Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2625▼ 312 respecto a la semana anterior
Críticas / altas1347▲ 72 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)61▼ 466 respecto a la semana anterior
14 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 1.9% | — | Zzinc Keymouse Firmware | 10/3/2022 | 9/7/2026 | ZZ Inc. KeyMouse Windows 3.08 and prior is affected by a remote code execution vulnerability during an unauthenticated update. To exploit this vulnerability, a user must trigger an update of an affected installation of KeyMouse. | |
| Modificada | Media (5.9) | 1.6% | — | Dell EMC Powerscale OnefsNetgear Jr6150 FirmwareSamsung X14j FirmwareZyxel Gs1900-10hp Firmware+1 | 6/4/2016 | 17/6/2026 | The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710 devices allows remote attackers to cause a denial of service (panic and reboot) via a crafted sequence of IPv6 packets, aka Bug ID CSCuu46673. | |
| Modificada | Alta (7.5) | 2.7% | — | SUN OpensolarisZyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware | 6/4/2016 | 17/6/2026 | Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted HTTP requests that are not followed by an… | |
| Modificada | Alta (7.5) | 1.9% | — | Dell EMC Powerscale OnefsNetgear Jr6150 FirmwareZyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware | 6/4/2016 | 17/6/2026 | Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and 320, and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (device reload) via malformed STUN packets, aka Bug ID CSCuv01348. | |
| Modificada | Alta (7.5) | 3.3% | — | Cisco IOS XELenovo Thinkcentre E75s FirmwareSamsung X14j FirmwareSUN Opensolaris+2 | 26/3/2016 | 17/6/2026 | Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCuj23293. | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco IOS XEIntel Core I5-9400f FirmwareNetgear Jr6150 FirmwareSamsung X14j Firmware+3 | 26/3/2016 | 17/6/2026 | The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410. | |
| Modificada | Alta (7.5) | 1.9% | — | Cisco IOS XENetgear Jr6150 FirmwareSamsung X14j FirmwareSUN Opensolaris+2 | 26/3/2016 | 17/6/2026 | Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821. | |
| Modificada | Media (5.9) | 3.0% | — | Cisco IOS XELenovo Thinkcentre E75s FirmwareNetgear Jr6150 FirmwareSamsung X14j Firmware+3 | 26/3/2016 | 17/6/2026 | The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417. | |
| Modificada | Alta (7.5) | 3.9% | — | Cisco Unified Computing SystemCisco Nx-osNetgear Jr6150 FirmwareSamsung X14j Firmware+3 | 3/3/2016 | 17/6/2026 | Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted TCP packets to a device that has a TIME_WAIT TCP session, aka Bug ID CSCub70579. | |
| Modificada | Crítica (9.8) | 3.7% | — | Samsung X14j FirmwareSUN OpensolarisZyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware | 3/3/2016 | 17/6/2026 | Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows remote attackers to obtain root privileges via a (1) TELNET or (2) SSH session, aka Bug ID CSCuy25800. | |
| Modificada | Media (6.5) | 0.73% | — | Zzinc Keymouse Firmware | 15/2/2016 | 17/6/2026 | Cisco IOS 15.2(4)E on Industrial Ethernet 2000 devices allows remote attackers to cause a denial of service (device reload) via crafted Cisco Discovery Protocol (CDP) packets, aka Bug ID CSCuy27746. | |
| Modificada | Media (5.3) | 0.83% | — | SUN OpensolarisSamsung X14j FirmwareZyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware | 9/2/2016 | 17/6/2026 | Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified Contact Center Express 11.0(1); and Unity Connection 10.5(2) store a cleartext encryption key, which allows local users… | |
| Modificada | Media (5.4) | 1.1% | — | Zyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware | 7/2/2016 | 17/6/2026 | The Openfire server in Cisco Finesse Desktop 10.5(1) and 11.0(1) and Unified Contact Center Express 10.6(1) has a hardcoded account, which makes it easier for remote attackers to obtain access via an XMPP session, aka Bug ID CSCuw79085. | |
| Modificada | Alta (8.8) | 2.2% | — | Samsung X14j FirmwareSUN OpensolarisZyxel Gs1900-10hp FirmwareZzinc Keymouse Firmware+1 | 7/2/2016 | 17/6/2026 | Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) and 11.1 before 11.1(1j) allow remote authenticated users to bypass intended RBAC restrictions via crafted REST requests, aka Bug ID… |