Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
–

309 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.6)0.77%—Cisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain…
ModificadaMedia (4)0.53%—Cisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in the SSL file policy implementation of Cisco Firepower Threat Defense (FTD) Software that occurs when the SSL/TLS connection is configured with a URL Category and the Snort 3 detection engine could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to unexpectedly…
ModificadaAlta (8.6)0.65%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/202311/8/2026
A vulnerability in ICMPv6 processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper processing of ICMPv6 messages. An attacker could…
AnalizadaAlta (7.5)100%⚠ Explotación activa💥 ExploitSiemens Simatic S7-1500 CPU 1518f-4 Pn/dp MFP FirmwareSiemens Sinec INSSiemens Sinec NMSSiemens ST7 Scadaconnect+16110/10/202311/8/2026
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
AnalizadaCrítica (9.1)25%⚠ Explotación activaCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense6/9/202311/8/2026
A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a brute force attack in an attempt to identify valid username and password combinations or an authenticated,…
ModificadaAlta (7.5)0.93%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software28/6/202311/8/2026
A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Appliances could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly,…
ModificadaAlta (7.5)0.72%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat Defense23/3/202311/8/2026
A vulnerability in the deterministic random bit generator (DRBG), also known as pseudorandom number generator (PRNG), in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco ASA 5506-X, ASA 5508-X, and ASA 5516-X Firewalls could allow an unauthenticated, remote…
ModificadaMedia (5.9)0.68%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat DefenseCisco IOSCisco IOS XE23/3/202311/8/2026
A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.…
ModificadaMedia (5.3)0.84%—Cisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the interaction of SIP and Snort 3 for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to restart. This vulnerability is due to a lack of error-checking when SIP bidirectional flows are being inspected by Snort 3. An…
ModificadaMedia (4.9)0.74%—Cisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker with high privileges to execute configuration commands on an affected system. This vulnerability exists because access to HTTPS endpoints is not properly restricted on an affected…
ModificadaAlta (7.5)0.93%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in dynamic access policies (DAP) functionality of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is…
ModificadaAlta (7.5)0.93%—Cisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to a memory handling error that occurs…
ModificadaMedia (5.8)0.95%—Cisco Secure Firewall Threat DefenseCisco Cyber VisionCisco Meraki MX Security Appliance Firmware15/11/202211/8/2026
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to…
ModificadaMedia (5.3)0.69%—Cisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the TLS handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability is due to improper implementation of countermeasures against a Bleichenbacher attack on a device that uses SSL decryption…
ModificadaMedia (6.7)0.29%—Cisco Secure Firewall Threat DefenseCisco Firepower Extensible Operating System15/11/202211/8/2026
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software and Cisco FXOS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. This vulnerability is due to improper input validation for specific CLI commands. An attacker could…
ModificadaMedia (5.8)0.73%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the authentication and authorization flows for VPN connections in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to establish a connection as a different user. This vulnerability is due to a flaw in the…
ModificadaMedia (6.5)0.53%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat DefenseCisco Firepower Services Software FOR ASA15/11/202211/8/2026
A vulnerability in the SSL/TLS client of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper memory management when a…
ModificadaMedia (6.5)0.84%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to…
ModificadaMedia (6.5)0.82%—Cisco Secure Firewall Threat DefenseCisco Umbrella Virtual ApplianceCisco Cyber Vision15/11/202211/8/2026
Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to…
ModificadaAlta (7.5)0.93%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the processing of SSH connections of Cisco Firepower Management Center (FMC) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error handling when…
ModificadaMedia (6.8)0.34%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense15/11/202211/8/2026
A vulnerability in the secure boot implementation of Cisco Secure Firewalls 3100 Series that are running Cisco Adaptive Security Appliance (ASA) Software or Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated attacker with physical access to the device to bypass the secure boot functionality.…
ModificadaAlta (7.5)18%💥 PoCCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense10/8/202211/8/2026
A vulnerability in the handling of RSA keys on devices running Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to retrieve an RSA private key. This vulnerability is due to a logic error when the RSA key is stored in…
ModificadaMedia (6.1)1.8%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software10/8/202211/8/2026
A vulnerability in the VPN web client services component of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct browser-based attacks against users of an affected device. This vulnerability is due to improper…
ModificadaAlta (7.5)1.7%—Cisco Secure Firewall Threat Defense3/5/202211/8/2026
A vulnerability in the Snort rule evaluation function of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper handling of the DNS reputation enforcement rule. An attacker…
ModificadaAlta (7.5)1.6%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software3/5/202211/8/2026
A vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service condition (DoS) on an affected device. This vulnerability is due to a lack of proper processing of…