Vulnerability index

Browse CVEs

300 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
MEDIUM 6.8 CVE-2013-3408 The firmware on Cisco Virtualization Experience Client 6000 devices sets incorrect operating-system permissions, which allows local users to gain pri… Virtualization Experience Client 6000 Series Firmware Mitigation only Fix from $1,6002013-07-10 HIGH 8.3 CVE-2013-3379 The firewall subsystem in Cisco TelePresence TC Software before 4.2 does not properly implement rules that grant access to hosts, which allows remote… Telepresence Tc Software after 4.1.2 Fix from $1,9502013-06-21 HIGH 7.8 CVE-2013-1225 Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to read arbitrary files via a Resource Manager (1) HTTP… Unified Customer Voice Portal after 9.0 Fix from $1,9502013-05-09 MEDIUM 6.8 CVE-2013-1215 The vpnclient program in the Easy VPN component on Cisco Adaptive Security Appliances (ASA) 5505 devices allows local users to gain privileges via un… Adaptive Security Appliance Software Mitigation only Fix from $1,6002013-04-25 HIGH 9.3 CVE-2013-1182 The login page in the Web Console in the Manager component in Cisco Unified Computing System (UCS) before 1.0(2h), 1.1 before 1.1(1j), and 1.3(x) all… Unified Computing System Infrastructure And Unified Computing System Software after 1.0 Fix from $1,9502013-04-25 MEDIUM 5.0 CVE-2013-1195 The time-based ACL implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properl… Firewall Services Module Mitigation only Fix from $1,6002013-04-24 MEDIUM 5.0 CVE-2013-1214 The scripts editor in Cisco Unified Contact Center Express (aka Unified CCX) does not properly manage privileges for anonymous logins, which allows r… Unified Contact Center Express Editor Software Mitigation only Fix from $1,6002013-04-24 HIGH 9.3 CVE-2013-1169 Cisco Unified MeetingPlace Web Conferencing Server 7.x before 7.1MR1 Patch 2, 8.0 before 8.0MR1 Patch 2, and 8.5 before 8.5MR3 Patch 1, when the Reme… Unified Meetingplace Web Conferencing Server Mitigation only Fix from $1,9502013-04-11 HIGH 9.0 CVE-2013-1111 The Cisco ATA 187 Analog Telephone Adaptor with firmware 9.2.1.0 and 9.2.3.1 before ES build 4 does not properly implement access control, which allo… Ata 187 Analog Telephone Adaptor Firmware Mitigation only Fix from $1,9502013-02-13 HIGH 9.0 CVE-2013-1105 Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.3, 7.1 and 7.2 before 7.2.111.3, and 7.3 before 7.3.101.0 allow remote a… Wireless Lan Controller Software Mitigation only Fix from $1,9502013-01-24 MEDIUM 6.3 CVE-2012-5717 Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authentica… Adaptive Security Appliance Software Mitigation only Fix from $1,6002013-01-18 MEDIUM 5.0 CVE-2012-5444 Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote attackers to create co… Telepresence Video Communication Servers Software Mitigation only Fix from $1,6002013-01-17 HIGH 10.0 CVE-2012-5417 Cisco Prime Data Center Network Manager (DCNM) before 6.1(1) does not properly restrict access to certain JBoss MainDeployer functionality, which all… Prime Data Center Network Manager Mitigation only Fix from $1,9502012-11-02 MEDIUM 5.0 CVE-2012-0361 The sccp-protocol component in Cisco IP Communicator (CIPC) 7.0 through 8.6 does not limit the rate of SCCP messages to Cisco Unified Communications … Ip Communicator Mitigation only Fix from $1,6002012-05-02 HIGH 9.3 CVE-2012-0371 Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.4, when CPU-based ACLs are enabled, allow remote atta… Wireless Lan Controller Software Mitigation only Fix from $1,9502012-03-01 HIGH 9.0 CVE-2012-0366 Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Adminis… Unity Connection after 7.1 Fix from $1,9502012-03-01 HIGH 7.8 CVE-2012-0364 Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allow remote attackers to r… Small Business Srp520 Series Firmware after 1.01.24 Fix from $1,9502012-02-25 HIGH 10.0 CVE-2011-4659 Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video Phone E20 has a default password for the root account after an upgrade to TE 4.1.0,… Telepresence E20 Software Mitigation only Fix from $1,9502012-01-19 MEDIUM 6.8 CVE-2011-2569 Cisco Nexus OS (aka NX-OS) 4.2 and 5.0 and Cisco Unified Computing System with software 1.4 and 2.0 do not properly restrict command-line options, wh… Nx Os Mitigation only Fix from $1,6002011-10-27 HIGH 7.5 CVE-2011-2584 Cisco Show and Share 5(2), 5.2(1), and 5.2(2) before 5.2(2.1) allows remote attackers to access the (1) Encoders and Pull Configurations, (2) Push Co… Show And Share after 5.2 Fix from $1,9502011-10-20 MEDIUM 5.0 CVE-2011-2581 The ACL implementation in Cisco NX-OS 5.0(2) and 5.0(3) before 5.0(3)N2(1) on Nexus 5000 series switches, and NX-OS before 5.0(3)U1(2a) on Nexus 3000… Nx Os after 5.0 Fix from $1,6002011-09-14 HIGH 9.0 CVE-2011-2547 The web-based management interface on Cisco SA 500 series security appliances with software before 2.1.19 allows remote authenticated users to execut… Sa500 Software after 2.1.18 Fix from $1,9502011-07-28 HIGH 7.2 CVE-2011-2041 The Start Before Logon (SBL) functionality in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) before 2.3.254 on Windows, and… Anyconnect Secure Mobility Client after 2.3.2016 Fix from $1,9502011-06-02 MEDIUM 6.6 CVE-2011-1602 The su utility on Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.0.3 allows local users to gain privileges via unspecif… Unified Ip Phone 7906 Mitigation only Fix from $1,6002011-06-02 MEDIUM 6.6 CVE-2011-1603 Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bu… Unified Ip Phone 7906 Mitigation only Fix from $1,6002011-06-02 MEDIUM 5.0 CVE-2011-0963 The default configuration of the RADIUS authentication feature on the Cisco Network Admission Control (NAC) Guest Server with software before 2.0.3 a… Nac Guest Server after 2.0.2 Fix from $1,6002011-03-31 HIGH 7.8 CVE-2011-0396 Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 before 8.0(5.23), 8.1 before 8.1(2.49), 8.2 before 8.2(4.1), and 8.3 b… Adaptive Security Appliance Mitigation only Fix from $1,9502011-02-25 HIGH 8.0 CVE-2011-0387 The administrative web interface on Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x allows remote au… Telepresence Multipoint Switch Software Mitigation only Fix from $1,9502011-02-25 MEDIUM 6.4 CVE-2011-0348 Cisco IOS 12.4(11)MD, 12.4(15)MD, 12.4(22)MD, 12.4(24)MD before 12.4(24)MD3, 12.4(22)MDA before 12.4(22)MDA5, and 12.4(24)MDA before 12.4(24)MDA3 on … iOS Mitigation only Fix from $1,6002011-01-28 HIGH 7.8 CVE-2010-4689 Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) do not properly preserve ACL behavior after a migration, whi… Adaptive Security Appliance Software after 8.3 Fix from $1,9502011-01-07