Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2633▼ 296 respecto a la semana anterior
Críticas / altas1350▲ 78 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)61▼ 466 respecto a la semana anterior
77 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.8) | 0.21% | — | Sangoma AsteriskSangoma Certified Asterisk | 6/2/2026 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 20.7-cert9, 20.18.2, 21.12.1, 22.8.2, and 23.2.2, the asterisk/contrib/scripts/ast_coredumper runs as root, as noted by the NOTES tag on line 689 of the ast_coredumper file. The script will source the contents of… | |
| Analizada | Alta (7.8) | 0.13% | — | Sangoma Certified AsteriskSangoma Asterisk | 6/2/2026 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 20.7-cert9, 20.18.2, 21.12.1, 22.8.2, and 23.2.2, when ast_coredumper writes its gdb init and output files to a directory that is world-writable (for example /tmp), an attacker with write permission(which is all users on a… | |
| Analizada | Media (6.5) | 0.21% | — | Sangoma AsteriskSangoma Certified Asterisk | 6/2/2026 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 20.7-cert9, 20.18.2, 21.12.1, 22.8.2, and 23.2.2, the ast_xml_open() function in xml.c parses XML documents using libxml with unsafe parsing options that enable entity expansion and XInclude processing. Specifically, it invokes… | |
| Analizada | Media (6.1) | 0.19% | — | Sangoma AsteriskSangoma Certified Asterisk | 6/2/2026 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 20.7-cert9, 20.18.2, 21.12.1, 22.8.2, and 23.2.2, user supplied/control values for Cookies and any GET variable query Parameter are directly interpolated into the HTML of the page using ast_str_append. The endpoint at GET… | |
| Modificada | Alta (7) | 0.21% | — | Sangoma AsteriskSangoma Certified Asterisk | 23/9/2025 | 17/6/2026 | A local privilege escalation vulnerability exists in the safe_asterisk script included with the Asterisk toolkit package. When Asterisk is started via this script (common in SysV init or FreePBX environments), it sources all .sh files located in /etc/asterisk/startup.d/ as root, without validating ownership or… | |
| Modificada | Media (6.5) | 0.49% | — | Sangoma AsteriskSangoma Certified Asterisk | 28/8/2025 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. Prior to versions 18.26.4 and 18.9-cert17, RTP UDP ports and internal resources can leak due to a lack of session termination. This could result in leaks and resource exhaustion. This issue has been patched in versions 18.26.4 and 18.9-cert17. | |
| Analizada | Media (6.5) | 0.45% | — | Sangoma AsteriskSangoma Certified Asterisk | 1/8/2025 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. In versions up to and including 18.26.2, between 20.00.0 and 20.15.0, 20.7-cert6, 21.00.0, 22.00.0 through 22.5.0, there is a remote DoS and possible RCE condition in `asterisk/res/res_stir_shaken /verification.c` that can be exploited when an… | |
| Modificada | Media (4.8) | 0.26% | — | Sangoma AsteriskSangoma Certified Asterisk | 22/5/2025 | 17/6/2026 | Asterisk is an open-source private branch exchange (PBX). Prior to versions 18.26.2, 20.14.1, 21.9.1, and 22.4.1 of Asterisk and versions 18.9-cert14 and 20.7-cert5 of certified-asterisk, trying to disallow shell commands to be run via the Asterisk command line interface (CLI) by configuring `cli_permissions.conf`… | |
| Modificada | Media (6.5) | 0.51% | — | Sangoma AsteriskSangoma Certified Asterisk | 22/5/2025 | 17/6/2026 | Asterisk is an open-source private branch exchange (PBX). Prior to versions 18.26.2, 20.14.1, 21.9.1, and 22.4.1 of Asterisk and versions 18.9-cert14 and 20.7-cert5 of certified-asterisk, SIP requests of the type MESSAGE (RFC 3428) authentication do not get proper alignment. An authenticated attacker can spoof any… | |
| Modificada | Media (5.7) | 0.58% | — | Sangoma AsteriskSangoma Certified Asterisk | 5/9/2024 | 17/6/2026 | Asterisk is an open-source private branch exchange (PBX). Prior to versions 18.24.3, 20.9.3, and 21.4.3 of Asterisk and versions 18.9-cert12 and 20.7-cert2 of certified-asterisk, if Asterisk attempts to send a SIP request to a URI whose host portion starts with `.1` or `[.1]`, and res_resolver_unbound is loaded,… | |
| Modificada | Alta (8.8) | 4.7% | — | AsteriskCertified Asterisk | 8/8/2024 | 17/6/2026 | Asterisk is an open source private branch exchange (PBX) and telephony toolkit. Prior to asterisk versions 18.24.2, 20.9.2, and 21.4.2 and certified-asterisk versions 18.9-cert11 and 20.7-cert2, an AMI user with `write=originate` may change all configuration files in the `/etc/asterisk/` directory. This occurs because… | |
| Modificada | Media (5.9) | 5.3% | — | Digium AsteriskSangoma Certified Asterisk | 14/12/2023 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1, and 21.0.1; as well as certified-asterisk prior to 18.9-cert6; Asterisk is susceptible to a DoS due to a race condition in the hello handshake phase of the DTLS protocol when handling DTLS-SRTP for… | |
