Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Adaptive Security Appliance Software MEDIUM 5.4
CVE-2013-5560

The IPv6 implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1.3 and earlier, when NAT64 or NAT66 is enabled, does not properly proc…

Fix: after 9.1
Fix from $1,600 2013-11-13
Adaptive Security Appliance Cx Context Aware Security Software MEDIUM 5.0
CVE-2013-5561

The Safe Search enforcement feature in Cisco Adaptive Security Appliance (ASA) CX Context-Aware Security Software does not properly perform filtering…

Mitigation only
Fix from $1,600 2013-11-04
Ios Xe HIGH 7.8
CVE-2013-5543

Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via mal…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5545

The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5546

The TCP reassembly feature in Cisco IOS XE 3.7 before 3.7.3S and 3.8 before 3.8.1S on 1000 ASR devices allows remote attackers to cause a denial of s…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5547

Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending malformed EoGRE pa…

Mitigation only
Fix from $1,950 2013-10-31
Web Security Appliance HIGH 7.8
CVE-2013-5537

The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does…

Mitigation only
Fix from $1,950 2013-10-24
Secure Access Control System MEDIUM 5.0
CVE-2013-5536

Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denia…

Mitigation only
Fix from $1,600 2013-10-24
Unified Computing System MEDIUM 5.8
CVE-2012-4117

The fabric-interconnect component in Cisco Unified Computing System (UCS) does not properly verify X.509 certificates, which allows man-in-the-middle…

Mitigation only
Fix from $1,600 2013-10-19
Webex Meetings Server MEDIUM 6.8
CVE-2013-5529

The deployment module in the server in Cisco WebEx Meeting Center does not properly validate the passphrase, which allows remote attackers to launch …

Mitigation only
Fix from $1,600 2013-10-16
Identity Services Engine Software MEDIUM 6.0
CVE-2013-5539

The upload-dialog implementation in Cisco Identity Services Engine (ISE) allows remote authenticated users to upload files with an arbitrary file typ…

Mitigation only
Fix from $1,600 2013-10-16
Nx Os MEDIUM 6.8
CVE-2012-4076

Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library …

Mitigation only
Fix from $1,600 2013-10-14
Adaptive Security Appliance Software HIGH 7.1
CVE-2013-5508

The SQL*Net inspection engine in Cisco Adaptive Security Appliance (ASA) Software 7.x before 7.2(5.12), 8.x before 8.2(5.44), 8.3.x before 8.3(2.39),…

Mitigation only
Fix from $1,950 2013-10-13
Unified Ip Phones 9900 Series Firmware MEDIUM 6.0
CVE-2013-5533

The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell commands in an unspecified par…

Mitigation only
Fix from $1,600 2013-10-11
Unified Ip Phones 9900 Series Firmware MEDIUM 5.0
CVE-2013-5532

Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of service (webapp interface outag…

Mitigation only
Fix from $1,600 2013-10-11
Unified Ip Phone 9951 HIGH 7.1
CVE-2013-5526

Cisco 9900 fourth-generation IP phones do not properly perform SDP negotiation, which allows remote attackers to cause a denial of service (device re…

Mitigation only
Fix from $1,950 2013-10-10
iOS MEDIUM 5.7
CVE-2013-5527

The OSPF functionality in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (device reload) via crafted options in an LSA typ…

Mitigation only
Fix from $1,600 2013-10-10
Nx Os MEDIUM 6.2
CVE-2012-4122

The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output re…

Mitigation only
Fix from $1,600 2013-10-05
Nx Os MEDIUM 5.0
CVE-2012-4091

The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 me…

Mitigation only
Fix from $1,600 2013-10-05
Nx Os MEDIUM 5.0
CVE-2012-4098

The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service rese…

Mitigation only
Fix from $1,600 2013-10-05
Unified Computing System MEDIUM 6.8
CVE-2012-4102

The activate firmware command in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by e…

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 6.8
CVE-2012-4103

ethanalyzer in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedding commands …

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 6.8
CVE-2012-4109

The clear sshkey command in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedd…

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 6.8
CVE-2012-4110

run-script in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedding commands i…

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 6.8
CVE-2012-4111

The create certreq command in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embe…

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 5.5
CVE-2012-4095

The local file editor in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges, and read or…

Mitigation only
Fix from $1,600 2013-10-02
Unified Computing System MEDIUM 6.2
CVE-2012-4096

The local file editor in the Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) allows local users to gain privileges and …

Mitigation only
Fix from $1,600 2013-10-01
Ios Xr MEDIUM 5.0
CVE-2013-5498

The PPTP-ALG component in CRS Carrier Grade Services Engine (CGSE) and ASR 9000 Integrated Service Module (ISM) in Cisco IOS XR allows remote attacke…

Mitigation only
Fix from $1,600 2013-09-27
Ios Xe HIGH 7.8
CVE-2013-5475

Cisco IOS 12.2 through 12.4 and 15.0 through 15.3, and IOS XE 2.1 through 3.9, allows remote attackers to cause a denial of service (device reload) v…

Mitigation only
Fix from $1,950 2013-09-27
iOS HIGH 7.8
CVE-2013-5476

The Zone-Based Firewall (ZFW) feature in Cisco IOS 15.1 through 15.2, when content filtering or HTTP ALG inspection is enabled, allows remote attacke…

Mitigation only
Fix from $1,950 2013-09-27