Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2573▼ 324 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 435 respecto a la semana anterior
–

7 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)1.2%—Cisco Industrial Network DirectorCisco Network Level Service8/10/202017/6/2026
A vulnerability in the management REST API of Cisco Industrial Network Director (IND) could allow an authenticated, remote attacker to cause the CPU utilization to increase to 100 percent, resulting in a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of…
ModificadaMedia (6.1)0.80%—Cisco Industrial Network DirectorCisco Network Level Service26/11/201917/6/2026
A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected application. The vulnerability is due to insufficient validation of…
ModificadaCrítica (9.8)2.0%—Cisco Industrial Network DirectorCisco Network Level Service5/9/201917/6/2026
A vulnerability in the “plug-and-play” services component of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to access sensitive information on an affected device. The vulnerability is due to improper access restrictions on the web-based management interface. An…
ModificadaAlta (8.1)1.9%—Cisco Evolved Programmable Network ManagerCisco Network Level ServiceCisco Prime Infrastructure16/5/201917/6/2026
A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to execute arbitrary SQL queries. This vulnerability exist because the software improperly validates user-supplied input in SQL…
ModificadaAlta (7.2)4.4%—Cisco Evolved Programmable Network ManagerCisco Network Level ServiceCisco Prime Infrastructure16/5/201917/6/2026
A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to execute code with root-level privileges on the underlying operating system. This vulnerability exist because the software…
ModificadaCrítica (9.8)98%—Cisco Evolved Programmable Network ManagerCisco Network Level ServiceCisco Prime Infrastructure16/5/201917/6/2026
A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to execute code with root-level privileges on the underlying operating system. This vulnerability exist because the software…
ModificadaAlta (8.8)0.57%—Cisco Network Level Service5/10/201817/6/2026
A vulnerability in the web-based management interface of Cisco Industrial Network Director could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the…