Vulnerability index

Browse CVEs

300 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Secure Firewall Threat Defense HIGH 8.2
CVE-2018-0453

A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software running on Cisco Firepower Threat Defense (FTD) …

Mitigation only
Fix from $1,950 2018-10-05
Umbrella Enterprise Roaming Client HIGH 7.8
CVE-2018-0437

A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administr…

Fix: 2.1.118 / 4.6.1098+
Fix from $1,950 2018-10-05
Data Center Network Manager HIGH 7.2
CVE-2018-0440

A vulnerability in the web interface of Cisco Data Center Network Manager could allow an authenticated application administrator to execute commands …

Fix: 11.0+
Fix from $1,950 2018-10-05
Vedge 100 Firmware HIGH 8.8
CVE-2018-0432

A vulnerability in the error reporting feature of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to gain elevated privileges…

Fix: 18.3.0+
Fix from $1,950 2018-10-05
Finesse CRITICAL 9.8
CVE-2018-0398

Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a server-s…

Mitigation only
Fix from $2,300 2018-07-18
Finesse CRITICAL 9.8
CVE-2018-0399

Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to retrieve a clearte…

Mitigation only
Fix from $2,300 2018-07-18
Nx Os HIGH 8.8
CVE-2018-0293

A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attacker to execute CLI commands th…

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nx Os HIGH 8.8
CVE-2018-0330

A vulnerability in the NX-API management application programming interface (API) in devices running, or based on, Cisco NX-OS Software could allow an…

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nx Os MEDIUM 6.7
CVE-2018-0294

A vulnerability in the write-erase feature of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to configure …

Fix: 2.0.1.159 / 2.1.1.86+
Fix from $1,600 2018-06-20
Prime Collaboration HIGH 8.8
CVE-2018-0336

A vulnerability in the batch provisioning feature of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker to escalate…

Mitigation only
Fix from $1,950 2018-06-07
Wide Area Application Services MEDIUM 6.7
CVE-2018-0352

A vulnerability in the Disk Check Tool (disk-check.sh) for Cisco Wide Area Application Services (WAAS) Software could allow an authenticated, local a…

Mitigation only
Fix from $1,600 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0317

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalate their …

Fix: after 12.2
Fix from $1,950 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0322

A vulnerability in the web management interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to modi…

Fix: after 12.1
Fix from $1,950 2018-06-07
Ios Xe HIGH 7.8
CVE-2018-0176

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Lin…

Mitigation only
Fix from $1,950 2018-03-28
Ios Xe MEDIUM 6.7
CVE-2018-0183

A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell …

Fix: 3.13.0as / 3.13.2as+
Fix from $1,600 2018-03-28
Ios Xe MEDIUM 6.7
CVE-2018-0184

A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell …

Fix: 3.8.6e / 3.13.9s+
Fix from $1,600 2018-03-28
Ios Xe HIGH 8.8
CVE-2018-0152

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to gain elevated priv…

Mitigation only
Fix from $1,950 2018-03-28
iOS HIGH 7.8
CVE-2018-0169

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Lin…

Mitigation only
Fix from $1,950 2018-03-28
Identity Services Engine HIGH 8.8
CVE-2018-0213

A vulnerability in the credential reset functionality for Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to gain …

Mitigation only
Fix from $1,950 2018-03-08
Virtual Managed Services CRITICAL 9.8
CVE-2018-0130

A vulnerability in the use of JSON web tokens by the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenti…

Mitigation only
Fix from $2,300 2018-02-22
Asyncos HIGH 7.8
CVE-2018-0095

A vulnerability in the administrative shell of Cisco AsyncOS on Cisco Email Security Appliance (ESA) and Content Security Management Appliance (SMA) …

Mitigation only
Fix from $1,950 2018-01-18
Policy Suite HIGH 7.5
CVE-2018-0089

A vulnerability in the Policy and Charging Rules Function (PCRF) of the Cisco Policy Suite (CPS) could allow an unauthenticated, remote attacker to a…

Mitigation only
Fix from $1,950 2018-01-18
Nx Os HIGH 7.1
CVE-2018-0092

A vulnerability in the network-operator user role implementation for Cisco NX-OS System Software could allow an authenticated, local attacker to impr…

Mitigation only
Fix from $1,950 2018-01-18
Prime Infrastructure MEDIUM 5.9
CVE-2018-0096

A vulnerability in the role-based access control (RBAC) functionality of Cisco Prime Infrastructure could allow an authenticated, remote attacker to …

Mitigation only
Fix from $1,600 2018-01-18
Webex Meetings Server MEDIUM 5.3
CVE-2017-12363

A vulnerability in Cisco WebEx Meeting Server could allow an unauthenticated, remote attacker to modify the welcome message of a meeting on an affect…

Mitigation only
Fix from $1,600 2017-11-30
Nx Os MEDIUM 6.8
CVE-2017-12342

A vulnerability in the Open Agent Container (OAC) feature of Cisco Nexus Series Switches could allow an unauthenticated, local attacker to read and s…

Mitigation only
Fix from $1,600 2017-11-30
Nx Os MEDIUM 5.7
CVE-2017-12351

A vulnerability in the guest shell feature of Cisco NX-OS System Software could allow an authenticated, local attacker to read and send packets outsi…

Mitigation only
Fix from $1,600 2017-11-30
Identity Services Engine HIGH 7.8
CVE-2017-12261

A vulnerability in the restricted shell of the Cisco Identity Services Engine (ISE) that is accessible via SSH could allow an authenticated, local at…

Mitigation only
Fix from $1,950 2017-11-02
Cloud Services Platform 2100 CRITICAL 9.9
CVE-2017-12251

A vulnerability in the web console of the Cisco Cloud Services Platform (CSP) 2100 could allow an authenticated, remote attacker to interact maliciou…

Mitigation only
Fix from $2,300 2017-10-19
Anyconnect Secure Mobility Client MEDIUM 6.5
CVE-2017-12268

A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable…

Mitigation only
Fix from $1,600 2017-10-05