Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

37 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
RecibidaCrítica (9.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
A vulnerability in the Segment Routing over IPv6 (SRv6) Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) on an affected device. This…
RecibidaCrítica (9.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a Denial-of-Service (DoS) on an affected device. This vulnerability is due to improper…
RecibidaCrítica (9.1)——Cisco License On-premAICisco Smart Software Manager On-premAI7/10/20267/10/2026
The vulnerabilities tracked by CVE-2026-76483 are related to issues with insufficiently protected credentials that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-522.
RecibidaCrítica (9.8)——Cisco License On-premAICisco Smart Software Manager On-premAI7/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple…
RecibidaCrítica (9.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
The vulnerability is due to insufficient input validation of data that is sent to the NX-API. An attacker could exploit this vulnerability by sending a crafted HTTP request to the NX-API of an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges and could cause…
RecibidaCrítica (9.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS)…
RecibidaAlta (8.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaAlta (8.6)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaAlta (8.6)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaAlta (8.6)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaCrítica (9.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+37/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaCrítica (9.1)——Cisco License Smart Software Manager On-premAI7/10/20267/10/2026
A vulnerability in the Cisco Smart Licensing Utility API of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow an unauthenticated, remote attacker to write arbitrary files to the system or cause a DoS condition on an affected application. This vulnerability is due to…
RecibidaAlta (8.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by…
RecibidaMedia (4.9)——Cisco License On-premAICisco Smart Software Manager On-premAI7/10/20267/10/2026
A vulnerability in the web-based management interface of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow an authenticated, remote attacker to conduct SQL injection attacks against an affected application. This vulnerability is due to insufficient validation of…
RecibidaMedia (4.9)——Cisco License On-premAICisco Smart Software Manager On-premAI7/10/20267/10/2026
A vulnerability in the web-based user interface of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system. This vulnerability is due to improper validation of user-supplied…
RecibidaCrítica (9.1)——Cisco License On-premAICisco Smart Software Manager On-premAI7/10/20267/10/2026
A vulnerability in the web-based management interface of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow an unauthenticated, remote attacker to gain unauthorized access to an affected application. This vulnerability is due to improper checks during the password reset…
RecibidaMedia (5.8)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
A vulnerability in Cisco NX-OS Software could allow an unauthenticated, remote attacker to exhaust system resources, causing a denial of service (DoS) condition. This vulnerability exists because rate limiting was improperly applied to some protocols. An attacker could exploit this vulnerability by sending a high rate…
RecibidaMedia (4.4)——Cisco NX OSAICisco Nexus 3000AICisco Nexus 9000AICisco Application Policy Infrastructure ControllerAI+47/10/20267/10/2026
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, local attacker with low privileges to escape the Python sandbox and gain unauthorized access to the underlying operating system of an affected device. This vulnerability is due to insufficient validation of…
AnalizadaCrítica (9.8)0.91%—Cisco Smart Software Manager On-prem1/4/20261/7/2026
A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected SSM On-Prem host. This vulnerability is due to the unintentional exposure of an internal service. An attacker could…
AnalizadaAlta (7.3)0.27%—Cisco Smart Software Manager On-prem1/4/20268/7/2026
A vulnerability in the web interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to elevate privileges on an affected system. This vulnerability is due to the improper transmission of sensitive user information. An attacker could exploit this vulnerability by…
AnalizadaMedia (4.3)0.61%—Cisco Smart Software Manager On-premCisco Smart Software Manager Satellite15/11/202417/6/2026
A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem could allow an authenticated, remote attacker to elevate privileges on an affected system. This vulnerability is due to inadequate protection of sensitive user information. An attacker could exploit this vulnerability by…
AnalizadaCrítica (10)81%💥 ExploitCisco Smart Software Manager On-prem17/7/202417/6/2026
A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to change the password of any user, including administrative users. This vulnerability is due to improper implementation of the password-change process. An attacker could…
ModificadaMedia (6.5)1.2%💥 PoCCisco Smart Software Manager On-prem18/5/202317/6/2026
A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability exists because the web-based management interface inadequately validates user input. An…
ModificadaMedia (6.5)1.0%—Cisco Smart Software Manager On-prem6/7/202217/6/2026
A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incorrect handling of multiple simultaneous device registrations on Cisco SSM On-Prem. An attacker could…
ModificadaAlta (8.8)0.97%—Cisco Smart Software Manager On-prem6/10/202117/6/2026
A vulnerability in the web UI of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to elevate privileges and create, read, update, or delete records and settings in multiple functions. This vulnerability is due to insufficient authorization of the System User and System…