Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper AuthenticationCWE-287 × clear
CRITICAL 9.8 CVE-2018-0318 A vulnerability in the password reset function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to gai… Prime Collaboration after 12.1 Fix from $2,3002018-06-07 CRITICAL 9.8 CVE-2018-0319 A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to … Prime Collaboration after 12.1 Fix from $2,3002018-06-07 CRITICAL 9.8 CVE-2018-0321 A vulnerability in Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to access the Java Remote Method Invo… Prime Collaboration after 11.6 Fix from $2,3002018-06-07 CRITICAL 9.8 CVE-2018-0271 A vulnerability in the API gateway of the Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass a… Digital Network Architecture Center 1.1.2+ Fix from $2,3002018-05-17 CRITICAL 9.9 CVE-2018-0238EPSS 5% A vulnerability in the role-based resource checking functionality of the Cisco Unified Computing System (UCS) Director could allow an authenticated, … Unified Computing System Director Mitigation only Fix from $2,3002018-04-19 HIGH 8.8 CVE-2018-0195 A vulnerability in the Cisco IOS XE Software REST API could allow an authenticated, remote attacker to bypass API authorization checks and use the AP… Ios Xe 16.2.2+ Fix from $1,9502018-03-28 MEDIUM 6.5 CVE-2018-0163 A vulnerability in the 802.1x multiple-authentication (multi-auth) feature of Cisco IOS Software could allow an unauthenticated, adjacent attacker to… iOS Mitigation only Fix from $1,6002018-03-28 MEDIUM 5.6 CVE-2018-0087 A vulnerability in the FTP server of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to log in to the FTP serv… Asyncos Mitigation only Fix from $1,6002018-03-08 CRITICAL 9.8 CVE-2018-0121 A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unau… Elastic Services Controller Mitigation only Fix from $2,3002018-02-22 HIGH 7.2 CVE-2018-0116 A vulnerability in the RADIUS authentication module of Cisco Policy Suite could allow an unauthenticated, remote attacker to be authorized as a subsc… Mobility Services Engine Mitigation only Fix from $1,9502018-02-08 CRITICAL 9.8 CVE-2017-12337EPSS 6% A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an u… Emergency Responder Mitigation only Fix from $2,3002017-11-16 HIGH 7.5 CVE-2017-12316 A vulnerability in the Guest Portal login page of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform mul… Identity Services Engine Software Mitigation only Fix from $1,9502017-11-16 HIGH 7.5 CVE-2017-12281 A vulnerability in the implementation of Protected Extensible Authentication Protocol (PEAP) functionality for standalone configurations of Cisco Air… Aironet 1800 Firmware Mitigation only Fix from $1,9502017-11-02 CRITICAL 9.9 CVE-2017-12251 A vulnerability in the web console of the Cisco Cloud Services Platform (CSP) 2100 could allow an authenticated, remote attacker to interact maliciou… Cloud Services Platform 2100 Mitigation only Fix from $2,3002017-10-19 CRITICAL 9.8 CVE-2017-12229EPSS 5% A vulnerability in the REST API of the web-based user interface (web UI) of Cisco IOS XE 3.1 through 16.5 could allow an unauthenticated, remote atta… Ios Xe Mitigation only Fix from $2,3002017-09-29 CRITICAL 9.8 CVE-2017-12236 A vulnerability in the implementation of the Locator/ID Separation Protocol (LISP) in Cisco IOS XE 3.2 through 16.5 could allow an unauthenticated, r… Ios Xe Mitigation only Fix from $2,3002017-09-29 MEDIUM 6.5 CVE-2017-12225 A vulnerability in the web functionality of the Cisco Prime LAN Management Solution could allow an authenticated, remote attacker to hijack another u… Prime Lan Management Solution Mitigation only Fix from $1,6002017-09-07 MEDIUM 5.3 CVE-2017-6781 A vulnerability in the management of shell user accounts for Cisco Policy Suite (CPS) Software for CPS appliances could allow an authenticated, local… Policy Suite Mitigation only Fix from $1,6002017-08-17 CRITICAL 9.8 CVE-2017-6747EPSS 5% A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local … Identity Services Engine Mitigation only Fix from $2,3002017-08-07 CRITICAL 9.1 CVE-2017-6711 A vulnerability in the Ultra Automation Service (UAS) of the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to gain u… Ultra Services Framework after 5.0.2 Fix from $2,3002017-07-06 MEDIUM 6.1 CVE-2017-6722 A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of Cisco Unified Contact Center Express (UCCx) could allow an unauth… Unified Contact Center Express Mitigation only Fix from $1,6002017-07-04 MEDIUM 5.9 CVE-2017-6703 A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack a… Prime Collaboration Provisioning Mitigation only Fix from $1,6002017-07-04 MEDIUM 5.3 CVE-2017-6624 A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthoriz… iOS Mitigation only Fix from $1,6002017-05-03 MEDIUM 5.4 CVE-2017-6617 A vulnerability in the session identification management functionality of the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) c… Integrated Management Controller Supervisor Mitigation only Fix from $1,6002017-04-20 MEDIUM 6.5 CVE-2017-3880 An Authentication Bypass vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to access limited meeting infor… Webex Meetings Server Mitigation only Fix from $1,6002017-03-17 MEDIUM 5.3 CVE-2017-3867 A vulnerability in the Border Gateway Protocol (BGP) Bidirectional Forwarding Detection (BFD) implementation of Cisco Adaptive Security Appliance (AS… Adaptive Security Appliance Software Mitigation only Fix from $1,6002017-03-17 CRITICAL 9.8 CVE-2017-3831EPSS 5% A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to bypass au… Aironet Access Point Software Mitigation only Fix from $2,3002017-03-15 HIGH 8.8 CVE-2017-3854 A vulnerability in the mesh code of Cisco Wireless LAN Controller (WLC) software could allow an unauthenticated, remote attacker to impersonate a WLC… Wireless Lan Controller Firmware Mitigation only Fix from $1,9502017-03-15 CRITICAL 10.0 CVE-2017-3791 A vulnerability in the web-based GUI of Cisco Prime Home could allow an unauthenticated, remote attacker to bypass authentication and execute actions… Cisco Prime Home Mitigation only Fix from $2,3002017-02-01 MEDIUM 5.4 CVE-2017-3795 A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to conduct arbitrary password changes against any non-ad… Webex Meetings Server Mitigation only Fix from $1,6002017-01-26