — | Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.… | |
| Analizada | Media (6.1) | 86% | ⚠ Explotación activa💥 Exploit | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.… | |
| Modificada | Media (6.5) | 1.2% | — | Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access rule and access parts of the WebVPN portal that are supposed to be blocked. The vulnerability… | |
| Modificada | Alta (8.6) | 1.8% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the SSL/TLS session handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory leak when closing… | |
| Modificada | Media (5.3) | 1.3% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the FTP inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass FTP inspection. The vulnerability is due to ineffective flow tracking of FTP traffic. An attacker could exploit… | |
| Modificada | Media (4.7) | 1.3% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the Clientless SSL VPN (WebVPN) of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to inject arbitrary HTTP headers in the responses of the affected system. The vulnerability is due to improper input… | |
| Modificada | Alta (7.5) | 1.7% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is… | |
| Modificada | Alta (7.5) | 2.7% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory exhaustion… | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due… | |
| Modificada | Alta (7.5) | 1.4% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability… | |
| Modificada | Media (6.7) | 0.32% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 21/10/2020 | 11/8/2026 | Multiple vulnerabilities in the secure boot process of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software for the Firepower 1000 Series and Firepower 2100 Series Appliances could allow an authenticated, local attacker to bypass the secure boot mechanism. The vulnerabilities… | |
| Modificada | Media (6.7) | 0.40% | — | Cisco Firepower Extensible Operating SystemCisco Adaptive Security Appliance SoftwareCisco Firepower Threat Defense | 21/10/2020 | 17/6/2026 | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating… | |
| Modificada | Alta (8.6) | 1.9% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to upload arbitrary-sized files to specific folders on an affected device, which could lead to an unexpected device reload. The… | |
| Modificada | Alta (8.6) | 2.0% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak on an affected device. This memory leak could prevent traffic from being processed… | |
| Modificada | Alta (8.6) | 3.9% | — | Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 21/10/2020 | 11/8/2026 | A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to a lack… | |
| Modificada | Alta (7.2) | 4.1% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense | 23/9/2020 | 11/8/2026 | A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to execute arbitrary code with root privileges on the underlying Linux operating system of an… | |
| Analizada | Alta (7.5) | 100% | ⚠ Explotación activa💥 Exploit | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 22/7/2020 | 11/8/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and read sensitive files on a targeted system. The vulnerability is due to a lack of… | |
| Modificada | Alta (7.4) | 0.43% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 6/5/2020 | 11/8/2026 | A vulnerability in the ARP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Security Appliances could allow an unauthenticated, adjacent attacker to cause an affected device to reload, resulting in a denial of… | |
| Modificada | Alta (7.5) | 1.2% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 6/5/2020 | 11/8/2026 | A vulnerability in the DHCP module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. The vulnerability is due to incorrect processing of certain DHCP… |