Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Prime Infrastructure HIGH 9.0
CVE-2014-0679

Cisco Prime Infrastructure 1.2 and 1.3 before 1.3.0.20-2, 1.4 before 1.4.0.45-2, and 2.0 before 2.0.0.0.294-2 allows remote authenticated users to ex…

Mitigation only
Fix from $1,950 2014-02-27
Unified Communications Manager MEDIUM 6.8
CVE-2014-0747

The Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows lo…

Fix: after 10.0
Fix from $1,600 2014-02-27
Unified Communications Manager MEDIUM 6.2
CVE-2014-0742

The Certificate Authority Proxy Function (CAPF) CLI implementation in the CSR management feature in Cisco Unified Communications Manager (Unified CM)…

Fix: after 10.0
Fix from $1,600 2014-02-27
Ips Sensor Software HIGH 7.1
CVE-2014-0718

The produce-verbose-alert feature in Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2014-02-22
Ips Sensor Software HIGH 7.1
CVE-2014-0720

Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (Analysis Engine process outage) …

Fix: after 7.1
Fix from $1,950 2014-02-22
Unified Computing System Central Software MEDIUM 6.8
CVE-2014-0730

Cisco Unified Computing System (UCS) Central Software 1.1 and earlier allows local users to gain privileges via a CLI copy command in a local-mgmt co…

Fix: after 1.1
Fix from $1,600 2014-02-22
Telepresence Video Communication Server Software HIGH 7.1
CVE-2014-0662

The SIP module in Cisco TelePresence Video Communication Server (VCS) before 8.1 allows remote attackers to cause a denial of service (process failur…

Mitigation only
Fix from $1,950 2014-01-22
Nx Os MEDIUM 5.0
CVE-2014-0677

The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage…

Mitigation only
Fix from $1,600 2014-01-22
Telepresence Isdn Gateway Software HIGH 7.1
CVE-2014-0660

Cisco TelePresence ISDN Gateway with software before 2.2(1.92) allows remote attackers to cause a denial of service (D-channel call outage) via a cra…

Fix: after 2.1
Fix from $1,950 2014-01-22
Mediasense MEDIUM 5.8
CVE-2014-0671

Open redirect vulnerability in Cisco MediaSense allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an …

Mitigation only
Fix from $1,600 2014-01-22
Secure Access Control System HIGH 10.0
CVE-2014-0650

The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute arbitrary operating-system co…

Fix: after 5.4.0.46.2
Fix from $1,950 2014-01-16
Unified Ip Phones 9900 Series Firmware MEDIUM 5.4
CVE-2014-0658

Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898.

Mitigation only
Fix from $1,600 2014-01-10
Ios Xe MEDIUM 5.4
CVE-2013-6981

Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka B…

Fix: after 3.7s
Fix from $1,600 2013-12-28
Cisco Ons 15454 System Software MEDIUM 5.0
CVE-2013-6701

The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritiz…

Mitigation only
Fix from $1,600 2013-12-18
Webex Training Center MEDIUM 5.8
CVE-2013-6966

Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta…

Mitigation only
Fix from $1,600 2013-12-17
Webex Sales Center MEDIUM 5.8
CVE-2013-6959

Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks…

Mitigation only
Fix from $1,600 2013-12-14
Webex Sales Center MEDIUM 5.8
CVE-2013-6967

Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web si…

No fix yet
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.8
CVE-2013-6971

Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta…

Mitigation only
Fix from $1,600 2013-12-14
Ons 15454 HIGH 7.1
CVE-2013-6703

The TLS/SSLv3 module on Cisco ONS 15454 controller cards allows remote attackers to cause a denial of service (card reset) via crafted (1) TLS or (2)…

Mitigation only
Fix from $1,950 2013-12-03
iOS MEDIUM 6.1
CVE-2013-6705

The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (IPDT AVL corruption and device re…

Mitigation only
Fix from $1,600 2013-12-03
Adaptive Security Appliance Software HIGH 7.1
CVE-2013-6696

Cisco Adaptive Security Appliance (ASA) Software does not properly handle errors during the processing of DNS responses, which allows remote attacker…

Mitigation only
Fix from $1,950 2013-12-02
Ios Xe MEDIUM 5.4
CVE-2013-6706

The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS …

Mitigation only
Fix from $1,600 2013-11-29
Ios Xr MEDIUM 5.0
CVE-2013-6700

The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload) via a request for an unspecified MIB, aka Bug I…

Mitigation only
Fix from $1,600 2013-11-29
Unified Communications Manager MEDIUM 6.9
CVE-2013-6689

Cisco Unified Communications Manager (Unified CM) 9.1(1) and earlier allows local users to bypass file permissions, and read, modify, or create arbit…

Fix: after 9.1
Fix from $1,600 2013-11-18
iOS MEDIUM 6.8
CVE-2013-6686

The SSL VPN implementation in Cisco IOS 15.3(1)T2 and earlier allows remote authenticated users to cause a denial of service (interface queue wedge) …

Fix: after 15.3
Fix from $1,600 2013-11-18
Service Portal MEDIUM 6.8
CVE-2013-3406

The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Services Portal 9.4(1) allows remo…

Mitigation only
Fix from $1,600 2013-11-18
Wireless Lan Controller MEDIUM 6.8
CVE-2013-6684

The web framework on Cisco Wireless LAN Controller (WLC) devices does not properly validate configuration parameters, which allows remote authenticat…

Mitigation only
Fix from $1,600 2013-11-13
Adaptive Security Appliance Software MEDIUM 6.4
CVE-2013-6682

The phone-proxy implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earlier does not properly validate X.509 certificates,…

Fix: after 9.0.3
Fix from $1,600 2013-11-13
Nx Os MEDIUM 6.1
CVE-2013-6683

The IPv6 implementation in Cisco NX-OS does not properly handle neighbor-table adjacencies, which allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $1,600 2013-11-13
Adaptive Security Appliance Software HIGH 7.1
CVE-2013-5568

The auto-update implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earlier allows remote attackers to cause a denial of s…

Fix: after 9.0.3
Fix from $1,950 2013-11-13