Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Ios Xe HIGH 7.8
CVE-2015-0639

The Common Flow Table (CFT) feature in Cisco IOS XE 3.6 and 3.7 before 3.7.1S, 3.8 before 3.8.0S, 3.9 before 3.9.0S, 3.10 before 3.10.0S, 3.11 before…

Mitigation only
Fix from $1,950 2015-03-26
iOS HIGH 7.1
CVE-2015-0638

Cisco IOS 12.2, 12.4, 15.0, 15.2, and 15.3, when a VRF interface is configured, allows remote attackers to cause a denial of service (interface queue…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0637

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS XE 3.10.xS through 3.13.xS b…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 7.8
CVE-2015-0636

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS XE 3.10.xS through 3.13.xS b…

Mitigation only
Fix from $1,950 2015-03-26
Ios Xe HIGH 9.0
CVE-2015-0635

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 12.2, 12.4, 15.0, 15.2, 15.3, and 15.4 and IOS XE 3.10.xS through 3.13.xS b…

Mitigation only
Fix from $1,950 2015-03-26
iOS MEDIUM 6.4
CVE-2015-0669

The Autonomic Networking Infrastructure (ANI) implementation in Cisco IOS 15.4S and 15.4(3)S allows remote attackers to modify configuration settings…

Mitigation only
Fix from $1,600 2015-03-21
Expressway Software HIGH 7.8
CVE-2015-0652

The Session Description Protocol (SDP) implementation in Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway before X8.2 and Cis…

Mitigation only
Fix from $1,950 2015-03-13
Ios Xr MEDIUM 5.0
CVE-2015-0657

Cisco IOS XR allows remote attackers to cause a denial of service (RSVP process reload) via a malformed RSVP packet, aka Bug ID CSCur69192.

Mitigation only
Fix from $1,600 2015-03-06
Unified Computing System MEDIUM 6.8
CVE-2015-0633

The Integrated Management Controller (IMC) in Cisco Unified Computing System (UCS) 1.4(7h) and earlier on C-Series servers allows remote attackers to…

Mitigation only
Fix from $1,600 2015-02-26
Desktop Collaboration Experience Dx650 HIGH 7.2
CVE-2015-0584

The image-upgrade implementation on Cisco Desktop Collaboration Experience (aka Collaboration Desk Experience or DX) DX650 endpoints allows local use…

Mitigation only
Fix from $1,950 2015-02-20
Wireless Lan Controller HIGH 7.1
CVE-2015-0622

The Wireless Intrusion Detection (aka WIDS) functionality on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2015-02-19
Unified Ip Phones 9900 Series Firmware MEDIUM 5.0
CVE-2015-0600

The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to cause a denial of service (logoff…

Fix: after 9.4
Fix from $1,600 2015-02-07
Webex Meetings Server HIGH 9.0
CVE-2015-0589

The administrative web interface in Cisco WebEx Meetings Server 1.0 through 1.5 allows remote authenticated users to execute arbitrary OS commands wi…

Mitigation only
Fix from $1,950 2015-02-07
Unified Ip Phones 9971 Firmware MEDIUM 5.0
CVE-2015-0604

The web framework on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to upload files to arbitrary locations on…

Mitigation only
Fix from $1,600 2015-02-07
Webex Meetings Server MEDIUM 5.0
CVE-2015-0597

The Forgot Password feature in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to enumerate administrative accounts via c…

Fix: after 1.5
Fix from $1,600 2015-02-02
Adaptive Security Appliance Software MEDIUM 5.7
CVE-2015-0578

Cisco Adaptive Security Appliance (ASA) Software, when a DHCPv6 relay is configured, allows remote attackers to cause a denial of service (device rel…

Mitigation only
Fix from $1,600 2015-01-14
Anyconnect Secure Mobility Client MEDIUM 5.0
CVE-2014-3314

Cisco AnyConnect on Android and OS X does not properly verify the host type, which allows remote attackers to spoof authentication forms and possibly…

Mitigation only
Fix from $1,600 2015-01-14
Nx Os MEDIUM 5.0
CVE-2015-0582

The High Availability (HA) subsystem in Cisco NX-OS on MDS 9000 devices allows remote attackers to cause a denial of service via crafted traffic, aka…

Mitigation only
Fix from $1,600 2015-01-10
Webex Meetings Server MEDIUM 5.0
CVE-2014-8036

The outlookpa component in Cisco WebEx Meetings Server does not properly validate API input, which allows remote attackers to modify a meeting's invi…

Mitigation only
Fix from $1,600 2015-01-10
Meraki Mr Firmware MEDIUM 5.4
CVE-2014-7994

Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote attackers to execute arbitrary commands by leveraging knowledge of a…

Fix: after 2014-09-24
Fix from $1,600 2014-12-24
Unified Communications Domain Manager MEDIUM 6.5
CVE-2014-8010

The web framework in Cisco Unified Communications Domain Manager 8 allows remote authenticated administrators to execute arbitrary OS commands via cr…

Mitigation only
Fix from $1,600 2014-12-10
Unified Computing System HIGH 7.2
CVE-2014-8003

Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted…

Fix: after 2.2
Fix from $1,950 2014-12-10
B200 M3 MEDIUM 6.8
CVE-2014-7989

Cisco Unified Computing System on B-Series blade servers allows local users to gain shell privileges via a crafted (1) ping6 or (2) traceroute6 comma…

Mitigation only
Fix from $1,600 2014-11-07
Ios Xe MEDIUM 6.8
CVE-2014-7990

Cisco IOS XE 3.5E and earlier on WS-C3850, WS-C3860, and AIR-CT5760 devices does not properly parse the "request system shell" challenge response, wh…

Fix: after 3.5e
Fix from $1,600 2014-11-07
Rv180 Firmware MEDIUM 5.0
CVE-2014-2179

The Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180W devices allows remote attac…

Fix: after 1.0.5.8
Fix from $1,600 2014-11-07
Adaptive Security Appliance Software MEDIUM 6.8
CVE-2014-3390

The Virtual Network Management Center (VNMC) policy implementation in Cisco ASA Software 8.7 before 8.7(1.14), 9.2 before 9.2(2.8), and 9.3 before 9.…

Mitigation only
Fix from $1,600 2014-10-10
Adaptive Security Appliance Software MEDIUM 6.8
CVE-2014-3391

Untrusted search path vulnerability in Cisco ASA Software 8.x before 8.4(3), 8.5, and 8.7 before 8.7(1.13) allows local users to gain privileges by p…

Mitigation only
Fix from $1,600 2014-10-10
Webex Meetings Server MEDIUM 5.0
CVE-2014-3395

Cisco WebEx Meetings Server (WMS) 2.5 allows remote attackers to trigger the download of arbitrary files via a crafted URL, aka Bug ID CSCup10343.

Mitigation only
Fix from $1,600 2014-09-30
iOS HIGH 7.8
CVE-2014-3354

Cisco IOS 12.0, 12.2, 12.4, 15.0, 15.1, 15.2, and 15.3 and IOS XE 2.x and 3.x before 3.7.4S; 3.2.xSE and 3.3.xSE before 3.3.2SE; 3.3.xSG and 3.4.xSG …

Mitigation only
Fix from $1,950 2014-09-25
Ios Xr MEDIUM 6.1
CVE-2014-3379

Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (NPU and card hang or re…

Mitigation only
Fix from $1,600 2014-09-20