Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

32 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.1)0.32%—Synology SSL VPN Client10/4/202617/6/2026
A plaintext storage of a password vulnerability in Synology SSL VPN Client before 1.4.5-0684 allows remote attackers to access or influence the user's PIN code due to insecure storage. This may lead to unauthorized VPN configuration and potential interception of subsequent VPN traffic when combined with user…
AnalizadaMedia (6.5)0.19%—Synology SSL VPN Client10/4/202617/6/2026
A files or directories accessible to external parties vulnerability in Synology SSL VPN Client before 1.4.5-0684 allows remote attackers to access files within the installation directory via a local HTTP server bound to the loopback interface. By leveraging user interaction with a crafted web page, attackers may…
AplazadaMedia (6.9)0.37%—H3C SSL VPNAI30/12/202517/6/2026
H3C SSL VPN contains a user enumeration vulnerability that allows attackers to identify valid usernames through the 'txtUsrName' POST parameter. Attackers can submit different usernames to the login_submit.cgi endpoint and analyze response messages to distinguish between existing and non-existing accounts.
AplazadaAlta (8.7)1.2%—Barracuda Spam AND Virus FirewallAIBarracuda SSL VPNAIBarracuda WEB Application FirewallAI21/8/202516/6/2026
Barracuda products, confirmed in Spam & Virus Firewall, SSL VPN, and Web Application Firewall versions prior to October 2010, contain a path traversal vulnerability in the view_help.cgi endpoint. The locale parameter fails to properly sanitize user input, allowing attackers to inject traversal sequences and null-byte…
AplazadaAlta (8.7)0.55%—Leadsec SSL VPNAI26/6/202517/6/2026
A path traversal vulnerability exists in the Leadsec SSL VPN (formerly Lenovo NetGuard), allowing unauthenticated attackers to read arbitrary files on the underlying system via the ostype parameter in the /vpn/user/download/client endpoint. This flaw arises from insufficient input sanitation, enabling traversal…
AplazadaCrítica (9.1)0.50%—Sonicwall Ssl-vpnAIMicrosoft Active DirectoryAI9/1/202517/6/2026
SSL-VPN MFA Bypass in SonicWALL SSL-VPN can arise in specific cases due to the separate handling of UPN (User Principal Name) and SAM (Security Account Manager) account names when integrated with Microsoft Active Directory, allowing MFA to be configured independently for each login method and potentially enabling…
ModificadaAlta (7.8)0.22%—Zyxel Secuextender SSL VPN20/11/202317/6/2026
The out-of-bounds write vulnerability in the Windows-based SecuExtender SSL VPN Client software version 4.0.4.0 could allow an authenticated local user to gain a privilege escalation by sending a crafted CREATE message.
ModificadaMedia (5.5)0.19%—Synology SSL VPN Client7/11/202317/6/2026
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in cgi component in Synology SSL VPN Client before 1.4.7-0687 allows local users to conduct denial-of-service attacks via unspecified vectors.
ModificadaMedia (5.3)0.29%—Stormshield SSL VPN Client28/8/202317/6/2026
An issue was discovered in Stormshield SSL VPN Client before 3.2.0. If multiple address books are used, an attacker may be able to access the other encrypted address book.
ModificadaAlta (7.8)0.19%—Stormshield SSL VPN Client25/8/202317/6/2026
Stormshield Network Security (SNS) VPN SSL Client 2.1.0 through 2.8.0 has Insecure Permissions.
ModificadaAlta (7.8)0.19%—Stormshield SSL VPN Client5/8/202317/6/2026
An issue was discovered in Stormshield SSL VPN Client before 3.2.0. A logged-in user, able to only launch the VPNSSL Client, can use the OpenVPN instance to execute malicious code as administrator on the local machine.
ModificadaMedia (6.1)3.0%—H3C SSL VPN11/7/202217/6/2026
H3C SSL VPN through 2022-07-10 allows wnm/login/login.json svpnlang cookie XSS.
ModificadaMedia (6)0.23%—Sophos SSL VPN Client8/3/202217/6/2026
A local attacker can overwrite arbitrary files on the system with VPN client logs using administrator privileges, potentially resulting in a denial of service and data loss, in all versions of Sophos SSL VPN client.
