Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
iOS HIGH 7.5
CVE-2016-1478

Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a deni…

Mitigation only
Fix from $1,950 2016-08-08
Rv180 Vpn Router Firmware HIGH 8.8
CVE-2016-1430

Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as root via a crafted HTTP request, aka Bug ID CSCuz485…

Mitigation only
Fix from $1,950 2016-08-08
Asyncos HIGH 7.5
CVE-2016-1461

Cisco AsyncOS on Email Security Appliance (ESA) devices through 9.7.0-125 allows remote attackers to bypass malware detection via a crafted attachmen…

Fix: after 9.7.0-125
Fix from $1,950 2016-08-01
Firesight System Software HIGH 7.5
CVE-2016-1463

Cisco FireSIGHT System Software 5.3.0, 5.3.1, 5.4.0, 6.0, and 6.0.1 allows remote attackers to bypass Snort rules via crafted parameters in the heade…

Mitigation only
Fix from $1,950 2016-07-28
Unified Computing System Performance Manager HIGH 8.8
CVE-2016-1374

The web framework in Cisco Unified Computing System (UCS) Performance Manager 2.0.0 and earlier allows remote authenticated users to execute arbitrar…

Mitigation only
Fix from $1,950 2016-07-28
Webex Meetings Server HIGH 7.5
CVE-2016-1450

Cisco WebEx Meetings Server 2.6 allows remote authenticated users to conduct command-injection attacks via vectors related to an upload's file type, …

Mitigation only
Fix from $1,950 2016-07-15
Telepresence Video Communication Server MEDIUM 6.5
CVE-2016-1444

The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.…

Mitigation only
Fix from $1,600 2016-07-07
Prime Infrastructure HIGH 8.8
CVE-2016-1442

The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via …

Mitigation only
Fix from $1,950 2016-07-07
Epc3928 Firmware HIGH 7.5
CVE-2016-1336EPSS 9%

goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long LanguageSelect parameter…

No fix yet
Fix from $1,950 2016-07-03
Epc3928 Firmware HIGH 7.5
CVE-2016-1328EPSS 9%

goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long h_sortWireless paramete…

No fix yet
Fix from $1,950 2016-07-03
Cloud Network Automation Provisioner HIGH 8.2
CVE-2016-1441

Cisco Cloud Network Automation Provisioner (CNAP) 1.0(0) in Cisco Configuration Assistant (CCA) allows remote attackers to bypass intended filesystem…

Mitigation only
Fix from $1,950 2016-07-03
Prime Infrastructure HIGH 8.8
CVE-2016-1408

Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute ar…

Mitigation only
Fix from $1,950 2016-07-02
Asyncos HIGH 7.5
CVE-2016-1438

Cisco AsyncOS 9.7.0-125 on Email Security Appliance (ESA) devices allows remote attackers to bypass intended spam filtering via crafted executable co…

Mitigation only
Fix from $1,950 2016-06-23
Ip Phone 8800 Series Firmware MEDIUM 6.5
CVE-2016-1434

The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows remote authenticated users to delete arbitrary files v…

Mitigation only
Fix from $1,600 2016-06-23
Rv130w Wireless N Multifunction Vpn Router Firmware CRITICAL 9.8
CVE-2016-1395

The web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W dev…

Mitigation only
Fix from $2,300 2016-06-19
Aironet Access Point Software HIGH 8.1
CVE-2016-1419

Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka…

Mitigation only
Fix from $1,950 2016-06-10
Aironet Access Point Software HIGH 7.8
CVE-2016-1418

Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root ac…

Mitigation only
Fix from $1,950 2016-06-08
Ip Phone 8800 Series Firmware HIGH 7.8
CVE-2016-1403

CISCO IP 8800 phones with software 11.0.1 and earlier allow local users to gain privileges for OS command execution via crafted CLI commands, aka Bug…

Mitigation only
Fix from $1,950 2016-06-04
Prime Network Analysis Module Software HIGH 8.8
CVE-2016-1391

Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(2) and Prime Virtual Network Analysis Module (vNAM) be…

Mitigation only
Fix from $1,950 2016-06-04
Prime Network Analysis Module Software HIGH 7.8
CVE-2016-1390

Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) and Prime Virtual Network Analysis Module (vNAM) be…

Mitigation only
Fix from $1,950 2016-06-04
Network Analysis Module Software MEDIUM 5.3
CVE-2016-1370

Cisco Prime Network Analysis Module (NAM) before 6.2(1-b) miscalculates IPv6 payload lengths, which allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2016-06-03
iOS HIGH 7.5
CVE-2016-1409

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 through 5.3.2, and NX-OS allows…

Mitigation only
Fix from $1,950 2016-05-29
Ios Xr HIGH 7.5
CVE-2016-1407

Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2016-05-25
Telepresence Video Communication Server HIGH 7.5
CVE-2016-1400

Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via…

Mitigation only
Fix from $1,950 2016-05-25
Web Security Appliance \(wsa\) HIGH 7.5
CVE-2016-1382

Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allo…

Mitigation only
Fix from $1,950 2016-05-25
Web Security Appliance HIGH 7.5
CVE-2016-1380

Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) …

Mitigation only
Fix from $1,950 2016-05-25
Wireless Lan Controller Software HIGH 7.5
CVE-2016-1364

Cisco Wireless LAN Controller (WLC) Software 7.4 before 7.4.130.0(MD) and 7.5, 7.6, and 8.0 before 8.0.110.0(ED) allows remote attackers to cause a d…

Mitigation only
Fix from $1,950 2016-04-21
Ios Xr MEDIUM 5.3
CVE-2016-1376

Cisco IOS XR 4.2.3, 4.3.0, 4.3.4, and 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (CRC and symbol errors, and inte…

Mitigation only
Fix from $1,600 2016-04-12
Evolved Programmable Network Manager CRITICAL 9.8
CVE-2016-1291EPSS 7%

Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allow remote attackers to execute arbitrary…

Mitigation only
Fix from $2,300 2016-04-06
Asa With Firepower Services HIGH 7.5
CVE-2016-1345

Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware pr…

Mitigation only
Fix from $1,950 2016-04-01