Vulnerability index

Browse CVEs

300 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Ios Xe MEDIUM 6.8
CVE-2017-12239

A vulnerability in motherboard console ports of line cards for Cisco ASR 1000 Series Aggregation Services Routers and Cisco cBR-8 Converged Broadband…

Mitigation only
Fix from $1,600 2017-09-29
Ios Xe HIGH 8.8
CVE-2017-12226

A vulnerability in the web-based Wireless Controller GUI of Cisco IOS XE Software for Cisco 5760 Wireless LAN Controllers, Cisco Catalyst 4500E Super…

Mitigation only
Fix from $1,950 2017-09-29
Ios Xe HIGH 8.8
CVE-2017-12230

A vulnerability in the web-based user interface (web UI) of Cisco IOS XE 16.2 could allow an authenticated, remote attacker to elevate their privileg…

Mitigation only
Fix from $1,950 2017-09-29
Unified Customer Voice Portal HIGH 8.8
CVE-2017-12214

A vulnerability in the Operations, Administration, Maintenance, and Provisioning (OAMP) credential reset functionality for Cisco Unified Customer Voi…

Mitigation only
Fix from $1,950 2017-09-21
Elastic Services Controller CRITICAL 9.8
CVE-2017-6713

A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to gain full access …

Mitigation only
Fix from $2,300 2017-07-06
Prime Data Center Network Manager CRITICAL 9.8
CVE-2017-6640EPSS 11%

A vulnerability in Cisco Prime Data Center Network Manager (DCNM) Software could allow an unauthenticated, remote attacker to log in to the administr…

Mitigation only
Fix from $2,300 2017-06-08
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2017-6638

A vulnerability in how DLL files are loaded with Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to …

Fix: after 4.4.00243
Fix from $1,950 2017-06-08
Prime Collaboration Provisioning MEDIUM 6.5
CVE-2017-6635EPSS 10%

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 12.1) could allow an authenticated, remote …

Mitigation only
Fix from $1,600 2017-05-22
Prime Collaboration Provisioning MEDIUM 6.5
CVE-2017-6637EPSS 8%

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 11.1) could allow an authenticated, remote …

Mitigation only
Fix from $1,600 2017-05-22
Prime Collaboration Provisioning CRITICAL 9.8
CVE-2017-6622EPSS 62%

A vulnerability in the web interface for Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to bypass authenticat…

No fix yet
Fix from $2,300 2017-05-18
Policy Suite HIGH 7.8
CVE-2017-6623

A vulnerability in a script file that is installed as part of the Cisco Policy Suite (CPS) Software distribution for the CPS appliance could allow an…

Mitigation only
Fix from $1,950 2017-05-18
Small Business Rv Series Router Firmware MEDIUM 5.8
CVE-2017-6620

A vulnerability in the remote management access control list (ACL) feature of the Cisco CVR100W Wireless-N VPN Router could allow an unauthenticated,…

Mitigation only
Fix from $1,600 2017-05-03
iOS MEDIUM 5.3
CVE-2017-6624

A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthoriz…

Mitigation only
Fix from $1,600 2017-05-03
Aironet Access Point MEDIUM 6.7
CVE-2016-9196

A vulnerability in login authentication management in Cisco Aironet 1800, 2800, and 3800 Series Access Point platforms could allow an authenticated, …

Mitigation only
Fix from $1,600 2017-04-07
Mobility Services Engine MEDIUM 6.7
CVE-2016-9197

A vulnerability in the CLI command parser of the Cisco Mobility Express 2800 and 3800 Series Wireless LAN Controllers could allow an authenticated, l…

Mitigation only
Fix from $1,600 2017-04-07
Wireless Lan Controller Firmware HIGH 7.5
CVE-2017-3832

A vulnerability in the web management interface of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to ca…

Mitigation only
Fix from $1,950 2017-04-06
Aironet Access Point Software CRITICAL 9.8
CVE-2017-3831EPSS 5%

A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to bypass au…

Mitigation only
Fix from $2,300 2017-03-15
Asr 5000 Series Software HIGH 8.8
CVE-2017-3819

A privilege escalation vulnerability in the Secure Shell (SSH) subsystem in the StarOS operating system for Cisco ASR 5000 Series, ASR 5500 Series, A…

Mitigation only
Fix from $1,950 2017-03-15
Unified Computing System Director HIGH 8.8
CVE-2017-3801

A vulnerability in the web-based GUI of Cisco UCS Director 6.0.0.0 and 6.0.0.1 could allow an authenticated, local attacker to execute arbitrary work…

Mitigation only
Fix from $1,950 2017-02-15
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2017-3813

A vulnerability in the Start Before Logon (SBL) module of Cisco AnyConnect Secure Mobility Client Software for Windows could allow an unauthenticated…

No fix yet
Fix from $1,950 2017-02-09
Cloudcenter Orchestrator CRITICAL 9.8
CVE-2016-9223

A vulnerability in the Docker Engine configuration of Cisco CloudCenter Orchestrator (CCO; formerly CliQr) could allow an unauthenticated, remote att…

Mitigation only
Fix from $2,300 2016-12-26
Ios Xr HIGH 7.8
CVE-2016-9215

A vulnerability in Cisco IOS XR Software could allow an authenticated, local attacker to log in to the device with the privileges of the root user. M…

Mitigation only
Fix from $1,950 2016-12-14
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2016-9192

A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to install and execute an arbitra…

Mitigation only
Fix from $1,950 2016-12-14
Hybrid Media Service HIGH 7.8
CVE-2016-6470

A vulnerability in the installation procedure of the Cisco Hybrid Media Service could allow an authenticated, local attacker to elevate privileges to…

Mitigation only
Fix from $1,950 2016-12-14
Fireamp Connector Endpoint Software HIGH 7.8
CVE-2016-6449

A vulnerability in the system management of certain FireAMP system processes in Cisco FireAMP Connector Endpoint software could allow an authenticate…

Mitigation only
Fix from $1,950 2016-12-14
Ip Interoperability And Collaboration System HIGH 7.8
CVE-2016-6430

A vulnerability in the command-line interface of the Cisco IP Interoperability and Collaboration System (IPICS) could allow an authenticated, local a…

Mitigation only
Fix from $1,950 2016-11-03
Ios Xe MEDIUM 5.9
CVE-2016-6438

A vulnerability in Cisco IOS XE Software running on Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to cause …

Mitigation only
Fix from $1,600 2016-10-27
Ios Xr HIGH 7.8
CVE-2016-6428

Cisco IOS XR 6.1.1 allows local users to execute arbitrary OS commands as root by leveraging admin privileges, aka Bug ID CSCva38349.

Mitigation only
Fix from $1,950 2016-10-06
Nx Os HIGH 8.0
CVE-2015-0721

Cisco NX-OS 4.0 through 7.3 on Multilayer Director and Nexus 1000V, 2000, 3000, 3500, 4000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allo…

Mitigation only
Fix from $1,950 2016-10-06
Firesight System Software MEDIUM 6.5
CVE-2016-6420

Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to bypass authorization checks …

Mitigation only
Fix from $1,600 2016-10-05