ModificadaAlta (7.4)1.4%—Synology SSL VPN Client1/4/201917/6/2026
Lack of administrator control over security vulnerability in client.cgi in Synology SSL VPN Client before 1.2.5-0226 allows remote attackers to conduct man-in-the-middle attacks via the (1) command, (2) hostname, or (3) port parameter.
ModificadaAlta (8.8)1.3%—Pulsesecure Secure Access Series SSL VPN Sa-400021/12/201817/6/2026
Certain Secure Access SA Series SSL VPN products (originally developed by Juniper Networks but now sold and supported by Pulse Secure, LLC) allow privilege escalation, as demonstrated by Secure Access SSL VPN SA-4000 5.1R5 (build 9627) 4.2 Release (build 7631). This occurs because appropriate controls are not…
ModificadaAlta (8.1)0.75%—Synology SSL VPN Client6/7/201817/6/2026
Improper restriction of communication channel to intended endpoints vulnerability in HTTP daemon in Synology SSL VPN Client before 1.2.4-0224 allows remote attackers to conduct man-in-the-middle attacks via a crafted payload.
ModificadaMedia (5.4)0.87%—Fortinet ForticlientFortinet Forticlient LiteFortinet Forticlient SSL VPN25/6/201316/6/2026
FortiClient before 4.3.5.472 on Windows, before 4.0.3.134 on Mac OS X, and before 4.0 on Android; FortiClient Lite before 4.3.4.461 on Windows; FortiClient Lite 2.0 through 2.0.0223 on Android; and FortiClient SSL VPN before 4.0.2258 on Linux proceed with an SSL session after determining that the server's X.509…
ModificadaMedia (4.9)0.90%—Cisco Adaptive Security Appliance Clientless SSL VPNCisco Adaptive Security Appliance SoftwareCisco Adaptive Security Appliance18/4/201316/6/2026
Race condition in the CIFS implementation in the rewriter module in the Clientless SSL VPN component on Cisco Adaptive Security Appliances (ASA) devices allows remote authenticated users to cause a denial of service (device reload) by accessing resources within multiple sessions, aka Bug ID CSCub58996.
ModificadaMedia (4.3)3.3%—Barracudanetworks Barracuda SSL VPN31/8/201216/6/2026
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda SSL VPN before 2.2.2.203 (2012-07-05) allow remote attackers to inject arbitrary web script or HTML via the (1) policyLaunching, (2) resourcePrefix, or (3) actionPath parameter in showUserResourceCategories.do; (4) list or (5) path parameter to…
ModificadaMedia (4.3)1.4%—Palo Alto Global Protected GatewayPalo Alto SSL VPNPalo Alto Networks26/7/201216/6/2026
Cross-site scripting (XSS) vulnerability in global-protect/login.esp in Palo Alto Networks Global Protect Portal, Global Protect Gateway, and SSL VPN portals 3.1.x through 3.1.11 and 4.0.x through 4.0.5 allows remote attackers to inject arbitrary web script or HTML via the inputStr parameter in a Login action.
ModificadaAlta (9.3)4.8%—Sonicwall Ssl-vpn End-point Interrogator/installer Activex Control3/11/201016/6/2026
Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
ModificadaBaja (3.3)0.34%—Cisco Anyconnect SSL VPN14/10/201016/6/2026
The Cisco trial client on Linux for Cisco AnyConnect SSL VPN allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files.
ModificadaMedia (4.3)1.8%—Portwise SSL VPN23/2/201016/6/2026
Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter.
ModificadaMedia (6.8)4.8%—Aladdin Safenet Securewire Access GatewayCisco Adaptive Security ApplianceSonicwall E-class SSL VPNSonicwall SSL VPN+14/12/200916/6/2026
Multiple clientless SSL VPN products that run in web browsers, including Stonesoft StoneGate; Cisco ASA; SonicWALL E-Class SSL VPN and SonicWALL SSL VPN; SafeNet SecureWire Access Gateway; Juniper Networks Secure Access; Nortel CallPilot; Citrix Access Gateway; and other products, when running in configurations that…
ModificadaMedia (4.3)1.6%—F5 Firepass SSL VPN18/6/200916/6/2026
Cross-site scripting (XSS) vulnerability in the login interface (my.logon.php3) in F5 FirePass SSL VPN 5.5 through 5.5.2 and 6.0 through 6.0.3 allows remote attackers to inject arbitrary web script or HTML via a base64-encoded xcho parameter.