Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2783▼ 434 respecto a la semana anterior
Críticas / altas1335▼ 118 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
307 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) on an affected device. This… | |
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper… | |
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper… | |
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | The vulnerability is due to insufficient input validation of data that is sent to the NX-API. An attacker could exploit this vulnerability by sending a crafted HTTP request to the NX-API of an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges and could cause… | |
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS)… | |
| Recibida | Alta (8.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Alta (8.6) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Alta (8.6) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Alta (8.6) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Crítica (9.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Alta (8.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by… | |
| Recibida | Media (5.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | A vulnerability in Cisco NX-OS Software could allow an unauthenticated, remote attacker to exhaust system resources, causing a denial of service (DoS) condition. This vulnerability exists because rate limiting was improperly applied to some protocols. An attacker could exploit this vulnerability by sending a high rate… | |
| Recibida | Media (5.8) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+3 | 7/10/2026 | 7/10/2026 | A vulnerability in the endpoint group (EPG) contract functionality of Cisco Nexus 9000 Series Fabric Switches in ACI Mode could allow an unauthenticated, remote attacker to bypass configured EPG contracts. This vulnerability is due to an improper control with EPG contracts. An attacker could exploit this vulnerability… | |
| Recibida | Media (4.4) | — | — | Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+4 | 7/10/2026 | 7/10/2026 | A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, local attacker with low privileges to escape the Python sandbox and gain unauthorized access to the underlying operating system of an affected device. This vulnerability is due to insufficient validation of… | |
| Aplazada | Alta (7.4) | 0.18% | — | Cisco Nx-osAI | 25/2/2026 | 17/6/2026 | A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause the LLDP process to restart, which could cause an affected device to reload unexpectedly. This vulnerability is due to improper handling of specific fields in an LLDP… | |
| Aplazada | Media (4.4) | 3.2% | — | Cisco Nx-osAI | 27/8/2025 | 17/6/2026 | A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute a command injection attack on the underlying operating system of an affected device. To exploit this vulnerability, the attacker must have valid user credentials on the affected device. This vulnerability is due… | |
| Aplazada | Media (5.5) | 0.14% | — | Cisco Nx-osAICisco Nexus 3000AICisco Nexus 9000AICisco UCS 6400AI+2 | 27/8/2025 | 17/6/2026 | A vulnerability in the logging feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches, Cisco Nexus 9000 Series Switches in standalone NX-OS mode, Cisco UCS 6400 Fabric Interconnects, Cisco UCS 6500 Series Fabric Interconnects, and Cisco UCS 9108 100G Fabric Interconnects could allow an authenticated,… | |
| Aplazada | Media (5) | 0.35% | — | Cisco Nexus 3000 Series SwitchesAICisco Nexus 9000 Series SwitchesAICisco Nx-osAI | 27/8/2025 | 17/6/2026 | A vulnerability in the Protocol Independent Multicast Version 6 (PIM6) feature of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an authenticated, low-privileged, remote attacker to trigger a crash of the PIM6 process, resulting in a denial of service (DoS)… | |
| Aplazada | Alta (7.4) | 0.28% | — | Cisco Nx-osAICisco Nexus 3000AICisco Nexus 9000AI | 27/8/2025 | 17/6/2026 | A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an unauthenticated, adjacent attacker to cause the IS-IS process to unexpectedly restart, which could… | |
| Aplazada | Alta (7.4) | 0.25% | — | Cisco IOSAICisco IOS XEAICisco Nx-osAICisco Wireless LAN ControllerAI | 7/5/2025 | 17/6/2026 | A vulnerability in the Switch Integrated Security Features (SISF) of Cisco IOS Software, Cisco IOS XE Software, Cisco NX-OS Software, and Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This… | |
| Aplazada | Media (5.2) | 0.30% | — | Cisco Nx-osAI | 4/12/2024 | 17/6/2026 | This vulnerability is due to insecure bootloader settings. An attacker could exploit this vulnerability by executing a series of bootloader commands. A successful exploit could allow the attacker to bypass NX-OS image signature verification and load unverified software. | |
| Aplazada | Alta (8.6) | 0.78% | — | Cisco Nx-osAI | 28/8/2024 | 17/6/2026 | A vulnerability in the DHCPv6 relay agent of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of specific fields in a DHCPv6 RELAY-REPLY message. An attacker could exploit this… | |
| Aplazada | Media (6.7) | 0.15% | — | Cisco Nx-osAI | 28/8/2024 | 17/6/2026 | A vulnerability in Cisco NX-OS Software could allow an authenticated, local attacker with privileges to access the Bash shell to elevate privileges to network-admin on an affected device. This vulnerability is due to insufficient security restrictions when executing application arguments from the Bash shell. An… | |
| Aplazada | Media (6.7) | 0.16% | — | Cisco Nx-osAI | 28/8/2024 | 17/6/2026 | A vulnerability in Cisco NX-OS Software could allow an authenticated, local attacker with privileges to access the Bash shell to execute arbitrary code as root on an affected device. This vulnerability is due to insufficient security restrictions when executing commands from the Bash shell. An attacker with… | |
| Aplazada | Media (4.4) | 0.23% | — | Cisco Nx-osAI | 28/8/2024 | 17/6/2026 | This vulnerability is due to insufficient validation of arguments for a specific CLI command. An attacker could exploit this vulnerability by including crafted input as the argument of the affected command. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system… |