Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unified Communications Domain Manager HIGH 8.8
CVE-2018-0364

A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker …

Mitigation only
Fix from $1,950 2018-06-21
Secure Firewall Management Center HIGH 8.8
CVE-2018-0365

A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct…

Mitigation only
Fix from $1,950 2018-06-21
Iot Field Network Director HIGH 8.8
CVE-2018-0270

A vulnerability in the web-based management interface of Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker t…

No fix yet
Fix from $1,950 2018-05-17
iOS HIGH 8.8
CVE-2018-0255

A vulnerability in the device manager web interface of Cisco Industrial Ethernet Switches could allow an unauthenticated, remote attacker to conduct …

Mitigation only
Fix from $1,950 2018-04-19
Mate Collector HIGH 8.8
CVE-2018-0259

A vulnerability in the web-based management interface of Cisco MATE Collector could allow an unauthenticated, remote attacker to conduct a cross-site…

Mitigation only
Fix from $1,950 2018-04-19
Data Center Network Manager HIGH 8.8
CVE-2018-0210

A vulnerability in the web-based management interface of Cisco Data Center Network Manager could allow an unauthenticated, remote attacker to conduct…

Mitigation only
Fix from $1,950 2018-03-08
Identity Services Engine MEDIUM 6.3
CVE-2018-0215

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Mitigation only
Fix from $1,600 2018-03-08
Identity Services Engine MEDIUM 5.4
CVE-2018-0216

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Mitigation only
Fix from $1,600 2018-03-08
Ucs Director HIGH 8.8
CVE-2018-0148

A vulnerability in the web-based management interface of Cisco UCS Director Software and Cisco Integrated Management Controller (IMC) Supervisor Soft…

Mitigation only
Fix from $1,950 2018-02-22
Data Center Analytics Framework MEDIUM 5.4
CVE-2018-0146

A vulnerability in the Cisco Data Center Analytics Framework application could allow an unauthenticated, remote attacker to conduct a cross-site requ…

Mitigation only
Fix from $1,600 2018-02-22
Prime Service Catalog HIGH 8.8
CVE-2018-0107

A vulnerability in the web framework of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker to execute unwanted actions on an…

Mitigation only
Fix from $1,950 2018-01-18
Spa300 Firmware HIGH 8.8
CVE-2017-12271

A vulnerability in Cisco SPA300 and SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute unwanted actions on an affecte…

Fix: after 7.5.5
Fix from $1,950 2017-10-19
Unified Intelligence Center HIGH 8.8
CVE-2017-12253

A vulnerability in the Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to execute unwanted actions. The vulnerabili…

Mitigation only
Fix from $1,950 2017-09-21
Prime Collaboration Provisioning HIGH 8.8
CVE-2017-6756

A vulnerability in the Web UI Application of the Cisco Prime Collaboration Provisioning Tool through 12.2 could allow an unauthenticated, remote atta…

Mitigation only
Fix from $1,950 2017-08-07
Dpc3939b Firmware HIGH 8.8
CVE-2017-9489

The Comcast firmware on Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST) devices allows configuration changes via CSRF.

No fix yet
Fix from $1,950 2017-07-31
Dpc3939b Firmware HIGH 8.8
CVE-2017-9490

The Comcast firmware on Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices allows configurati…

No fix yet
Fix from $1,950 2017-07-31
Prime Collaboration Assurance HIGH 8.8
CVE-2017-6659

A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to condu…

Mitigation only
Fix from $1,950 2017-06-13
Industrial Ethernet 1000 Series Firmware HIGH 8.8
CVE-2017-6634

A vulnerability in the Device Manager web interface of Cisco Industrial Ethernet 1000 Series Switches 1.3 could allow an unauthenticated, remote atta…

Mitigation only
Fix from $1,950 2017-05-22
Unified Communications Manager MEDIUM 6.5
CVE-2017-3877

A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticated, remote attacker to conduct…

Mitigation only
Fix from $1,600 2017-03-17
Hybrid Meeting Server HIGH 8.8
CVE-2016-9218

A vulnerability in Cisco Hybrid Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack …

Mitigation only
Fix from $1,950 2017-01-26
Webex Meetings Server HIGH 8.8
CVE-2017-3794

A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack …

Mitigation only
Fix from $1,950 2017-01-26
Emergency Responder HIGH 8.8
CVE-2016-6468

A vulnerability in the web-based management interface of Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a cross…

Mitigation only
Fix from $1,950 2016-12-14
Hosted Collaboration Mediation Fulfillment MEDIUM 6.5
CVE-2016-6454

A cross-site request forgery (CSRF) vulnerability in the web interface of the Cisco Hosted Collaboration Mediation Fulfillment application could allo…

Mitigation only
Fix from $1,600 2016-11-03
Meeting Server HIGH 8.8
CVE-2016-6444

A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against…

Mitigation only
Fix from $1,950 2016-10-27
Finesse HIGH 8.8
CVE-2016-6442

A vulnerability in Cisco Finesse Agent and Supervisor Desktop Software could allow an unauthenticated, remote attacker to conduct a cross-site reques…

Mitigation only
Fix from $1,950 2016-10-27
Unified Contact Center Express HIGH 8.8
CVE-2016-6427

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Unified Contact Center E…

Mitigation only
Fix from $1,950 2016-10-06
Firesight System Software HIGH 8.8
CVE-2016-6417

Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Management Center allows remote…

Mitigation only
Fix from $1,950 2016-10-05
Small Business 220 Series Smart Plus Switches HIGH 8.8
CVE-2016-1470

Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.…

No fix yet
Fix from $1,950 2016-09-02
Webex Meetings Server HIGH 8.8
CVE-2016-1448

Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.7 allows remote attackers to hijack the authentication of arbitrary …

Mitigation only
Fix from $1,950 2016-07-17
Dpq3925 8x4 Docsis 3.0 Wireless Residential Gateway With Embedded Digital Voice Adapter MEDIUM 6.8
CVE-2015-6378

Cross-site request forgery (CSRF) vulnerability on Cisco DPQ3925 devices with EDVA 5.5.2 allows remote attackers to hijack the authentication of arbi…

Mitigation only
Fix from $1,600 2015-12-14