Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Firepower Extensible Operating System MEDIUM 5.3
CVE-2017-12299

A vulnerability exists in the process of creating default IP blocks during device initialization for Cisco ASA Next-Generation Firewall Services that…

Mitigation only
Fix from $1,600 2017-11-16
Firepower Extensible Operating System HIGH 8.8
CVE-2017-12277

A vulnerability in the Smart Licensing Manager service of the Cisco Firepower 4100 Series Next-Generation Firewall (NGFW) and Firepower 9300 Security…

Fix: after 1.1.3
Fix from $1,950 2017-11-02
Prime Collaboration Provisioning HIGH 8.1
CVE-2017-12276

A vulnerability in the web framework code for the SQL database interface of the Cisco Prime Collaboration Provisioning application could allow an aut…

Fix: 12.3+
Fix from $1,950 2017-11-02
Wireless Lan Controller Software HIGH 7.4
CVE-2017-12275

A vulnerability in the implementation of 802.11v Basic Service Set (BSS) Transition Management functionality in Cisco Wireless LAN Controllers could …

Mitigation only
Fix from $1,950 2017-11-02
Aironet 1562 Firmware MEDIUM 6.5
CVE-2017-12273

A vulnerability in 802.11 association request frame processing for the Cisco Aironet 1560, 2800, and 3800 Series Access Points could allow an unauthe…

Mitigation only
Fix from $1,600 2017-11-02
Aironet 1562 Firmware MEDIUM 6.5
CVE-2017-12274

A vulnerability in Extensible Authentication Protocol (EAP) ingress frame processing for the Cisco Aironet 1560, 2800, and 3800 Series Access Points …

Mitigation only
Fix from $1,600 2017-11-02
Nx Os MEDIUM 6.7
CVE-2017-12301

A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker to escape the Python parser an…

Mitigation only
Fix from $1,600 2017-10-19
Jabber MEDIUM 5.5
CVE-2017-12286

A vulnerability in the web interface of Cisco Jabber could allow an authenticated, local attacker to retrieve user profile information from the affec…

Mitigation only
Fix from $1,600 2017-10-19
Prime Network Analysis Module MEDIUM 5.3
CVE-2017-12285EPSS 37%

A vulnerability in the web interface of Cisco Network Analysis Module Software could allow an unauthenticated, remote attacker to delete arbitrary fi…

Mitigation only
Fix from $1,600 2017-10-19
Secure Firewall Management Center HIGH 8.6
CVE-2017-12244

A vulnerability in the detection engine parsing of IPv6 packets for Cisco Firepower System Software could allow an unauthenticated, remote attacker t…

Mitigation only
Fix from $1,950 2017-10-05
Adaptive Security Appliance Software HIGH 8.6
CVE-2017-12246EPSS 7%

A vulnerability in the implementation of the direct authentication feature in Cisco Adaptive Security Appliance (ASA) Software could allow an unauthe…

Mitigation only
Fix from $1,950 2017-10-05
Meeting Server MEDIUM 5.3
CVE-2017-12264

A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS)…

Mitigation only
Fix from $1,600 2017-10-05
iOS CRITICAL 9.8
CVE-2017-12240 KEVEPSS 14%

The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remot…

Fix: after 15.6
Fix from $2,300 2017-09-29
Ios Xe HIGH 8.8
CVE-2017-12226

A vulnerability in the web-based Wireless Controller GUI of Cisco IOS XE Software for Cisco 5760 Wireless LAN Controllers, Cisco Catalyst 4500E Super…

Mitigation only
Fix from $1,950 2017-09-29
iOS HIGH 7.5
CVE-2017-12233 KEVEPSS 7%

Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow an unauthen…

Fix: after 15.6
Fix from $1,950 2017-09-29
iOS HIGH 7.5
CVE-2017-12234 KEVEPSS 7%

Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow an unauthen…

Fix: after 15.6
Fix from $1,950 2017-09-29
iOS HIGH 7.5
CVE-2017-12235 KEVEPSS 7%

A vulnerability in the implementation of the PROFINET Discovery and Configuration Protocol (PN-DCP) for Cisco IOS 12.2 through 15.6 could allow an un…

Fix: after 15.6
Fix from $1,950 2017-09-29
Ios Xe MEDIUM 6.5
CVE-2017-12222

A vulnerability in the wireless controller manager of Cisco IOS XE could allow an unauthenticated, adjacent attacker to cause a restart of the switch…

Mitigation only
Fix from $1,600 2017-09-29
iOS MEDIUM 5.9
CVE-2017-12228

A vulnerability in the Cisco Network Plug and Play application of Cisco IOS 12.4 through 15.6 and Cisco IOS XE 3.3 through 16.4 could allow an unauth…

Fix: after 15.4
Fix from $1,600 2017-09-29
iOS MEDIUM 6.5
CVE-2010-3050

Cisco IOS before 12.2(33)SXI allows remote authenticated users to cause a denial of service (device reboot).

Fix: after 12.2
Fix from $1,600 2017-09-25
iOS MEDIUM 5.5
CVE-2010-3049

Cisco IOS before 12.2(33)SXI allows local users to cause a denial of service (device reboot).

Fix: after 12.2
Fix from $1,600 2017-09-25
Unified Customer Voice Portal HIGH 8.8
CVE-2017-12214

A vulnerability in the Operations, Administration, Maintenance, and Provisioning (OAMP) credential reset functionality for Cisco Unified Customer Voi…

Mitigation only
Fix from $1,950 2017-09-21
Findit Network Discovery Utility HIGH 7.8
CVE-2017-12252

A vulnerability in the Cisco FindIT Network Discovery Utility could allow an authenticated, local attacker to perform a DLL preloading attack, potent…

Mitigation only
Fix from $1,950 2017-09-21
Asyncos HIGH 7.1
CVE-2017-12215

A vulnerability in the email message filtering feature of Cisco AsyncOS Software for the Cisco Email Security Appliance could allow an unauthenticate…

Mitigation only
Fix from $1,950 2017-09-21
Unified Computing System MEDIUM 6.7
CVE-2017-12255

A vulnerability in the CLI of Cisco UCS Central Software could allow an authenticated, local attacker to gain shell access. The vulnerability is due …

Mitigation only
Fix from $1,600 2017-09-21
Wide Area Application Services MEDIUM 5.3
CVE-2017-12250

A vulnerability in the HTTP web interface for Cisco Wide Area Application Services (WAAS) could allow an unauthenticated, remote attacker to cause an…

Mitigation only
Fix from $1,600 2017-09-21
Meeting Server MEDIUM 6.7
CVE-2017-6794

A vulnerability in the CLI command-parsing code of Cisco Meeting Server could allow an authenticated, local attacker to perform command injection and…

Mitigation only
Fix from $1,600 2017-09-07
Prime Collaboration Provisioning MEDIUM 6.5
CVE-2017-6792

A vulnerability in the batch provisioning feature in Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to ove…

Mitigation only
Fix from $1,600 2017-09-07
Ir800 Integrated Services Router Firmware MEDIUM 6.4
CVE-2017-12223

A vulnerability in the ROM Monitor (ROMMON) code of Cisco IR800 Integrated Services Router Software could allow an unauthenticated, local attacker to…

Mitigation only
Fix from $1,600 2017-09-07
Asyncos MEDIUM 5.8
CVE-2017-12218

A vulnerability in the malware detection functionality within Advanced Malware Protection (AMP) of Cisco AsyncOS Software for Cisco Email Security Ap…

Mitigation only
Fix from $1,600 2017-09-07