Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
6 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 2.9% | — | Cisco Rv180w FirmwareCisco Rv220w Firmware | 5/10/2018 | 17/6/2026 | A vulnerability in the web framework code for Cisco RV180W Wireless-N Multifunction VPN Router and Small Business RV Series RV220W Wireless Network Security Firewall could allow an unauthenticated, remote attacker to conduct a directory path traversal attack on a targeted device. The issue is due to improper… | |
| Modificada | Alta (7.5) | 1.5% | — | Cisco Rv180w Wireless-n Multifunction VPN RouterCisco Rv220w Wireless Network Security Firewall | 5/10/2018 | 17/6/2026 | A vulnerability in the web framework code for Cisco RV180W Wireless-N Multifunction VPN Router and Small Business RV Series RV220W Wireless Network Security Firewall could allow an unauthenticated, remote attacker to execute arbitrary SQL queries. The attacker could retrieve sensitive information which should be… | |
| Modificada | Media (5.9) | 1.3% | — | Cisco Rv320 FirmwareCisco Rv325 FirmwareCisco Rvs4000 FirmwareCisco Wrv210 Firmware+20 | 12/10/2017 | 17/6/2026 | Multiple Cisco embedded devices use hardcoded X.509 certificates and SSH host keys embedded in the firmware, which allows remote attackers to defeat cryptographic protection mechanisms and conduct man-in-the-middle attacks by leveraging knowledge of these certificates and keys from another installation, aka Bug IDs… | |
| Modificada | Media (5) | 1.6% | — | Cisco Rv180 FirmwareCisco Rv180Cisco Rv180wCisco Rv120w Firmware+3 | 7/11/2014 | 17/6/2026 | The Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180W devices allows remote attackers to upload files to arbitrary locations via a crafted HTTP request, aka Bug ID CSCuh86998. | |
| Modificada | Media (6.8) | 1.2% | — | Cisco Rv180 FirmwareCisco Rv180Cisco Rv180wCisco Rv220w Firmware+3 | 7/11/2014 | 17/6/2026 | Cross-site request forgery (CSRF) vulnerability in the administrative web interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180W devices allows remote attackers to hijack the authentication of administrators, aka Bug ID CSCuh87145. | |
| Modificada | Alta (9) | 2.6% | — | Cisco Rv120w FirmwareCisco Rv120wCisco Rv220w FirmwareCisco Rv220w+3 | 7/11/2014 | 17/6/2026 | The network-diagnostics administration interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180W devices allows remote authenticated users to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCuh87126. |