Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2760▲ 27 respecto a la semana anterior
Críticas / altas1467▲ 305 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 441 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.3) | 0.12% | — | Forcepoint Next Generation Firewall | 11/3/2026 | 17/6/2026 | Execution with unnecessary privileges in Forcepoint NGFW Engine allows local privilege escalation.This issue affects NGFW Engine through 6.10.19, through 7.3.0, through 7.2.4, through 7.1.10. | |
| Modificada | Crítica (9.8) | 2.4% | — | Epati Antikor Next Generation Firewall | 25/2/2026 | 17/6/2026 | Missing Authentication for Critical Function vulnerability in ePati Cyber Security Technologies Inc. Antikor Next Generation Firewall (NGFW) allows Authentication Bypass. This issue affects Antikor Next Generation Firewall (NGFW): from v.2.0.1298 before v.2.0.1301. | |
| Aplazada | Media (5.3) | 0.36% | — | Hillstone Networks Hillstone Next Generation FirewallAI | 12/3/2025 | 17/6/2026 | Generation of Error Message Containing Sensitive Information vulnerability in Hillstone Networks Hillstone Next Generation FireWall.This issue affects Hillstone Next Generation FireWall: from 5.5R8P1 before 5.5R8P23. | |
| Aplazada | Media (6.1) | 0.31% | — | Forcepoint Next Generation Firewall Security Management CenterAI | 4/3/2024 | 17/6/2026 | Forcepoint NGFW Security Management Center Management Server has SMC Downloads optional feature to offer standalone Management Client downloads and ECA configuration downloads. Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Forcepoint Next Generation Firewall… | |
| Modificada | Alta (7.5) | 0.93% | — | Forcepoint Next Generation Firewall | 4/10/2021 | 17/6/2026 | Forcepoint NGFW Engine versions 6.5.11 and earlier, 6.8.6 and earlier, and 6.10.0 are vulnerable to TCP reflected amplification vulnerability, if HTTP User Response has been configured. | |
| Modificada | Media (5.9) | 0.70% | — | Forcepoint Next Generation Firewall Security Management Center | 23/12/2019 | 17/6/2026 | Forcepoint NGFW Security Management Center (SMC) versions lower than 6.5.12 or 6.7.1 have a rare issue that in specific circumstances can corrupt the internal configuration database. When the database is corrupted, the SMC might produce an incorrect IPsec configuration for the Forcepoint Next Generation Firewall… | |
| Modificada | Crítica (9.1) | 1.1% | — | Forcepoint Next Generation Firewall | 20/8/2019 | 17/6/2026 | Forcepoint Next Generation Firewall (Forcepoint NGFW) 6.4.x before 6.4.7, 6.5.x before 6.5.4, and 6.6.x before 6.6.2 has a serious authentication vulnerability that potentially allows unauthorized users to bypass password authentication and access services protected by the NGFW Engine. The vulnerability affects the… | |
| Modificada | Alta (7.8) | 77% | — | Cisco Unified Computing System Manager FirmwareCisco Firepower 9300 Security Appliance FirmwareCisco Firepower 4100 Next-generation Firewall Firmware | 2/11/2017 | 17/6/2026 | A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to obtain root shell privileges on the device, aka Command Injection. The vulnerability is due to… |