Vulnerability index

Browse CVEs

1,018 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.5 CVE-2016-1478 Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a deni… iOS Mitigation only Fix from $1,9502016-08-08 HIGH 8.8 CVE-2016-1430 Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as root via a crafted HTTP request, aka Bug ID CSCuz485… Rv180 Vpn Router Firmware Mitigation only Fix from $1,9502016-08-08 HIGH 7.5 CVE-2016-1461 Cisco AsyncOS on Email Security Appliance (ESA) devices through 9.7.0-125 allows remote attackers to bypass malware detection via a crafted attachmen… Asyncos after 9.7.0-125 Fix from $1,9502016-08-01 HIGH 7.5 CVE-2016-1463 Cisco FireSIGHT System Software 5.3.0, 5.3.1, 5.4.0, 6.0, and 6.0.1 allows remote attackers to bypass Snort rules via crafted parameters in the heade… Firesight System Software Mitigation only Fix from $1,9502016-07-28 HIGH 8.8 CVE-2016-1374 The web framework in Cisco Unified Computing System (UCS) Performance Manager 2.0.0 and earlier allows remote authenticated users to execute arbitrar… Unified Computing System Performance Manager Mitigation only Fix from $1,9502016-07-28 HIGH 7.5 CVE-2016-1450 Cisco WebEx Meetings Server 2.6 allows remote authenticated users to conduct command-injection attacks via vectors related to an upload's file type, … Webex Meetings Server Mitigation only Fix from $1,9502016-07-15 MEDIUM 6.5 CVE-2016-1444 The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.… Telepresence Video Communication Server Mitigation only Fix from $1,6002016-07-07 HIGH 8.8 CVE-2016-1442 The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via … Prime Infrastructure Mitigation only Fix from $1,9502016-07-07 HIGH 7.5 CVE-2016-1336EPSS 9% goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long LanguageSelect parameter… Epc3928 Firmware No fix yet Fix from $1,9502016-07-03 HIGH 7.5 CVE-2016-1328EPSS 9% goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long h_sortWireless paramete… Epc3928 Firmware No fix yet Fix from $1,9502016-07-03 HIGH 8.2 CVE-2016-1441 Cisco Cloud Network Automation Provisioner (CNAP) 1.0(0) in Cisco Configuration Assistant (CCA) allows remote attackers to bypass intended filesystem… Cloud Network Automation Provisioner Mitigation only Fix from $1,9502016-07-03 HIGH 8.8 CVE-2016-1408 Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute ar… Prime Infrastructure Mitigation only Fix from $1,9502016-07-02 HIGH 7.5 CVE-2016-1438 Cisco AsyncOS 9.7.0-125 on Email Security Appliance (ESA) devices allows remote attackers to bypass intended spam filtering via crafted executable co… Asyncos Mitigation only Fix from $1,9502016-06-23 MEDIUM 6.5 CVE-2016-1434 The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows remote authenticated users to delete arbitrary files v… Ip Phone 8800 Series Firmware Mitigation only Fix from $1,6002016-06-23 CRITICAL 9.8 CVE-2016-1395 The web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W dev… Rv130w Wireless N Multifunction Vpn Router Firmware Mitigation only Fix from $2,3002016-06-19 HIGH 8.1 CVE-2016-1419 Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka… Aironet Access Point Software Mitigation only Fix from $1,9502016-06-10 HIGH 7.8 CVE-2016-1418 Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root ac… Aironet Access Point Software Mitigation only Fix from $1,9502016-06-08 HIGH 7.8 CVE-2016-1403 CISCO IP 8800 phones with software 11.0.1 and earlier allow local users to gain privileges for OS command execution via crafted CLI commands, aka Bug… Ip Phone 8800 Series Firmware Mitigation only Fix from $1,9502016-06-04 HIGH 8.8 CVE-2016-1391 Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(2) and Prime Virtual Network Analysis Module (vNAM) be… Prime Network Analysis Module Software Mitigation only Fix from $1,9502016-06-04 HIGH 7.8 CVE-2016-1390 Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) and Prime Virtual Network Analysis Module (vNAM) be… Prime Network Analysis Module Software Mitigation only Fix from $1,9502016-06-04 MEDIUM 5.3 CVE-2016-1370 Cisco Prime Network Analysis Module (NAM) before 6.2(1-b) miscalculates IPv6 payload lengths, which allows remote attackers to cause a denial of serv… Network Analysis Module Software Mitigation only Fix from $1,6002016-06-03 HIGH 7.5 CVE-2016-1409 The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 through 5.3.2, and NX-OS allows… iOS Mitigation only Fix from $1,9502016-05-29 HIGH 7.5 CVE-2016-1407 Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote attackers to cause a denial of se… Ios Xr Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1400 Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via… Telepresence Video Communication Server Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1382 Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allo… Web Security Appliance \(wsa\) Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1380 Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) … Web Security Appliance Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1364 Cisco Wireless LAN Controller (WLC) Software 7.4 before 7.4.130.0(MD) and 7.5, 7.6, and 8.0 before 8.0.110.0(ED) allows remote attackers to cause a d… Wireless Lan Controller Software Mitigation only Fix from $1,9502016-04-21 MEDIUM 5.3 CVE-2016-1376 Cisco IOS XR 4.2.3, 4.3.0, 4.3.4, and 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (CRC and symbol errors, and inte… Ios Xr Mitigation only Fix from $1,6002016-04-12 CRITICAL 9.8 CVE-2016-1291EPSS 7% Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allow remote attackers to execute arbitrary… Evolved Programmable Network Manager Mitigation only Fix from $2,3002016-04-06 HIGH 7.5 CVE-2016-1345 Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware pr… Asa With Firepower Services Mitigation only Fix from $1,9502016-04-01