Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-4273

The Packet Data Network Gateway (aka PGW) component on Cisco ASR 5000 devices with software 15.0(912), 15.0(935), and 15.0(938) allows remote attacke…

Mitigation only
Fix from $1,600 2015-07-15
Nx Os MEDIUM 6.1
CVE-2015-4197

Cisco NX-OS 5.2(5) on Nexus 7000 devices allows remote attackers to cause a denial of service (device crash) by sending a malformed LLDP packet on th…

Mitigation only
Fix from $1,600 2015-06-20
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-4201

The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 17.2.0.59184 and 18.0.L0.59219 allows …

Mitigation only
Fix from $1,600 2015-06-20
Email Security Appliance MEDIUM 5.0
CVE-2015-4184

The anti-spam scanner on Cisco Email Security Appliance (ESA) devices 3.3.1-09, 7.5.1-gpl-022, and 8.5.6-074 allows remote attackers to bypass intend…

Mitigation only
Fix from $1,600 2015-06-13
Telepresence Tc Software MEDIUM 5.0
CVE-2015-0770

CRLF injection vulnerability in Cisco TelePresence TC 6.x before 6.3.4 and 7.x before 7.3.3 on Integrator C SX20 devices allows remote attackers to i…

Mitigation only
Fix from $1,600 2015-06-07
Headend Digital Broadband Delivery System MEDIUM 6.8
CVE-2015-0759

Cross-site request forgery (CSRF) vulnerability in Cisco Headend Digital Broadband Delivery System allows remote attackers to hijack the authenticati…

Mitigation only
Fix from $1,600 2015-06-02
Wireless Lan Controller MEDIUM 6.1
CVE-2015-0756

Cisco Wireless LAN Controller (WLC) devices with software 7.4(1.1) allow remote attackers to cause a denial of service (wireless-networking outage) v…

Mitigation only
Fix from $1,600 2015-05-29
Finesse HIGH 7.5
CVE-2015-0754

Cisco Finesse 10.5(1) allows remote authenticated users to obtain sensitive information or cause a denial of service (CPU and memory consumption) via…

Mitigation only
Fix from $1,950 2015-05-29
Unified Web And E Mail Interaction Manager MEDIUM 6.8
CVE-2015-0753

SQL injection vulnerability in Cisco Unified Email Interaction Manager (EIM) and Unified Web Interaction Manager (WIM) 9.0(2) allows remote attackers…

Mitigation only
Fix from $1,600 2015-05-29
Unified Communications Manager HIGH 7.8
CVE-2015-0751

Cisco IP Phone 7861, when firmware from Cisco Unified Communications Manager 10.3(1) is used, allows remote attackers to cause a denial of service vi…

Mitigation only
Fix from $1,950 2015-05-29
Wide Area Application Services MEDIUM 5.0
CVE-2015-0730

The SMB module in Cisco Wide Area Application Services (WAAS) 6.0(1) allows remote attackers to cause a denial of service (module reload) via an inva…

Mitigation only
Fix from $1,600 2015-05-16
Wireless Lan Controller Software MEDIUM 6.8
CVE-2015-0726

The web administration interface on Cisco Wireless LAN Controller (WLC) devices before 7.0.241, 7.1.x through 7.4.x before 7.4.122, and 7.5.x and 7.6…

Mitigation only
Fix from $1,600 2015-05-16
Unified Communications Manager MEDIUM 6.9
CVE-2015-0717

Cisco Unified Communications Manager 10.0(1.10000.12) allows local users to gain privileges via a command string in an unspecified parameter, aka Bug…

Mitigation only
Fix from $1,600 2015-05-16
Unified Computing System Central Software HIGH 10.0
CVE-2015-0701

Cisco UCS Central Software before 1.3(1a) allows remote attackers to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCut46961.

