Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.9) | 2.1% | — | Cisco Adaptive Security Appliance SoftwareCisco 5500 Series Adaptive Security ApplianceCisco ASA 5500Cisco Telepresence Multipoint Switch Software+9 | 25/2/2011 | 16/6/2026 | Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x,… | |
| Modificada | Alta (8.3) | 1.4% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The XML-RPC implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a TCP request, related to a "command injection vulnerability," aka Bug ID CSCtb52587. | |
| Modificada | Alta (7.8) | 2.5% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allow remote attackers to cause a denial of service (service crash) via a malformed SOAP request in conjunction with a spoofed TelePresence Manager that supplies an invalid IP address, aka Bug ID CSCth03605. | |
| Modificada | Alta (10) | 2.6% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The TFTP implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x, 1.6.0, and 1.6.1 allows remote attackers to obtain sensitive information via a GET request, aka Bug ID CSCte43876. | |
| Modificada | Alta (9) | 2.8% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCth24671. | |
| Modificada | Alta (9) | 2.8% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31659. | |
| Modificada | Alta (9) | 2.8% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31685. | |
| Modificada | Alta (10) | 3.3% | — | Cisco Telepresence System SoftwareCisco Telepresence System 1000Cisco Telepresence System 1100Cisco Telepresence System 3000+3 | 25/2/2011 | 16/6/2026 | The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31640. |