Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Ios Xr MEDIUM 5.0
CVE-2014-3376

Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed RSVP packet, aka Bug ID CSCuq12031.

Mitigation only
Fix from $1,600 2014-09-20
Ios Xr MEDIUM 5.0
CVE-2014-3378

tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed TACACS+ packet, aka Bug…

Mitigation only
Fix from $1,600 2014-09-20
Integrated Management Controller MEDIUM 5.0
CVE-2014-3348

The SSH module in the Integrated Management Controller (IMC) before 2.3.1 in Cisco Unified Computing System on E-Series blade servers allows remote a…

Fix: after 2.2.2
Fix from $1,600 2014-09-10
Transport Gateway Installation Software MEDIUM 6.3
CVE-2014-3346

The web framework in Cisco Transport Gateway for Smart Call Home (aka TG-SCH or Transport Gateway Installation Software) does not validate an unspeci…

Mitigation only
Fix from $1,600 2014-08-29
Unified Communications Manager HIGH 8.5
CVE-2014-3338

The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO t…

Mitigation only
Fix from $1,950 2014-08-12
Unified Communications Domain Manager MEDIUM 6.8
CVE-2014-3337

The SIP implementation in Cisco Unified Communications Manager (CM) 8.6(.2) and earlier allows remote authenticated users to cause a denial of servic…

Fix: after 8.6
Fix from $1,600 2014-08-12
iOS HIGH 7.8
CVE-2014-3327

The EnergyWise module in Cisco IOS 12.2, 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.2.xXO, 3.3.xSG, 3.4.xSG, and 3.5.xE before 3.5.3E allows remote atta…

Mitigation only
Fix from $1,950 2014-08-11
Ios Xr MEDIUM 6.1
CVE-2014-3322

Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause…

Fix: after 4.3.2
Fix from $1,600 2014-07-24
Dpc3010 HIGH 10.0
CVE-2014-3306EPSS 7%

The web server on Cisco DPC3010, DPC3212, DPC3825, DPC3925, DPQ3925, EPC3010, EPC3212, EPC3825, and EPC3925 Wireless Residential Gateway products all…

Mitigation only
Fix from $1,950 2014-07-18
Ios Xr MEDIUM 5.7
CVE-2014-3321

Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routing is enabled, allows remote attackers to cause a …

Fix: after 4.3.4
Fix from $1,600 2014-07-18
Ios Xr MEDIUM 6.4
CVE-2014-3308

Cisco IOS XR on Trident line cards in ASR 9000 devices lacks a static punt policer, which allows remote attackers to cause a denial of service (CPU c…

Mitigation only
Fix from $1,600 2014-07-07
iOS MEDIUM 6.8
CVE-2014-3299

Cisco IOS allows remote authenticated users to cause a denial of service (device reload) via malformed IPsec packets, aka Bug ID CSCui79745.

Mitigation only
Fix from $1,600 2014-06-25
Unified Communications Manager MEDIUM 5.5
CVE-2014-3292

The Real Time Monitoring Tool (RTMT) implementation in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to (1) rea…

Mitigation only
Fix from $1,600 2014-06-10
Wireless Lan Controller MEDIUM 5.7
CVE-2014-3291

Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a z…

Mitigation only
Fix from $1,600 2014-06-08
Unified Communications Domain Manager MEDIUM 5.8
CVE-2014-3283

Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM)…

Fix: after 9.0
Fix from $1,600 2014-05-29
Wide Area Application Services MEDIUM 5.0
CVE-2014-3285

Cisco Wide Area Application Services (WAAS) 5.3(.5a) and earlier, when SharePoint acceleration is enabled, does not properly parse SharePoint respons…

Fix: after 5.3
Fix from $1,600 2014-05-29
Tidal Enterprise Scheduler MEDIUM 6.0
CVE-2014-3272

The Agent in Cisco Tidal Enterprise Scheduler (TES) 6.1 and earlier allows local users to gain privileges via crafted Tidal Job Buffers (TJB) paramet…

Fix: after 6.1
Fix from $1,600 2014-05-26
Ios Xe MEDIUM 6.1
CVE-2014-3284

Cisco IOS XE on ASR1000 devices, when PPPoE termination is enabled, allows remote attackers to cause a denial of service (device reload) via a malfor…

Mitigation only
Fix from $1,600 2014-05-25
Ios Xe MEDIUM 6.8
CVE-2014-3269

The SNMP module in Cisco IOS XE 3.5E allows remote authenticated users to cause a denial of service (device reload) by polling frequently, aka Bug ID…

Mitigation only
Fix from $1,600 2014-05-20
iOS MEDIUM 6.1
CVE-2014-3273

The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum962…

Mitigation only
Fix from $1,600 2014-05-20
iOS MEDIUM 5.0
CVE-2014-3268

Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service (input-queue consumption and …

Mitigation only
Fix from $1,600 2014-05-20
Ios Xr MEDIUM 5.0
CVE-2014-3270

The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCu…

Mitigation only
Fix from $1,600 2014-05-20
Ios Xr MEDIUM 5.0
CVE-2014-3271

The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug IDs CSC…

Mitigation only
Fix from $1,600 2014-05-20
Unified Web And E Mail Interaction Manager MEDIUM 6.8
CVE-2014-2194

system/egain/chat/entrypoint in Cisco Unified Web and E-mail Interaction Manager 9.0(2) allows remote attackers to have an unspecified impact by inje…

Mitigation only
Fix from $1,600 2014-05-20
iOS MEDIUM 5.4
CVE-2014-3263

The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS packets that require tower p…

Mitigation only
Fix from $1,600 2014-05-16
Telepresence Tc Software HIGH 9.0
CVE-2014-2169

Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary command…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2158

Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP pack…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2159

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2160

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02
Telepresence System Software HIGH 7.8
CVE-2014-2161

The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2014-05-02