Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

362 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)0.30%—Cisco Adaptive Security Appliance Software7/8/201917/6/2026
Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to elevate privileges to the root user or load a malicious library file while the tunnel is being established. For more information about these vulnerabilities, see the…
ModificadaAlta (7.3)0.27%—Cisco Adaptive Security Appliance Software7/8/201917/6/2026
Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to elevate privileges to the root user or load a malicious library file while the tunnel is being established. For more information about these vulnerabilities, see the…
ModificadaAlta (8.8)1.6%—Cisco Adaptive Security Appliance Software7/8/201917/6/2026
A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to elevate privileges and execute administrative functions on an affected device. The vulnerability is due to insufficient authorization validation. An attacker could…
ModificadaAlta (8.6)2.0%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software3/5/201911/8/2026
A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientless SSL VPN (WebVPN) and AnyConnect Remote Access VPN in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote…
ModificadaAlta (8.8)1.1%—Cisco Adaptive Security Appliance Software3/5/201917/6/2026
A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management…
ModificadaAlta (8.6)2.1%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software3/5/201911/8/2026
A vulnerability in the Internet Key Exchange Version 2 Mobility and Multihoming Protocol (MOBIKE) feature for the Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device…
ModificadaAlta (8.6)1.1%—Cisco Adaptive Security Appliance Software3/5/201917/6/2026
A vulnerability in the software cryptography module of the Cisco Adaptive Security Virtual Appliance (ASAv) and Firepower 2100 Series running Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause an unexpected reload of the device that results in a denial of service…
ModificadaMedia (5.9)2.0%—Cisco Adaptive Security Appliance Software3/5/201917/6/2026
A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow a unauthenticated, remote attacker to cause a denial of service (DoS) condition on the remote access VPN services. The vulnerability is due to an issue with the remote access VPN session manager. An…
ModificadaMedia (4.8)0.87%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the WebVPN portal of an affected device. The…
ModificadaAlta (7.5)2.0%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS)…
ModificadaMedia (6.5)0.71%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to send data directly to the kernel of an affected device. The vulnerability exists because the software improperly filters…
ModificadaAlta (8.6)2.5%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the TCP processing engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to the…
ModificadaMedia (6.5)2.0%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper management of authenticated…
ModificadaAlta (7.5)2.9%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the TCP proxy functionality for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due…
ModificadaAlta (8.6)2.0%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense3/5/201911/8/2026
A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for existing…
ModificadaAlta (8.1)2.4%—Cisco Adaptive Security Appliance Software24/12/201817/6/2026
A vulnerability in the authorization subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, but unprivileged (levels 0 and 1), remote attacker to perform privileged actions by using the web management interface. The vulnerability is due to improper validation of user privileges…
ModificadaAlta (8.6)4.4%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense1/11/201811/8/2026
A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload or trigger high CPU, resulting in a denial of service…
ModificadaMedia (6.8)1.8%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust the 1550-byte buffers on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is…
ModificadaMedia (4)1.9%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense5/10/201811/8/2026
A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access control list (ACL) that is configured for an interface of an affected device. The vulnerability is…
ModificadaMedia (6.8)1.2%—Cisco Secure Firewall Management CenterCisco Adaptive Security Appliance Software5/10/201817/6/2026
A vulnerability in the implementation of Traffic Flow Confidentiality (TFC) over IPsec functionality in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly, resulting in a…
ModificadaAlta (7.5)2.5%—Cisco Firepower Threat DefenseCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software5/10/201811/8/2026
A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a temporary denial of service (DoS) condition. The…
AnalizadaAlta (7.5)100%⚠ Explotación activa💥 ExploitCisco Adaptive Security Appliance SoftwareCisco Firepower Threat DefenseCisco Secure Firewall Threat Defense7/6/201811/8/2026
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. It is also possible on certain software releases that the ASA will not reload, but an…
ModificadaMedia (6.1)1.8%—Cisco Adaptive Security Appliance Software19/4/201817/6/2026
A vulnerability in the Web Server Authentication Required screen of the Clientless Secure Sockets Layer (SSL) VPN portal of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of that portal on an affected…
ModificadaMedia (6.1)1.7%—Cisco Adaptive Security Appliance Software19/4/201817/6/2026
A vulnerability in the WebVPN web-based management interface of Cisco Adaptive Security Appliance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient…
ModificadaAlta (8.6)3.9%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software19/4/201811/8/2026
Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS)…