Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Adaptive Security Appliance Software HIGH 7.8
CVE-2010-4679

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) do not properly handle Online Certificate Status Protocol (O…

Fix: after 8.2
Fix from $1,950 2011-01-07
Unified Presence Server HIGH 7.8
CVE-2010-2840

The Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact fiel…

Patch available
Fix from $1,950 2010-08-26
iOS HIGH 7.8
CVE-2010-2827

Cisco IOS 15.1(2)T allows remote attackers to cause a denial of service (resource consumption and TCP outage) via spoofed TCP packets, related to emb…

Mitigation only
Fix from $1,950 2010-08-16
Firewall Services Module Software HIGH 7.8
CVE-2010-2819

Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 befor…

Mitigation only
Fix from $1,950 2010-08-09
Content Services Switch 11500 HIGH 7.5
CVE-2010-1576

The Cisco Content Services Switch (CSS) 11500 with software before 8.20.4.02 and the Application Control Engine (ACE) 4710 with software before A2(3.…

Fix: after 8.20.3.03
Fix from $1,950 2010-07-06
Content Services Switch 11500 HIGH 7.5
CVE-2010-2629

The Cisco Content Services Switch (CSS) 11500 with software 8.20.4.02 and the Application Control Engine (ACE) 4710 with software A2(3.0) do not prop…

Fix: after 8.20.3.03
Fix from $1,950 2010-07-06
Asa 5580 HIGH 7.8
CVE-2009-4918

Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allow remote attackers to cause a denial of service (IKE pro…

Fix: after 8.1
Fix from $1,950 2010-06-29
Asa 5580 HIGH 7.8
CVE-2009-4921

Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allow remote attackers to cause a denial of service (traceba…

Fix: after 8.1
Fix from $1,950 2010-06-29
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-0601

The MGCP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device …

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-0602

The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device c…

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-0603

The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows remote attackers to cause a denial of service (device c…

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-1561

The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S11 and 9.7(3)P before 9.7(3)P11 allows remote attackers t…

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-1562

The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to …

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-1563

The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to …

Patch available
Fix from $1,950 2010-05-14
Pgw 2200 Softswitch HIGH 7.8
CVE-2010-1567

The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.8(1)S5 allows remote attackers to cause a denial of service (device cr…

Fix: after 9.8
Fix from $1,950 2010-05-14
Secure Desktop HIGH 9.3
CVE-2010-0589

The Web Install ActiveX control (CSDWebInstaller) in Cisco Secure Desktop (CSD) before 3.5.841 does not properly verify the signatures of downloaded …

Fix: after 3.5
Fix from $1,950 2010-04-15
Tftp Server MEDIUM 5.0
CVE-2010-1174EPSS 5%

Cisco TFTP Server 1.1 allows remote attackers to cause a denial of service (daemon crash) via a crafted (1) read (aka RRQ) or (2) write (aka WRQ) req…

No fix yet
Fix from $1,600 2010-03-29
Ios Xr MEDIUM 5.9
CVE-2009-2055 KEV

Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE message with an invalid attrib…

Patch available
Fix from $1,600 2009-08-19
4400 Wireless Lan Controller HIGH 7.8
CVE-2009-0059

The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Control…

Mitigation only
Fix from $1,950 2009-02-05
4400 Wireless Lan Controller HIGH 7.8
CVE-2009-0061

Unspecified vulnerability in the Wireless LAN Controller (WLC) TSEC driver in the Cisco 4400 WLC, Cisco Catalyst 6500 and 7600 Wireless Services Modu…

Mitigation only
Fix from $1,950 2009-02-05
4400 Wireless Lan Controller MEDIUM 6.1
CVE-2009-0058

The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Control…

Mitigation only
Fix from $1,600 2009-02-05
Unified Ip Phone 7940g HIGH 7.1
CVE-2008-4444

Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to …

Mitigation only
Fix from $1,950 2009-01-16
Ons HIGH 7.8
CVE-2008-3818

Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1, and 8.5.2 allows remote atta…

Mitigation only
Fix from $1,950 2009-01-16
iOS HIGH 7.8
CVE-2008-3810

Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of …

Mitigation only
Fix from $1,950 2008-09-26
iOS HIGH 7.8
CVE-2008-3811

Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of …

Patch available
Fix from $1,950 2008-09-26
Adaptive Security Appliance 5500 HIGH 7.1
CVE-2008-2735

The HTTP server in Cisco Adaptive Security Appliance (ASA) 5500 devices 8.0 before 8.0(3)15 and 8.1 before 8.1(1)5, when configured as a clientless S…

Mitigation only
Fix from $1,950 2008-09-04
Unified Communications Manager HIGH 7.8
CVE-2008-2061

The Computer Telephony Integration (CTI) Manager service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3c) and 6.x before 6.1(2) allo…

Fix: 5.1 / 6.1+
Fix from $1,950 2008-06-26
Linksys Wrh54g Router HIGH 7.8
CVE-2008-2636

The HTTP service on the Cisco Linksys WRH54G with firmware 1.01.03 allows remote attackers to cause a denial of service (management interface outage)…

Mitigation only
Fix from $1,950 2008-06-10
Pix Security Appliance HIGH 7.8
CVE-2008-2055

Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 7.1.x before 7.1(2)70, 7.2.x before 7.2(4), and 8.0.x before 8.0(3)10 allows…

Patch available
Fix from $1,950 2008-06-04
Adaptive Security Appliance HIGH 7.8
CVE-2008-2056

Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 8.0.x before 8.0(3)9 and 8.1.x before 8.1(1)1 allows remote attackers to cau…

Patch available
Fix from $1,950 2008-06-04