| Modificada | Alta (7.5) | 45% | — | Digium AsteriskSangoma Certified Asterisk | 14/12/2023 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1, and 21.0.1, as well as certified-asterisk prior to 18.9-cert6, it is possible to read any arbitrary file even when the `live_dangerously` is not enabled. This allows arbitrary files to be read.… | |
| Modificada | Alta (8.2) | 1.1% | — | Digium AsteriskSangoma Certified Asterisk | 14/12/2023 | 17/6/2026 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk versions 18.20.0 and prior, 20.5.0 and prior, and 21.0.0; as well as ceritifed-asterisk 18.9-cert5 and prior, the 'update' functionality of the PJSIP_HEADER dialplan function can exceed the available buffer space for storing the new… | |
| Modificada | Media (4.9) | 1.2% | — | Sangoma AsteriskSangoma Certified Asterisk | 5/12/2022 | 17/6/2026 | An issue was discovered in Sangoma Asterisk through 16.28, 17 and 18 through 18.14, 19 through 19.6, and certified through 18.9-cert1. GetConfig, via Asterisk Manager Interface, allows a connected application to access files outside of the asterisk configuration directory, aka Directory Traversal. | |
| Modificada | Media (6.5) | 1.3% | — | Sangoma AsteriskSangoma Certified Asterisk | 5/12/2022 | 17/6/2026 | A use-after-free in res_pjsip_pubsub.c in Sangoma Asterisk 16.28, 18.14, 19.6, and certified/18.9-cert2 may allow a remote authenticated attacker to crash Asterisk (denial of service) by performing activity on a subscription via a reliable transport at the same time that Asterisk is also performing activity on that… | |
| Modificada | Media (6.5) | 4.4% | — | Certified AsteriskDigium AsteriskDebian Linux | 30/8/2022 | 17/6/2026 | res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 18.x before 18.2.2, and Certified Asterisk before 16.8-cert7, allows an attacker to trigger a crash by sending an m=image line and zero port in a response to a T.38 re-invite initiated by Asterisk. This is a re-occurrence of the… | |
| Modificada | Crítica (9.8) | 7.0% | — | Digium AsteriskDigium Certified AsteriskDebian Linux | 15/4/2022 | 17/6/2026 | An issue was discovered in Asterisk through 19.x and Certified Asterisk through 16.8-cert13. The func_odbc module provides possibly inadequate escaping functionality for backslash characters in SQL queries, resulting in user-provided data creating a broken SQL query or possibly a SQL injection. This is fixed in… | |
| Modificada | Crítica (9.8) | 4.0% | — | Teluu PjsipCertified AsteriskSangoma AsteriskDebian Linux | 22/2/2022 | 17/6/2026 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions up to and including 2.11.1 when in a dialog set (or forking) scenario, a hash key shared by multiple UAC dialogs can potentially be… | |
| Modificada | Crítica (9.1) | 4.4% | — | Teluu PjsipCertified AsteriskSangoma AsteriskDebian Linux | 27/1/2022 | 17/6/2026 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In versions 2.11.1 and prior, parsing an incoming SIP message that contains a malformed multipart can potentially cause out-of-bound read access. This… | |
| Modificada | Crítica (9.8) | 4.6% | — | Teluu PjsipCertified AsteriskSangoma AsteriskDebian Linux | 22/12/2021 | 17/6/2026 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In affected versions if the incoming STUN message contains an ERROR-CODE attribute, the header length is not checked before performing a subtraction… | |
| Modificada | Alta (7.5) | 9.2% | — | Digium AsteriskDigium Certified AsteriskDebian Linux | 30/7/2021 | 17/6/2026 | An issue was discovered in Sangoma Asterisk 13.x before 13.38.3, 16.x before 16.19.1, 17.x before 17.9.4, and 18.x before 18.5.1, and Certified Asterisk before 16.8-cert10. If the IAX2 channel driver receives a packet that contains an unsupported media format, a crash can occur. | |
| Modificada | Media (6.5) | 1.9% | — | Digium AsteriskDigium Certified Asterisk | 19/2/2021 | 17/6/2026 | A stack-based buffer overflow in res_rtp_asterisk.c in Sangoma Asterisk before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6 allows an authenticated WebRTC client to cause an Asterisk crash by sending multiple hold/unhold requests in quick succession. This is caused by a… | |
| Modificada | Alta (7.5) | 3.6% | — | Digium AsteriskDigium Certified Asterisk | 18/2/2021 | 17/6/2026 | Incorrect access controls in res_srtp.c in Sangoma Asterisk 13.38.1, 16.16.0, 17.9.1, and 18.2.0 and Certified Asterisk 16.8-cert5 allow a remote unauthenticated attacker to prematurely terminate secure calls by replaying SRTP packets. | |
| Modificada | Media (5.9) | 2.5% | — | Digium AsteriskDigium Certified Asterisk | 18/2/2021 | 17/6/2026 | An issue was discovered in res_pjsip_session.c in Digium Asterisk through 13.38.1; 14.x, 15.x, and 16.x through 16.16.0; 17.x through 17.9.1; and 18.x through 18.2.0, and Certified Asterisk through 16.8-cert5. An SDP negotiation vulnerability in PJSIP allows a remote server to potentially crash Asterisk by sending… |