Vulnerability index

Browse CVEs

300 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Adaptive Security Appliance Software HIGH 9.0
CVE-2010-4675

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) do not properly determine the interfaces for which TELNET co…

Fix: after 8.2
Fix from $1,950 2011-01-07
Adaptive Security Appliance Software HIGH 9.0
CVE-2010-4680

The WebVPN implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) permits the viewing of CIFS sha…

Fix: after 8.2
Fix from $1,950 2011-01-07
Adaptive Security Appliance Software HIGH 7.5
CVE-2010-4678

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) permit packets to pass before the configuration has been loa…

Fix: after 8.2
Fix from $1,950 2011-01-07
Wireless Lan Controller Software HIGH 9.0
CVE-2010-2843

Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and …

Patch available
Fix from $1,950 2010-09-10
Wireless Lan Controller Software HIGH 9.0
CVE-2010-3033

Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and …

Patch available
Fix from $1,950 2010-09-10
Wireless Lan Controller Software MEDIUM 5.0
CVE-2010-3034

Cisco Wireless LAN Controller (WLC) software, possibly 6.0.x or possibly 4.1 through 6.0.x, allows remote attackers to bypass ACLs in the controller …

Patch available
Fix from $1,600 2010-09-10
Wireless Lan Controller Software HIGH 9.0
CVE-2010-2842

Cisco Wireless LAN Controller (WLC) software, possibly 4.2 through 6.0, allows remote authenticated users to bypass intended access restrictions and …

Patch available
Fix from $1,950 2010-09-10
Wireless Lan Controller Software MEDIUM 5.0
CVE-2010-0575

Cisco Wireless LAN Controller (WLC) software, possibly 6.0.x or possibly 4.1 through 6.0.x, allows remote attackers to bypass ACLs in the controller …

Patch available
Fix from $1,600 2010-09-10
iOS HIGH 10.0
CVE-2010-1574

IOS 12.2(52)SE and 12.2(52)SE1 on Cisco Industrial Ethernet (IE) 3000 series switches has (1) a community name of public for RO access and (2) a comm…

Mitigation only
Fix from $1,950 2010-07-08
Content Services Switch 11500 HIGH 7.5
CVE-2010-1575

The Cisco Content Services Switch (CSS) 11500 with software 08.20.1.01 conveys authentication data through ClientCert-* headers but does not delete c…

No fix yet
Fix from $1,950 2010-07-06
Asa 5580 HIGH 10.0
CVE-2009-4912

Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) complete an SSL handshake with an HTTPS client even if this …

Fix: after 8.1
Fix from $1,950 2010-06-29
Asa 5580 MEDIUM 5.0
CVE-2009-4913

The IPv6 implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) exposes IP services on the "far s…

Fix: after 8.1
Fix from $1,600 2010-06-29
Mediator Framework HIGH 10.0
CVE-2010-0600

Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediat…

Patch available
Fix from $1,950 2010-05-27
Pvc2300 HIGH 9.0
CVE-2010-0593

The Cisco RVS4000 4-port Gigabit Security Router before 1.3.2.0, PVC2300 Business Internet Video Camera before 1.1.2.6, WVC200 Wireless-G PTZ Interne…

Fix: after 1.3.1.0
Fix from $1,950 2010-04-22
Digital Media Manager HIGH 8.5
CVE-2010-0571

Unspecified vulnerability in Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x allows remote authenticated users to gain privileges via unknown vecto…

Patch available
Fix from $1,950 2010-03-05
Unified Meetingplace HIGH 8.5
CVE-2010-0142

MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote authenticated users to gain privileges via a modified authentic…

Patch available
Fix from $1,950 2010-01-28
Adaptive Security Appliance 5500 MEDIUM 6.5
CVE-2009-4455

The default configuration of Cisco ASA 5500 Series Adaptive Security Appliance (Cisco ASA) 7.0, 7.1, 7.2, 8.0, 8.1, and 8.2 allows portal traffic to …

Mitigation only
Fix from $1,600 2009-12-29
Adaptive Security Appliance MEDIUM 6.8
CVE-2009-2631

Multiple clientless SSL VPN products that run in web browsers, including Stonesoft StoneGate; Cisco ASA; SonicWALL E-Class SSL VPN and SonicWALL SSL …

Mitigation only
Fix from $1,600 2009-12-04
iOS HIGH 7.1
CVE-2009-0637

The SCP server in Cisco IOS 12.2 through 12.4, when Role-Based CLI Access is enabled, does not enforce the CLI view configuration for file transfers,…

Mitigation only
Fix from $1,950 2009-03-27
Catalyst 3750 Series Integrated Wireless Lan Controller HIGH 9.0
CVE-2009-0062

Unspecified vulnerability in the Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 In…

Mitigation only
Fix from $1,950 2009-02-05
Unified Communications Manager MEDIUM 5.0
CVE-2008-2062

The Real-Time Information Server (RIS) Data Collector service in Cisco Unified Communications Manager (CUCM) before 4.2(3)SR4, and 4.3 before 4.3(2)S…

Fix: 4.2 / 4.3+
Fix from $1,600 2008-06-26
Pix Security Appliance HIGH 7.8
CVE-2008-2059

Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 8.0.x before 8.0(3)9 allows remote attackers to bypass control-plane ACLs fo…

Mitigation only
Fix from $1,950 2008-06-04
Pix Asa Finesse Operation System HIGH 7.8
CVE-2008-1246

The Cisco PIX/ASA Finesse Operation System 7.1 and 7.2 allows local users to gain privileges by entering characters at the enable prompt, erasing the…

Mitigation only
Fix from $1,950 2008-03-10
Firewall Services Module MEDIUM 6.8
CVE-2007-5571

Cisco Firewall Services Module (FWSM) 3.1(6), and 3.2(2) and earlier, does not properly enforce edited ACLs, which might allow remote attackers to by…

Fix: after 3.2
Fix from $1,600 2007-10-18
Call Manager MEDIUM 5.0
CVE-2007-5468

Cisco CallManager 5.1.1.3000-5 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote atta…

Mitigation only
Fix from $1,600 2007-10-16
Wireless Lan Solution Engine HIGH 10.0
CVE-2007-5382

The conversion utility for converting CiscoWorks Wireless LAN Solution Engine (WLSE) 4.1.91.0 and earlier to Cisco Wireless Control System (WCS) crea…

Fix: after 4.1.91.0
Fix from $1,950 2007-10-12
Catalyst 6500 MEDIUM 5.0
CVE-2007-5134

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might …

Patch available
Fix from $1,600 2007-09-27
Video Surveillance Ip Gateway Encoder Decoder HIGH 9.0
CVE-2007-4746

The Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Softwar…

Fix: after 1.23.7
Fix from $1,950 2007-09-06
Unified Ip Phone Firmware 7906g HIGH 7.2
CVE-2007-1072

The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows l…

Patch available
Fix from $1,950 2007-02-22
Security Monitoring Analysis And Response System HIGH 7.5
CVE-2006-3733EPSS 12%

jmx-console/HtmlAdaptor in the jmx-console in the JBoss web application server, as shipped with Cisco Security Monitoring, Analysis and Response Syst…

Patch available
Fix from $1,950 2006-07-21