Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
–

309 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)1.2%—Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.…
ModificadaMedia (6.1)1.2%—Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.…
AnalizadaMedia (6.1)86%⚠ Explotación activa💥 ExploitCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
Multiple vulnerabilities in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the web services interface of an affected device.…
ModificadaMedia (6.5)1.2%—Cisco Secure Firewall Threat DefenseCisco Firepower Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access rule and access parts of the WebVPN portal that are supposed to be blocked. The vulnerability…
ModificadaAlta (7.4)0.44%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the ingress packet processing path of Cisco Firepower Threat Defense (FTD) Software for interfaces that are configured either as Inline Pair or in Passive mode could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient…
ModificadaAlta (8.6)1.8%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the SSL/TLS session handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory leak when closing…
ModificadaAlta (8.6)1.4%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the ICMP ingress packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 4110 appliances could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to incomplete input validation upon…
ModificadaMedia (5.8)0.95%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the TCP Intercept functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Access Control Policies (including Geolocation) and Service Polices on an affected system. The vulnerability exists because TCP Intercept is invoked…
ModificadaMedia (5.3)1.3%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the FTP inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass FTP inspection. The vulnerability is due to ineffective flow tracking of FTP traffic. An attacker could exploit…
ModificadaAlta (8.6)1.4%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to inefficient memory management. An attacker could exploit this…
ModificadaAlta (8.6)1.8%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation for certain…
ModificadaMedia (4.7)1.3%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the Clientless SSL VPN (WebVPN) of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to inject arbitrary HTTP headers in the responses of the affected system. The vulnerability is due to improper input…
ModificadaAlta (7.5)1.7%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the SIP inspection process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is…
ModificadaAlta (7.5)2.7%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory exhaustion…
ModificadaAlta (8.1)2.2%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the sfmgr daemon of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to perform directory traversal and access directories outside the restricted path. The vulnerability is due to insufficient input…
ModificadaAlta (8.1)0.96%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the sftunnel functionality of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to obtain the device registration hash. The vulnerability is due to insufficient sftunnel negotiation protection during…
ModificadaAlta (7.5)1.8%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly. The vulnerability is due to a lack of sufficient memory management protections…
ModificadaAlta (7.5)1.9%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due…
ModificadaAlta (7.5)1.4%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability…
ModificadaMedia (6.7)0.38%—Cisco Secure Firewall Management CenterCisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to escape the container for their Cisco FTD instance and execute commands with root privileges in the host namespace. The attacker must have valid credentials on the device.The…
ModificadaMedia (6.7)0.32%—Cisco Adaptive Security Appliance SoftwareCisco Secure Firewall Threat Defense21/10/202011/8/2026
Multiple vulnerabilities in the secure boot process of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software for the Firepower 1000 Series and Firepower 2100 Series Appliances could allow an authenticated, local attacker to bypass the secure boot mechanism. The vulnerabilities…
ModificadaAlta (8.6)1.9%—Cisco Adaptive Security ApplianceCisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to upload arbitrary-sized files to specific folders on an affected device, which could lead to an unexpected device reload. The…
ModificadaAlta (8.6)2.0%—Cisco Secure Firewall Threat DefenseCisco Adaptive Security Appliance Software21/10/202011/8/2026
A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak on an affected device. This memory leak could prevent traffic from being processed…
ModificadaMedia (5.5)0.27%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access hidden commands. The vulnerability is due to the presence of undocumented configuration commands. An attacker could exploit this vulnerability by performing specific steps that make the…
ModificadaAlta (7.5)0.97%—Cisco Secure Firewall Threat Defense21/10/202011/8/2026
A vulnerability in the ssl_inspection component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to crash Snort instances. The vulnerability is due to insufficient input validation in the ssl_inspection component. An attacker could exploit this vulnerability by sending a…