Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
iOS HIGH 7.8
CVE-2013-5477

The T1/E1 driver-queue functionality in Cisco IOS 12.2 and 15.0 through 15.3, when an HDLC32 driver is used, allows remote attackers to cause a denia…

Mitigation only
Fix from $1,950 2013-09-27
iOS HIGH 7.8
CVE-2013-5478

Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a denial of service (interface …

Mitigation only
Fix from $1,950 2013-09-27
iOS HIGH 7.8
CVE-2013-5479

The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a denial of service (devi…

Mitigation only
Fix from $1,950 2013-09-27
iOS HIGH 7.8
CVE-2013-5480

The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a denial of service (devi…

Mitigation only
Fix from $1,950 2013-09-27
Ios Xe HIGH 7.1
CVE-2013-5472

The NTP implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.1, and IOS XE 2.1 through 3.3, does not properly handle encapsulation of mu…

Mitigation only
Fix from $1,950 2013-09-27
iOS HIGH 7.1
CVE-2013-5481

The PPTP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a denial of service (device reloa…

Mitigation only
Fix from $1,950 2013-09-27
Unified Computing System MEDIUM 5.8
CVE-2012-4092

The management interface in the Central Software component in Cisco Unified Computing System (UCS) does not properly validate the identity of vCenter…

Mitigation only
Fix from $1,600 2013-09-26
Unified Computing System MEDIUM 5.0
CVE-2012-4079

The XML API service in the Fabric Interconnect component in Cisco Unified Computing System (UCS) allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,600 2013-09-26
Unified Computing System MEDIUM 6.6
CVE-2012-4089

MCTOOLS in the fabric interconnect in Cisco Unified Computing System (UCS) allows local users to execute arbitrary Baseboard Management Controller (B…

Mitigation only
Fix from $1,600 2013-09-24
Unified Computing System MEDIUM 5.1
CVE-2012-4087

A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands …

Mitigation only
Fix from $1,600 2013-09-24
Unified Computing System MEDIUM 5.0
CVE-2012-4085

The Intelligent Platform Management Interface (IPMI) implementation in the Blade Management Controller in Cisco Unified Computing System (UCS) allows…

Mitigation only
Fix from $1,600 2013-09-24
Unified Computing System MEDIUM 6.8
CVE-2012-4082

MCTools in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to gain privileges by entering crafted command-…

Mitigation only
Fix from $1,600 2013-09-20
Nx Os MEDIUM 6.3
CVE-2013-5496

Open Network Environment Platform (ONEP) in Cisco NX-OS allows remote authenticated users to cause a denial of service (network-element reload) via a…

Mitigation only
Fix from $1,600 2013-09-16
Virtualization Experience Client 6000 MEDIUM 6.8
CVE-2013-5493

The diagnostic module in the firmware on Cisco Virtualization Experience Client 6000 devices allows local users to bypass intended access restriction…

Mitigation only
Fix from $1,600 2013-09-13
Digital Media Manager MEDIUM 5.8
CVE-2013-3446

Open redirect vulnerability in the login page in Cisco Digital Media Manager (DMM) allows remote attackers to redirect users to arbitrary web sites a…

Mitigation only
Fix from $1,600 2013-09-12
Prime Lan Management Solution MEDIUM 5.0
CVE-2013-5488

Cisco Common Services, as used in Cisco Prime LAN Management Solution (LMS), Cisco Security Manager, Cisco Unified Service Monitor, and Cisco Unified…

Mitigation only
Fix from $1,600 2013-09-12
Secure Access Control System MEDIUM 5.0
CVE-2013-5470

Cisco Secure Access Control System (ACS) does not properly handle requests to read from the TACACS+ socket, which allows remote attackers to cause a …

Mitigation only
Fix from $1,600 2013-09-04
Ios Xr MEDIUM 5.0
CVE-2013-3470

The RIP process in Cisco IOS XR allows remote attackers to cause a denial of service (process crash) via a crafted version-2 RIP packet, aka Bug ID C…

Mitigation only
Fix from $1,600 2013-08-30
Unified Ip Phone 8945 HIGH 7.8
CVE-2013-3468

The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka…

Mitigation only
Fix from $1,950 2013-08-29
Wide Area Application Services HIGH 10.0
CVE-2013-3443EPSS 6%

The web service framework in Cisco WAAS Software 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1 in a Central Manager (CM) con…

Mitigation only
Fix from $1,950 2013-08-01
Nx Os MEDIUM 6.8
CVE-2013-3400

The license-installation module in Cisco NX-OS on Nexus 1000V devices allows local users to execute arbitrary commands via crafted "install license" …

Mitigation only
Fix from $1,600 2013-07-10
Adaptive Security Appliance HIGH 7.8
CVE-2013-3382

The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive …

Mitigation only
Fix from $1,950 2013-06-26
Jabber MEDIUM 5.0
CVE-2013-3393

The Precision Video Engine component in Cisco Jabber for Windows and Cisco Virtualization Experience Media Engine allows remote attackers to cause a …

Mitigation only
Fix from $1,600 2013-06-26
Telepresence Tc Software HIGH 7.8
CVE-2013-3378

Cisco TelePresence TC Software before 6.1 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (temporary device hang) vi…

Fix: after 6.0.1
Fix from $1,950 2013-06-21
Asa Cx Context Aware Security Software MEDIUM 5.4
CVE-2013-1203

Cisco ASA CX Context-Aware Security Software allows remote attackers to cause a denial of service (device reload) via crafted TCP packets that appear…

Mitigation only
Fix from $1,600 2013-06-18
Webex MEDIUM 5.8
CVE-2012-6399

Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of th…

Mitigation only
Fix from $1,600 2013-05-27
Telepresence Supervisor Mse 8050 Software HIGH 7.8
CVE-2013-1236

Cisco TelePresence Supervisor MSE 8050 before 2.3(1.31) allows remote attackers to cause a denial of service (CPU consumption or device reload) by es…

Fix: after 2.2
Fix from $1,950 2013-05-16
Unified Customer Voice Portal HIGH 7.8
CVE-2013-1223

The log viewer in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly validate an unspecified parameter, which al…

Fix: after 9.0
Fix from $1,950 2013-05-09
Webex Meetings Server MEDIUM 5.0
CVE-2013-1232

The HTTP implementation in Cisco WebEx Node for MCS, WebEx Meetings Server, and WebEx Node for ASR 1000 Series allows remote attackers to read the co…

Mitigation only
Fix from $1,600 2013-05-04
Webex Meetings Server MEDIUM 5.0
CVE-2013-1231

The HTTP implementation in Cisco WebEx Node for MCS and WebEx Meetings Server allows remote attackers to read cache files via a crafted request, aka …

Mitigation only
Fix from $1,600 2013-05-03