Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Ios Xr MEDIUM 5.0
CVE-2014-3271

The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug IDs CSC…

Mitigation only
Fix from $1,600 2014-05-20
iOS MEDIUM 6.1
CVE-2014-3273

The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum962…

Mitigation only
Fix from $1,600 2014-05-20
Unified Web And E Mail Interaction Manager MEDIUM 6.8
CVE-2014-2194

system/egain/chat/entrypoint in Cisco Unified Web and E-mail Interaction Manager 9.0(2) allows remote attackers to have an unspecified impact by inje…

Mitigation only
Fix from $1,600 2014-05-20
iOS MEDIUM 5.4
CVE-2014-3263

The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS packets that require tower p…

Mitigation only
Fix from $1,600 2014-05-16
Mediawiki HIGH 7.5
CVE-2013-6453

MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SVG files, which allows remote attackers to have un…

Fix: after 1.19.9
Fix from $1,950 2014-05-12
Webplatform\/appframework MEDIUM 5.8
CVE-2014-1991

Open redirect vulnerability in WebPlatform / AppFramework 6.0 through 7.2 in NTT DATA INTRAMART intra-mart allows remote attackers to redirect users …

Patch available
Fix from $1,600 2014-05-09
Bind MEDIUM 5.0
CVE-2014-3214EPSS 17%

The prefetch implementation in named in ISC BIND 9.10.0, when a recursive nameserver is enabled, allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,600 2014-05-09
Pywbem MEDIUM 5.8
CVE-2013-6418

PyWBEM 0.7 and earlier uses a separate connection to validate X.509 certificates, which allows man-in-the-middle attackers to spoof a peer via an arb…

Fix: after 0.7
Fix from $1,600 2014-05-05
Pywbem MEDIUM 5.8
CVE-2013-6444

PyWBEM 0.7 and earlier does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of th…

Fix: after 0.7
Fix from $1,600 2014-05-05
Telepresence System Software HIGH 7.1
CVE-2014-2157

Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP pack…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2158

Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP pack…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2159

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2160

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2161

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 7.8
CVE-2014-2162

The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 7.8
CVE-2014-2163

The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x allows remote attackers to cause a denial of service (device…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Te Software HIGH 7.8
CVE-2014-2164

The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Te Software HIGH 7.8
CVE-2014-2165

The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 7.8
CVE-2014-2166

The SIP implementation in Cisco TelePresence TC Software 4.x and TE Software 4.x allows remote attackers to cause a denial of service (device reload)…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 7.8
CVE-2014-2167

The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 9.0
CVE-2014-2169

Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary command…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence Tc Software HIGH 7.8
CVE-2014-2175

Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allow remote attackers to cause a denial of service (memory consumption) via c…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.1
CVE-2014-2156

Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP pack…

Mitigation only
Fix from $1,950 2014-05-02
Commons Beanutils HIGH 7.5
CVE-2014-0114EPSS 99%

Apache Commons BeanUtils, as distributed in lib/commons-beanutils-1.8.0.jar in Apache Struts 1.x through 1.3.10 and in other products requiring commo…

Fix: after 1.9.1
Fix from $1,950 2014-04-30
Simple Machines Forum HIGH 7.5
CVE-2013-7235

Simple Machines Forum (SMF) before 1.1.19 and 2.x before 2.0.6 allows remote attackers to impersonate arbitrary users via multiple space characters c…

Fix: after 1.1.9
Fix from $1,950 2014-04-29
Simple Machines Forum HIGH 7.5
CVE-2013-7236

Simple Machines Forum (SMF) 2.0.6, 1.1.19, and earlier allows remote attackers to impersonate arbitrary users via a Unicode homoglyph character in a …

Fix: after 1.1.9
Fix from $1,950 2014-04-29
Ios Xe MEDIUM 6.3
CVE-2014-2183

The L2TP module in Cisco IOS XE 3.10S(.2) and earlier on ASR 1000 routers allows remote authenticated users to cause a denial of service (ESP card re…

Fix: after 3.10.2s
Fix from $1,600 2014-04-29
Unified Communications Manager MEDIUM 5.0
CVE-2014-2184

The IP Manager Assistant (IPMA) component in Cisco Unified Communications Manager (Unified CM) allows remote attackers to obtain sensitive informatio…

Mitigation only
Fix from $1,600 2014-04-29
Adaptive Security Appliance Software MEDIUM 6.1
CVE-2014-2182

Cisco Adaptive Security Appliance (ASA) Software, when DHCPv6 replay is configured, allows remote attackers to cause a denial of service (device relo…

Mitigation only
Fix from $1,600 2014-04-29
Xen MEDIUM 5.5
CVE-2014-2986

The vgic_distr_mmio_write function in the virtual guest interrupt controller (GIC) distributor (arch/arm/vgic.c) in Xen 4.4.x, when running on an ARM…

Patch available
Fix from $1,600 2014-04-28