Vulnerability index

Browse CVEs

162 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2018-0364 A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker … Unified Communications Domain Manager Mitigation only Fix from $1,9502018-06-21 HIGH 8.8 CVE-2018-0365 A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct… Secure Firewall Management Center Mitigation only Fix from $1,9502018-06-21 HIGH 8.8 CVE-2018-0270 A vulnerability in the web-based management interface of Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker t… Iot Field Network Director No fix yet Fix from $1,9502018-05-17 HIGH 8.8 CVE-2018-0255 A vulnerability in the device manager web interface of Cisco Industrial Ethernet Switches could allow an unauthenticated, remote attacker to conduct … iOS Mitigation only Fix from $1,9502018-04-19 HIGH 8.8 CVE-2018-0259 A vulnerability in the web-based management interface of Cisco MATE Collector could allow an unauthenticated, remote attacker to conduct a cross-site… Mate Collector Mitigation only Fix from $1,9502018-04-19 HIGH 8.8 CVE-2018-0210 A vulnerability in the web-based management interface of Cisco Data Center Network Manager could allow an unauthenticated, remote attacker to conduct… Data Center Network Manager Mitigation only Fix from $1,9502018-03-08 MEDIUM 6.3 CVE-2018-0215 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond… Identity Services Engine Mitigation only Fix from $1,6002018-03-08 MEDIUM 5.4 CVE-2018-0216 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond… Identity Services Engine Mitigation only Fix from $1,6002018-03-08 HIGH 8.8 CVE-2018-0148 A vulnerability in the web-based management interface of Cisco UCS Director Software and Cisco Integrated Management Controller (IMC) Supervisor Soft… Ucs Director Mitigation only Fix from $1,9502018-02-22 MEDIUM 5.4 CVE-2018-0146 A vulnerability in the Cisco Data Center Analytics Framework application could allow an unauthenticated, remote attacker to conduct a cross-site requ… Data Center Analytics Framework Mitigation only Fix from $1,6002018-02-22 HIGH 8.8 CVE-2018-0107 A vulnerability in the web framework of Cisco Prime Service Catalog could allow an unauthenticated, remote attacker to execute unwanted actions on an… Prime Service Catalog Mitigation only Fix from $1,9502018-01-18 HIGH 8.8 CVE-2017-12271 A vulnerability in Cisco SPA300 and SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute unwanted actions on an affecte… Spa300 Firmware after 7.5.5 Fix from $1,9502017-10-19 HIGH 8.8 CVE-2017-12253 A vulnerability in the Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to execute unwanted actions. The vulnerabili… Unified Intelligence Center Mitigation only Fix from $1,9502017-09-21 HIGH 8.8 CVE-2017-6756 A vulnerability in the Web UI Application of the Cisco Prime Collaboration Provisioning Tool through 12.2 could allow an unauthenticated, remote atta… Prime Collaboration Provisioning Mitigation only Fix from $1,9502017-08-07 HIGH 8.8 CVE-2017-9489 The Comcast firmware on Cisco DPC3939B (firmware version dpc3939b-v303r204217-150321a-CMCST) devices allows configuration changes via CSRF. Dpc3939b Firmware No fix yet Fix from $1,9502017-07-31 HIGH 8.8 CVE-2017-9490 The Comcast firmware on Arris TG1682G (eMTA&DOCSIS version 10.0.132.SIP.PC20.CT, software version TG1682_2.2p7s2_PROD_sey) devices allows configurati… Dpc3939b Firmware No fix yet Fix from $1,9502017-07-31 HIGH 8.8 CVE-2017-6659 A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to condu… Prime Collaboration Assurance Mitigation only Fix from $1,9502017-06-13 HIGH 8.8 CVE-2017-6634 A vulnerability in the Device Manager web interface of Cisco Industrial Ethernet 1000 Series Switches 1.3 could allow an unauthenticated, remote atta… Industrial Ethernet 1000 Series Firmware Mitigation only Fix from $1,9502017-05-22 MEDIUM 6.5 CVE-2017-3877 A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticated, remote attacker to conduct… Unified Communications Manager Mitigation only Fix from $1,6002017-03-17 HIGH 8.8 CVE-2016-9218 A vulnerability in Cisco Hybrid Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack … Hybrid Meeting Server Mitigation only Fix from $1,9502017-01-26 HIGH 8.8 CVE-2017-3794 A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack … Webex Meetings Server Mitigation only Fix from $1,9502017-01-26 HIGH 8.8 CVE-2016-6468 A vulnerability in the web-based management interface of Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a cross… Emergency Responder Mitigation only Fix from $1,9502016-12-14 MEDIUM 6.5 CVE-2016-6454 A cross-site request forgery (CSRF) vulnerability in the web interface of the Cisco Hosted Collaboration Mediation Fulfillment application could allo… Hosted Collaboration Mediation Fulfillment Mitigation only Fix from $1,6002016-11-03 HIGH 8.8 CVE-2016-6444 A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against… Meeting Server Mitigation only Fix from $1,9502016-10-27 HIGH 8.8 CVE-2016-6442 A vulnerability in Cisco Finesse Agent and Supervisor Desktop Software could allow an unauthenticated, remote attacker to conduct a cross-site reques… Finesse Mitigation only Fix from $1,9502016-10-27 HIGH 8.8 CVE-2016-6427 Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Unified Contact Center E… Unified Contact Center Express Mitigation only Fix from $1,9502016-10-06 HIGH 8.8 CVE-2016-6417 Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Management Center allows remote… Firesight System Software Mitigation only Fix from $1,9502016-10-05 HIGH 8.8 CVE-2016-1470 Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.… Small Business 220 Series Smart Plus Switches No fix yet Fix from $1,9502016-09-02 HIGH 8.8 CVE-2016-1448 Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.7 allows remote attackers to hijack the authentication of arbitrary … Webex Meetings Server Mitigation only Fix from $1,9502016-07-17 MEDIUM 6.8 CVE-2015-6378 Cross-site request forgery (CSRF) vulnerability on Cisco DPQ3925 devices with EDVA 5.5.2 allows remote attackers to hijack the authentication of arbi… Dpq3925 8x4 Docsis 3.0 Wireless Residential Gateway With Embedded Digital Voice Adapter Mitigation only Fix from $1,6002015-12-14