Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 504 respecto a la semana anterior
Críticas / altas1294▼ 196 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
215 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.7% | — | Cisco IOS XR | 23/7/2015 | 17/6/2026 | The Local Packet Transport Services (LPTS) implementation in Cisco IOS XR 5.1.2, 5.1.3, 5.2.1, and 5.2.2 on ASR9k devices makes incorrect decisions about the opening of TCP and UDP ports during the processing of flow base entries, which allows remote attackers to cause a denial of service (resource consumption) by… | |
| Modificada | Media (5) | 2.4% | — | Cisco IOS XR | 22/7/2015 | 17/6/2026 | The Concurrent Data Management Replication process in Cisco IOS XR 5.3.0 on ASR 9000 devices allows remote attackers to cause a denial of service (BGP process reload) via malformed BGPv4 packets, aka Bug ID CSCur70670. | |
| Modificada | Media (5) | 2.5% | — | Cisco IOS XR | 25/6/2015 | 17/6/2026 | Cisco IOS XR 5.1.3 allows remote attackers to cause a denial of service (process reload) via crafted MPLS Label Distribution Protocol (LDP) packets, aka Bug ID CSCuu77478. | |
| Modificada | Media (5.7) | 0.87% | — | Cisco IOS XR | 23/6/2015 | 17/6/2026 | Cisco IOS XR 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (NPU chip reset or line-card reload) by sending crafted IEEE 802.3x flow-control PAUSE frames on the local network, aka Bug ID CSCut19959. | |
| Modificada | Media (4) | 1.6% | — | Cisco IOS XR | 19/6/2015 | 17/6/2026 | Cisco IOS XR 5.1.1.K9SEC allows remote authenticated users to cause a denial of service (vty error, and SSH and TELNET outage) via a crafted disconnect action within an SSH session, aka Bug ID CSCul63127. | |
| Modificada | Media (5) | 2.9% | — | Cisco IOS XR | 19/6/2015 | 17/6/2026 | Cisco IOS XR 5.2.1 allows remote attackers to cause a denial of service (ipv6_io service reload) via a malformed IPv6 packet, aka Bug ID CSCuq95565. | |
| Modificada | Media (5) | 1.4% | — | Cisco IOS XR | 12/6/2015 | 17/6/2026 | telnetd in Cisco IOS XR 5.0.1 on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (device reload) via a malformed TELNET packet, aka Bug ID CSCuq31566. | |
| Modificada | Alta (7.8) | 2.2% | — | Cisco IOS XR Software | 12/6/2015 | 17/6/2026 | Cisco IOS XR 4.0.1 through 4.2.0 for CRS-3 Carrier Routing System allows remote attackers to cause a denial of service (NPU ASIC scan and line-card reload) via crafted IPv6 extension headers, aka Bug ID CSCtx03546. | |
| Modificada | Alta (7.8) | 3.4% | — | Cisco IOS XR | 17/4/2015 | 17/6/2026 | Cisco IOS XR 4.3.4 through 5.3.0 on ASR 9000 devices, when uRPF, PBR, QoS, or an ACL is configured, does not properly handle bridge-group virtual interface (BVI) traffic, which allows remote attackers to cause a denial of service (chip and card hangs and reloads) by triggering use of a BVI interface for IPv4 packets,… | |
| Modificada | Media (5) | 1.6% | — | Cisco IOS XRCisco ASR 9001Cisco ASR 9006Cisco ASR 9010+3 | 11/4/2015 | 17/6/2026 | Cisco ASR 9000 devices with software 5.3.0.BASE do not recognize that certain ACL entries have a single-host constraint, which allows remote attackers to bypass intended network-resource access restrictions by using an address that was not supposed to have been allowed, aka Bug ID CSCur28806. | |
| Modificada | Media (5) | 1.7% | — | Cisco IOS XR | 26/3/2015 | 17/6/2026 | The DHCPv4 server in Cisco IOS XR 5.2.2 on ASR 9000 devices allows remote attackers to cause a denial of service (service outage) via a flood of crafted DHCP packets, aka Bug ID CSCup67822. | |
