Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2976▼ 107 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

8 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.9)2.1%—Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco ASA 5500Cisco Telepresence Multipoint Switch Software+925/2/201116/6/2026
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x,…
ModificadaAlta (8.3)1.4%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The XML-RPC implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a TCP request, related to a "command injection vulnerability," aka Bug ID CSCtb52587.
ModificadaAlta (7.8)2.5%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allow remote attackers to cause a denial of service (service crash) via a malformed SOAP request in conjunction with a spoofed TelePresence Manager that supplies an invalid IP address, aka Bug ID CSCth03605.
ModificadaAlta (10)2.6%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The TFTP implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x, 1.6.0, and 1.6.1 allows remote attackers to obtain sensitive information via a GET request, aka Bug ID CSCte43876.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCth24671.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31659.
ModificadaAlta (9)2.8%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31685.
ModificadaAlta (10)3.3%—Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+325/2/201116/6/2026
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31640.
Orbitaley — Vulnerabilidades