Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 1.7% | — | Cisco Sf250-24 FirmwareCisco Sf250-24p FirmwareCisco Sf250-48 FirmwareCisco Sf250-48hp Firmware+205 | 4/11/2021 | 17/6/2026 | A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to replay valid user session credentials and gain unauthorized access to the web-based management interface of an affected device. This vulnerability is due to… | |
| Modificada | Media (6.1) | 0.83% | — | Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+81 | 18/1/2018 | 17/6/2026 | A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of some parameters… | |
| Modificada | Media (6.1) | 0.87% | — | Cisco Sg350-10 FirmwareCisco Sg350-10p FirmwareCisco Sg350-10mp FirmwareCisco Sg355-10p Firmware+81 | 18/1/2018 | 17/6/2026 | A vulnerability in the web framework of Cisco Small Business Managed Switches software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web interface of an affected system. The vulnerability is due to insufficient input validation of… | |
| Modificada | Media (6.5) | 1.4% | — | Cisco Sf302-08pp FirmwareCisco Sf302-08mpp FirmwareCisco Sg300-10pp FirmwareCisco Sg300-10mpp Firmware+81 | 21/9/2017 | 17/6/2026 | A vulnerability in the Secure Shell (SSH) subsystem of Cisco Small Business Managed Switches software could allow an authenticated, remote attacker to cause a reload of the affected switch, resulting in a denial of service (DoS) condition. The vulnerability is due to improper processing of SSH connections. An attacker… |