Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

11 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (9)2.2%—Cisco Telepresence Recording Server12/7/201216/6/2026
The administrative web interface on Cisco TelePresence Recording Server before 1.8.0 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Bug ID CSCth85804.
ModificadaAlta (7.8)1.8%—Cisco Telepresence Multipoint Switch SoftwareCisco Telepresence Multipoint SwitchCisco Telepresence System SoftwareCisco Telepresence System 1300 65+1112/7/201216/6/2026
The IP implementation on Cisco TelePresence Multipoint Switch before 1.8.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server 1.8 and earlier allows remote attackers to cause a denial of service (networking outage or process crash) via (1) malformed IP packets, (2) a high rate of TCP…
ModificadaAlta (8.3)1.7%—Cisco Telepresence Multipoint Switch SoftwareCisco Telepresence Multipoint SwitchCisco Telepresence System SoftwareCisco Telepresence System 1300 65+1112/7/201216/6/2026
The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by…
ModificadaAlta (10)3.4%—Cisco Telepresence Recording Server Software29/8/201116/6/2026
Cisco TelePresence Recording Server 1.7.2.x before 1.7.2.1 has a default password for the root administrator account, which makes it easier for remote attackers to modify the configuration via an SSH session, aka Bug ID CSCtr76182.
ModificadaAlta (7.5)2.4%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording Server25/2/201116/6/2026
Cisco TelePresence Recording Server devices with software 1.6.x do not require authentication for an XML-RPC interface, which allows remote attackers to perform unspecified actions via a session on TCP port 8080, aka Bug ID CSCtg35833.
ModificadaAlta (7.8)2.6%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording Server25/2/201116/6/2026
Cisco TelePresence Recording Server devices with software 1.6.x allow remote attackers to cause a denial of service (thread consumption and device outage) via a malformed request, related to an "ad hoc recording" issue, aka Bug ID CSCtf97205.
ModificadaAlta (7.8)2.6%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording ServerCisco Telepresence Multipoint Switch SoftwareCisco Telepresence Multipoint Switch25/2/201116/6/2026
Cisco TelePresence Recording Server devices with software 1.6.x and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x do not properly restrict remote access to the Java servlet RMI interface, which allows remote attackers to cause a denial of service (memory consumption…
ModificadaAlta (9.3)4.5%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording Server25/2/201116/6/2026
The XML-RPC implementation on Cisco TelePresence Recording Server devices with software 1.6.x and 1.7.x before 1.7.1 allows remote attackers to overwrite files and consequently execute arbitrary code via a malformed request, aka Bug ID CSCti50739.
ModificadaAlta (10)5.2%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording ServerCisco Telepresence Multipoint Switch SoftwareCisco Telepresence Multipoint Switch25/2/201116/6/2026
The administrative web interface on Cisco TelePresence Recording Server devices with software 1.6.x and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x allows remote attackers to create or overwrite arbitrary files, and possibly execute arbitrary code, via a crafted…
ModificadaAlta (10)6.5%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording ServerCisco Telepresence Multipoint Switch SoftwareCisco Telepresence Multipoint Switch25/2/201116/6/2026
The Java Servlet framework on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication for unspecified actions, which allows remote attackers to…
ModificadaAlta (10)4.2%—Cisco Telepresence Recording Server SoftwareCisco Telepresence Recording Server25/2/201116/6/2026
The CGI subsystem on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 allows remote attackers to execute arbitrary commands via a request to TCP port 443, related to a "command injection vulnerability," aka Bug ID CSCtf97221.
Orbitaley — Vulnerabilidades