Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 9.7% | — | Cisco Sf220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+5 | 16/6/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML… | |
| Modificada | Media (6.1) | 9.3% | — | Cisco Sf220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+5 | 16/6/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML… | |
| Modificada | Alta (8.1) | 1.4% | — | Cisco Sf220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+5 | 16/6/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML… | |
| Modificada | Alta (7.2) | 8.8% | — | Cisco Sf220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+5 | 16/6/2021 | 17/6/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML… | |
| Modificada | Alta (7.2) | 25% | 💥 Exploit | Cisco Sf-220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+7 | 7/8/2019 | 17/6/2026 | A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an authenticated, remote attacker to perform a command injection attack. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a… | |
| Modificada | Crítica (9.8) | 26% | 💥 Exploit | Cisco Sf-220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+7 | 7/8/2019 | 17/6/2026 | Multiple vulnerabilities in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to overflow a buffer, which then allows the execution of arbitrary code with root privileges on the underlying operating system. The vulnerabilities are due to… | |
| Modificada | Crítica (9.1) | 17% | 💥 Exploit | Cisco Sf-220-24 FirmwareCisco Sf220-24p FirmwareCisco Sf220-48 FirmwareCisco Sf220-48p Firmware+7 | 7/8/2019 | 17/6/2026 | A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to upload arbitrary files. The vulnerability is due to incomplete authorization checks in the web management interface. An attacker could exploit this vulnerability by… |