Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
414 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.2% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 6/5/2020 | 11/8/2026 | A vulnerability in the implementation of the Border Gateway Protocol (BGP) module in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect… | |
| Modificada | Alta (7.5) | 1.2% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 6/5/2020 | 11/8/2026 | A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper management of… | |
| Modificada | Alta (7.5) | 2.0% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 6/5/2020 | 11/8/2026 | A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the reload of an affected device, resulting in a denial of service (DoS) condition. The… | |
| Analizada | Alta (7.5) | 72% | ⚠ Explotación activa | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 6/5/2020 | 12/8/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to retrieve memory contents on an affected device, which could lead to the disclosure of confidential information. The… | |
| Modificada | Alta (7.5) | 2.0% | — | Cisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x Firmware+10 | 6/5/2020 | 11/8/2026 | Multiple vulnerabilities in the Media Gateway Control Protocol (MGCP) inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The… | |
| Modificada | Alta (8.6) | 1.9% | — | Cisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x Firmware+10 | 6/5/2020 | 11/8/2026 | A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust memory resources on the affected device, leading to a denial of… | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x Firmware+10 | 6/5/2020 | 11/8/2026 | A vulnerability in the Open Shortest Path First (OSPF) implementation in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak on an affected device. The vulnerability is due to incorrect processing of… | |
| Modificada | Alta (8.6) | 1.9% | — | Cisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x Firmware+10 | 6/5/2020 | 11/8/2026 | A vulnerability in DNS over IPv6 packet processing for Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to unexpectedly reload, resulting in a denial of service (DoS) condition. The vulnerability is due to… | |
| Modificada | Crítica (9.1) | 97% | 💥 Exploit | Cisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x Firmware+10 | 6/5/2020 | 11/8/2026 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and obtain read and delete access to sensitive files on a targeted system. The… | |
| Modificada | Crítica (9.8) | 2.4% | — | Cisco ASA 5505 FirmwareCisco ASA 5510 FirmwareCisco ASA 5512-x FirmwareCisco ASA 5515-x Firmware+9 | 6/5/2020 | 17/6/2026 | A vulnerability in the Kerberos authentication feature of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to impersonate the Kerberos key distribution center (KDC) and bypass authentication on an affected device that is configured to perform Kerberos authentication for… | |
| Modificada | Alta (7.8) | 0.90% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance SoftwareCisco Firepower Extensible Operating SystemCisco UCS Manager | 26/2/2020 | 11/8/2026 | A vulnerability in the CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS). The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by including… | |
| Modificada | Media (6.7) | 0.29% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance SoftwareCisco Firepower Extensible Operating System | 26/2/2020 | 11/8/2026 | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to read or write arbitrary files on the underlying operating system (OS). The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by including crafted arguments to a specific… | |
| Modificada | Alta (8.6) | 2.0% | — | Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat DefenseCisco ASA 5505 FirmwareCisco ASA 5510 Firmware+9 | 2/10/2019 | 11/8/2026 | A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The… | |
| Modificada | Alta (7.5) | 2.0% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 2/10/2019 | 11/8/2026 | A vulnerability in the WebVPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for a specific… | |
| Modificada | Media (6.1) | 1.1% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 2/10/2019 | 11/8/2026 | A vulnerability in the Clientless SSL VPN (WebVPN) portal of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected… | |
| Modificada | Media (4.9) | 1.5% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance Software | 2/10/2019 | 17/6/2026 | A vulnerability in the Secure Copy (SCP) feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to the use of an incorrect data type for a length variable. An attacker could exploit this… | |
| Modificada | Alta (7.5) | 1.8% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 2/10/2019 | 11/8/2026 | A vulnerability in the Session Initiation Protocol (SIP) inspection module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due… | |
| Modificada | Media (6.5) | 1.5% | — | Cisco Adaptive Security Appliance Software | 2/10/2019 | 17/6/2026 | A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition that prevents the creation of new SSL/Transport Layer Security (TLS) connections to an affected device. The… | |
| Modificada | Alta (7.4) | 0.51% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 2/10/2019 | 11/8/2026 | A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The… | |
| Modificada | Alta (7.5) | 1.8% | — | Cisco Adaptive Security ApplianceCisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense | 2/10/2019 | 11/8/2026 | A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of FTP data.… | |
| Modificada | Alta (7.8) | 0.30% | — | Cisco Adaptive Security Appliance Software | 7/8/2019 | 17/6/2026 | Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to elevate privileges to the root user or load a malicious library file while the tunnel is being established. For more information about these vulnerabilities, see the… | |
| Modificada | Alta (7.3) | 0.27% | — | Cisco Adaptive Security Appliance Software | 7/8/2019 | 17/6/2026 | Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to elevate privileges to the root user or load a malicious library file while the tunnel is being established. For more information about these vulnerabilities, see the… | |
| Modificada | Alta (8.8) | 1.6% | — | Cisco Adaptive Security Appliance Software | 7/8/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to elevate privileges and execute administrative functions on an affected device. The vulnerability is due to insufficient authorization validation. An attacker could… | |
| Modificada | Alta (7.5) | 1.7% | — | Cisco Adaptive Security Appliance Device ManagerCisco Secure Firewall Threat Defense | 3/5/2019 | 11/8/2026 | A vulnerability in the Deterministic Random Bit Generator (DRBG), also known as Pseudorandom Number Generator (PRNG), used in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a cryptographic collision, enabling… | |
| Modificada | Alta (8.6) | 2.0% | — | Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software | 3/5/2019 | 11/8/2026 | A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientless SSL VPN (WebVPN) and AnyConnect Remote Access VPN in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote… |