Mitigation only
Fix from $1,950 2015-05-07
Unified Meetingplace HIGH 9.0
CVE-2015-0702

Unrestricted file upload vulnerability in the Custom Prompts upload implementation in Cisco Unified MeetingPlace 8.6(1.9) allows remote authenticated…

Mitigation only
Fix from $1,950 2015-04-21
Web Security Appliance HIGH 7.2
CVE-2015-0693

Cisco Web Security Appliance (WSA) devices with software 8.5.0-ise-147 do not properly restrict use of the pickle Python module during certain tunnel…

Mitigation only
Fix from $1,950 2015-04-15
Adaptive Security Appliance Software HIGH 7.8
CVE-2015-0677

The XML parser in Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.28), 8.6 before 8.6(1.17), 9.0 before 9.0(4.33), 9.1 before 9.1(6…

Mitigation only
Fix from $1,950 2015-04-13
Adaptive Security Appliance Software HIGH 7.1
CVE-2015-0676

The DNS implementation in Cisco Adaptive Security Appliance (ASA) Software 7.2 before 7.2(5.16), 8.2 before 8.2(5.57), 8.3 before 8.3(2.44), 8.4 befo…

Mitigation only
Fix from $1,950 2015-04-13
Asa With Firepower Services HIGH 7.8
CVE-2015-0678

The virtualization layer in Cisco ASA FirePOWER Software before 5.3.1.2 and 5.4.x before 5.4.0.1 and ASA Context-Aware (CX) Software before 9.3.2.1-9…

Mitigation only
Fix from $1,950 2015-04-11
Ios Xe HIGH 7.8
CVE-2015-0685

Cisco IOS XE before 3.7.5S on ASR 1000 devices does not properly handle route adjacencies, which allows remote attackers to cause a denial of service…

Fix: after 3.7s.4
Fix from $1,950 2015-04-03
Wireless Lan Controller Software MEDIUM 6.1
CVE-2015-0679

The web-authentication functionality on Cisco Wireless LAN Controller (WLC) devices 7.3(103.8) and 7.4(110.0) allows remote attackers to cause a deni…

Mitigation only
Fix from $1,600 2015-03-28
Nx Os HIGH 7.9
CVE-2015-0658

The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which a…

Mitigation only
Fix from $1,950 2015-03-28
iOS HIGH 7.8
CVE-2015-0649

Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (device reload) via malformed Common Industrial Proto…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0650

The Service Discovery Gateway (aka mDNS Gateway) in Cisco IOS 12.2, 12.4, 15.0, 15.1, 15.2, 15.3, and 15.4 and IOS XE 3.9.xS and 3.10.xS before 3.10.…

Mitigation only
Fix from $1,950 2015-03-26
iOS HIGH 7.8
CVE-2015-0647

Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3 allows remote attackers to cause a denial of service (device reload) via malformed Common Industrial Proto…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0645

The Layer 4 Redirect (L4R) feature in Cisco IOS XE 2.x and 3.x before 3.10.4S, 3.11 before 3.11.3S, 3.12 before 3.12.2S, 3.13 before 3.13.1S, 3.14 be…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0644

AppNav in Cisco IOS XE 3.8 through 3.10 before 3.10.3S, 3.11 before 3.11.3S, 3.12 before 3.12.1S, 3.13 before 3.13.0S, 3.14 before 3.14.0S, and 3.15 …

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0641

Cisco IOS XE 2.x and 3.x before 3.9.0S, 3.10 before 3.10.0S, 3.11 before 3.11.0S, 3.12 before 3.12.0S, 3.13 before 3.13.0S, 3.14 before 3.14.0S, and …

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0642

Cisco IOS 12.2, 12.4, 15.0, 15.1, 15.2, 15.3, and 15.4 and IOS XE 2.5.x, 2.6.x, 3.1.xS through 3.12.xS before 3.12.3S, 3.2.xE through 3.7.xE before 3…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0640

The high-speed logging (HSL) feature in Cisco IOS XE 2.x and 3.x before 3.10.4S, 3.11 before 3.11.3S, 3.12 before 3.12.1S, 3.13 before 3.13.0S, 3.14 …

Mitigation only
Fix from $1,950 2015-03-26