Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

16 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45731.
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45745.
ModificadaAlta (7.8)1.6%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722.
ModificadaAlta (7.8)1.3%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45720.
ModificadaAlta (7.1)1.2%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45733.
ModificadaAlta (7.1)1.2%—Cisco Telepresence System SoftwareCisco Tandberg 2000 MXPCisco Tandberg 550 MXPCisco Tandberg 770 MXP+92/5/201417/6/2026
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45739.
ModificadaAlta (8.3)2.3%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1300-65Cisco Telepresence System 3000+1022/1/201417/6/2026
The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX1310 65, and TX9xxx before 6.0.4(11), allows remote attackers to execute arbitrary commands or cause a denial of service (stack memory corruption) via a crafted XML-RPC…
ModificadaBaja (3.5)4.7%💥 ExploitCisco Telepresence System 1000 MXPCisco Telepresence System 1700 MXPCisco Telepresence MXP Software23/9/201116/6/2026
Cross-site scripting (XSS) vulnerability in the web interface in Cisco TelePresence System MXP Series F9.1 and earlier allows remote authenticated users to inject arbitrary web script or HTML via a crafted Call ID, as demonstrated by resultant cross-site request forgery (CSRF) attacks that change passwords or cause a…
ModificadaAlta (7.9)2.1%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco ASA 5500Cisco Telepresence Multipoint Switch Software+925/2/201116/6/2026
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x,…
ModificadaAlta (8.3)1.4%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The XML-RPC implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a TCP request, related to a "command injection vulnerability," aka Bug ID CSCtb52587.
ModificadaAlta (7.8)2.5%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allow remote attackers to cause a denial of service (service crash) via a malformed SOAP request in conjunction with a spoofed TelePresence Manager that supplies an invalid IP address, aka Bug ID CSCth03605.
ModificadaAlta (10)2.6%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The TFTP implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x, 1.6.0, and 1.6.1 allows remote attackers to obtain sensitive information via a GET request, aka Bug ID CSCte43876.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCth24671.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31659.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31685.
ModificadaAlta (10)3.3%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31640.
Orbitaley — Vulnerabilidades