| Modificada | Media (4) | 0.97% | — | Cisco IOS XR | 6/3/2015 | 17/6/2026 | The SNMPv2 implementation in Cisco IOS XR allows remote authenticated users to cause a denial of service (snmpd daemon reload) via a malformed SNMP packet, aka Bug ID CSCur25858. | |
| Modificada | Media (5) | 1.2% | — | Cisco IOS XR | 6/3/2015 | 17/6/2026 | Cisco IOS XR allows remote attackers to cause a denial of service (RSVP process reload) via a malformed RSVP packet, aka Bug ID CSCur69192. | |
| Modificada | Alta (7.1) | 2.3% | — | Cisco IOS XRCisco Carrier Routing System | 21/2/2015 | 17/6/2026 | Cisco IOS XR 5.0.1 and 5.2.1 on Network Convergence System (NCS) 6000 devices and 5.1.3 and 5.1.4 on Carrier Routing System X (CRS-X) devices allows remote attackers to cause a denial of service (line-card reload) via malformed IPv6 packets with extension headers, aka Bug ID CSCuq95241. | |
| Modificada | Media (5) | 1.2% | — | Cisco IOS XR | 18/12/2014 | 17/6/2026 | Cisco IOS XR allows remote attackers to cause a denial of service (RSVP process reload) via a malformed RSVP packet, aka Bug ID CSCub63710. | |
| Modificada | Media (5) | 1.2% | — | Cisco IOS XR | 26/11/2014 | 17/6/2026 | Race condition in the lighttpd module in Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (process reload) by establishing many TCP sessions, aka Bug ID CSCuq45239. | |
| Modificada | Media (5) | 1.6% | — | Cisco IOS XR | 25/11/2014 | 17/6/2026 | Cisco IOS XR allows remote attackers to cause a denial of service (LISP process reload) by establishing many LISP TCP sessions, aka Bug ID CSCuq90378. | |
| Modificada | Alta (7.5) | 1.4% | — | Cisco IOS XRCisco ASR 9000 Rsp440 RouterCisco ASR 9001Cisco ASR 9006+4 | 5/10/2014 | 17/6/2026 | Cisco IOS XR on ASR 9000 devices does not properly use compression for port-range and address-range encoding, which allows remote attackers to bypass intended Typhoon line-card ACL restrictions via transit traffic, aka Bug ID CSCup30133. | |
| Modificada | Media (6.1) | 0.87% | — | Cisco IOS XRCisco Network Convergence System 6000Cisco Network Convergence System 6008 | 20/9/2014 | 17/6/2026 | Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (NPU and card hang or reload) via a malformed MPLS packet, aka Bug ID CSCuq10466. | |
| Modificada | Media (5) | 1.8% | — | Cisco IOS XR | 20/9/2014 | 17/6/2026 | tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed TACACS+ packet, aka Bug ID CSCum00468. | |
| Modificada | Media (4) | 1.4% | — | Cisco IOS XR | 20/9/2014 | 17/6/2026 | snmpd in Cisco IOS XR 5.1 and earlier allows remote authenticated users to cause a denial of service (process reload) via a malformed SNMPv2 packet, aka Bug ID CSCun67791. | |
| Modificada | Media (5) | 1.7% | — | Cisco IOS XR | 20/9/2014 | 17/6/2026 | Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed RSVP packet, aka Bug ID CSCuq12031. | |
| Modificada | Media (4) | 1.1% | — | Cisco CLICisco IOS XR | 12/9/2014 | 17/6/2026 | The CLI in Cisco IOS XR allows remote authenticated users to obtain sensitive information via unspecified commands, aka Bug IDs CSCuq42336, CSCuq76853, CSCuq76873, and CSCuq45383. | |
| Modificada | Media (4.3) | 2.2% | — | Cisco IOS XR | 10/9/2014 | 17/6/2026 | Cisco IOS XR 5.1 allows remote attackers to cause a denial of service (DHCPv6 daemon crash) via a malformed DHCPv6 packet, aka Bug ID CSCuo59052. | |
| Modificada | Alta (7.1) | 2.5% | — | Cisco IOS XR | 4/9/2014 | 17/6/2026 | Cisco IOS XR 4.3(.2) and earlier, as used in Cisco Carrier Routing System (CRS), allows remote attackers to cause a denial of service (CPU consumption and IPv6 packet drops) via a malformed IPv6 packet, aka Bug ID CSCuo95165. |