Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Service Control Engine HIGH 7.8
CVE-2008-0534

The SSH server in (1) Cisco Service Control Engine (SCE) before 3.1.6, and (2) Icon Labs Iconfidant SSH before 2.3.8, allows remote attackers to caus…

Fix: after 3.1.6
Fix from $1,950 2008-05-22
Unified Presence HIGH 7.8
CVE-2008-1158

The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service …

Mitigation only
Fix from $1,950 2008-05-16
Unified Presence HIGH 7.8
CVE-2008-1740

The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service …

Fix: after 6.0_2
Fix from $1,950 2008-05-16
Unified Presence HIGH 7.8
CVE-2008-1741

The SIP Proxy (SIPD) service in Cisco Unified Presence before 6.0(3) allows remote attackers to cause a denial of service (core dump and service inte…

Fix: after 6.0_2
Fix from $1,950 2008-05-16
Unified Callmanager HIGH 7.8
CVE-2008-1744

The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager (CUCM) 4.1 before 4.1(3)SR7, 4.2 before 4.2(3)SR4, an…

Mitigation only
Fix from $1,950 2008-05-16
Unified Communications Manager HIGH 7.8
CVE-2008-1745

Cisco Unified Communications Manager (CUCM) 5.x before 5.1(2) and 6.x before 6.1(1) allows remote attackers to cause a denial of service (service int…

Mitigation only
Fix from $1,950 2008-05-16
Unified Communications Manager HIGH 7.8
CVE-2008-1746

The SNMP Trap Agent service in Cisco Unified Communications Manager (CUCM) 4.1 before 4.1(3)SR6, 4.2 before 4.2(3)SR3, 4.3 before 4.3(2), 5.x before …

Mitigation only
Fix from $1,950 2008-05-16
Unified Communications Manager HIGH 7.8
CVE-2008-1747

Unspecified vulnerability in Cisco Unified Communications Manager 4.1 before 4.1(3)SR6, 4.2 before 4.2(3)SR3, 4.3 before 4.3(2), 5.x before 5.1(3), a…

Fix: 4.1 / 4.2+
Fix from $1,950 2008-05-16
Unified Communications Manager HIGH 7.8
CVE-2008-1748

Cisco Unified Communications Manager 4.1 before 4.1(3)SR7, 4.2 before 4.2(3)SR4, 4.3 before 4.3(2), 5.x before 5.1(3), and 6.x before 6.1(1) does not…

Fix: 4.1 / 4.2+
Fix from $1,950 2008-05-16
Ciscoworks Internetwork Performance Monitor HIGH 10.0
CVE-2008-1157EPSS 21%

Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 creates a process that executes a command shell and listens on a randomly chosen TCP port…

Patch available
Fix from $1,950 2008-03-14
Skinny Client Control Protocol \(sccp\) Firmware HIGH 7.8
CVE-2008-0526

Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a long IC…

Patch available
Fix from $1,950 2008-02-15
Skinny Client Control Protocol \(sccp\) Firmware HIGH 7.8
CVE-2008-0527

The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a cra…

Patch available
Fix from $1,950 2008-02-15
Firewall Services Module HIGH 7.8
CVE-2007-5570

Cisco Firewall Services Module (FWSM) 3.2(1), and 3.1(5) and earlier, allows remote attackers to cause a denial of service (device reload) via a craf…

Fix: after 3.2
Fix from $1,950 2007-10-18
Firewall Services Module HIGH 7.1
CVE-2007-5568

Cisco PIX and ASA appliances with 7.0 through 8.0 software, and Cisco Firewall Services Module (FWSM) 3.1(5) and earlier, allow remote attackers to c…

Fix: after 3.1
Fix from $1,950 2007-10-18
Adaptive Security Appliance HIGH 7.1
CVE-2007-5569

Cisco PIX and ASA appliances with 7.1 and 7.2 software, when configured for TLS sessions to the device, allow remote attackers to cause a denial of s…

Mitigation only
Fix from $1,950 2007-10-18
Voip Phone Cp 7940 HIGH 7.1
CVE-2007-4459EPSS 14%

Cisco IP Phone 7940 and 7960 with P0S3-08-6-00 firmware, and other SIP firmware before 8.7(0), allows remote attackers to cause a denial of service (…

Fix: after 8.70
Fix from $1,950 2007-08-21
Cli MEDIUM 5.0
CVE-2007-4430EPSS 13%

Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows context-dependent attackers to cause a denial of service (device restart and BGP rout…

Mitigation only
Fix from $1,600 2007-08-20
Network Analysis Module HIGH 10.0
CVE-2007-1257EPSS 7%

The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNM…

Mitigation only
Fix from $1,950 2007-03-03
iOS HIGH 7.1
CVE-2006-0340

Unspecified vulnerability in Stack Group Bidding Protocol (SGBP) support in Cisco IOS 12.0 through 12.4 running on various Cisco products, when SGBP …

Patch available
Fix from $1,950 2006-01-21
Pix Firewall HIGH 7.8
CVE-2003-1003

Cisco PIX firewall 5.x.x, and 6.3.1 and earlier, allows remote attackers to cause a denial of service (crash and reload) via an SNMPv3 message when s…

Patch available
Fix from $1,950 2004-01-05
iOS HIGH 7.8
CVE-2003-0567EPSS 17%

Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 pa…

Patch available
Fix from $1,950 2003-08-18
iOS HIGH 7.8
CVE-2002-2239

The Cisco Optical Service Module (OSM) for the Catalyst 6500 and 7600 series running Cisco IOS 12.1(8)E through 12.1(13.4)E allows remote attackers t…

Patch available
Fix from $1,950 2002-12-31
iOS HIGH 10.0
CVE-2002-1358EPSS 6%

Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of …

Mitigation only
Fix from $1,950 2002-12-23
iOS HIGH 10.0
CVE-2002-1359EPSS 80%

Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2002-12-23
iOS HIGH 10.0
CVE-2002-1360EPSS 6%

Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, …

Mitigation only
Fix from $1,950 2002-12-23
Catalyst 2900 MEDIUM 5.0
CVE-2001-0566EPSS 6%

Cisco Catalyst 2900XL switch allows a remote attacker to create a denial of service via an empty UDP packet sent to port 161 (SNMP) when SNMP is dis…

Mitigation only
Fix from $1,600 2001-08-14
Vpn 3000 Concentrator HIGH 7.1
CVE-2001-0427

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) …

Patch available
Fix from $1,950 2001-06-18
iOS HIGH 7.1
CVE-2000-0380EPSS 35%

The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a…

Mitigation only
Fix from $1,950 2000-04-26