Vulnerability index

Browse CVEs

320 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Staros HIGH 8.2
CVE-2017-6707

A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 through 21.0, 5500 Series, and 57…

Mitigation only
Fix from $1,950 2017-07-06
Elastic Services Controller HIGH 8.8
CVE-2017-6682

A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to run arbitrary commands as the…

Mitigation only
Fix from $1,950 2017-06-13
Elastic Services Controller HIGH 8.8
CVE-2017-6683EPSS 6%

A vulnerability in the esc_listener.py script of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to execute arbitrar…

Mitigation only
Fix from $1,950 2017-06-13
Unified Computing System HIGH 7.8
CVE-2017-6597

A vulnerability in the local-mgmt CLI command of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewa…

Mitigation only
Fix from $1,950 2017-04-07
Firepower Extensible Operating System HIGH 7.8
CVE-2017-6600

A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisc…

Mitigation only
Fix from $1,950 2017-04-07
Firepower Extensible Operating System HIGH 7.1
CVE-2017-6601

A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisc…

Mitigation only
Fix from $1,950 2017-04-07
Ios Xe MEDIUM 6.4
CVE-2017-6606

A vulnerability in a startup script of Cisco IOS XE Software could allow an unauthenticated attacker with physical access to the targeted system to e…

Mitigation only
Fix from $1,600 2017-04-07
Secure Firewall Threat Defense MEDIUM 5.3
CVE-2017-3806

A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepower 9300 Security Appliance cou…

Mitigation only
Fix from $1,600 2017-02-03
Webex Meetings Server HIGH 7.2
CVE-2017-3796

A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute predetermined shell commands on other hosts. …

Mitigation only
Fix from $1,950 2017-01-26
Telepresence Tc Software MEDIUM 5.5
CVE-2016-6459

Cisco TelePresence endpoints running either CE or TC software contain a vulnerability that could allow an authenticated, local attacker to execute a …

Mitigation only
Fix from $1,600 2016-11-19
iOS HIGH 7.8
CVE-2016-6414

iox in Cisco IOS, possibly 15.6 and earlier, and IOS XE, possibly 3.18 and earlier, allows local users to execute arbitrary IOx Linux commands on the…

Mitigation only
Fix from $1,950 2016-09-22
Cloud Services Platform 2100 HIGH 7.2
CVE-2016-6373

The web-based GUI in Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote authenticated administrators to execute arbitrary OS commands as root…

Mitigation only
Fix from $1,950 2016-09-22
Webex Meetings Server HIGH 8.1
CVE-2016-1482

Cisco WebEx Meetings Server 2.6 allows remote attackers to execute arbitrary commands by injecting these commands into an application script, aka Bug…

Mitigation only
Fix from $1,950 2016-09-17
Telepresence Video Communication Server HIGH 8.8
CVE-2016-1468

The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbi…

Mitigation only
Fix from $1,950 2016-08-08
Rv110w Wireless N Vpn Firewall Firmware HIGH 7.8
CVE-2015-6396

The CLI command parser on Cisco RV110W, RV130W, and RV215W devices allows local users to execute arbitrary shell commands as an administrator via cra…

No fix yet
Fix from $1,950 2016-08-08
Unified Computing System Platform Emulator HIGH 7.8
CVE-2016-1339

Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain privileges via crafted argument…

Mitigation only
Fix from $1,950 2016-04-16
Unified Computing System Central Software CRITICAL 9.8
CVE-2016-1352

Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary OS commands via a crafted HTTP…

Mitigation only
Fix from $2,300 2016-04-14
Application Control Engine Software HIGH 8.8
CVE-2016-1297

The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC res…

Mitigation only
Fix from $1,950 2016-02-26
Prime Collaboration MEDIUM 6.7
CVE-2016-1320

The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges,…

Mitigation only
Fix from $1,600 2016-02-12
Firepower Extensible Operating System CRITICAL 9.8
CVE-2015-6435EPSS 9%

An unspecified CGI script in Cisco FX-OS before 1.1.2 on Firepower 9000 devices and Cisco Unified Computing System (UCS) Manager before 2.2(4b), 2.2(…

No fix yet
Fix from $2,300 2016-01-22
Firepower Extensible Operating System MEDIUM 6.5
CVE-2015-6380

An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenti…

Mitigation only
Fix from $1,600 2015-11-24
Firepower Extensible Operating System HIGH 7.2
CVE-2015-6370

The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute …

Mitigation only
Fix from $1,950 2015-11-19
Web Security Appliance HIGH 9.0
CVE-2015-6298

The admin web interface in Cisco AsyncOS 8.x before 8.0.8-113, 8.1.x and 8.5.x before 8.5.3-051, 8.6.x and 8.7.x before 8.7.0-171-LD, and 8.8.x befor…

Mitigation only
Fix from $1,950 2015-11-06
Telepresence Video Communication Server Software MEDIUM 6.9
CVE-2015-4330

A local file script in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to gain privileges for OS command exe…

Mitigation only
Fix from $1,600 2015-09-02
Unified Computing System HIGH 7.2
CVE-2015-4279

The Manager component in Cisco Unified Computing System (UCS) 2.2(3b) on B Blade Server devices allows local users to gain privileges for executing a…

Mitigation only
Fix from $1,950 2015-07-20
Asr 5000 Series Software HIGH 7.2
CVE-2015-4244

The boot implementation on Cisco ASR 5000 and 5500 devices with software 14.0 allows local users to execute arbitrary Linux commands by leveraging ad…

Mitigation only
Fix from $1,950 2015-07-10
Wireless Lan Controller Software HIGH 7.2
CVE-2015-4224

Cisco Wireless LAN Controller (WLC) devices with software 7.0(240.0) allow local users to execute arbitrary OS commands in a privileged context via c…

Mitigation only
Fix from $1,950 2015-06-26
Virtualization Experience Client 6000 Series Firmware HIGH 7.2
CVE-2015-4186

The diagnostics subsystem in the administrative web interface on Cisco Virtualization Experience (aka VXC) Client 6215 devices with firmware 11.2(27.…

Mitigation only
Fix from $1,950 2015-06-17
Unified Computing System HIGH 7.2
CVE-2015-4183

Cisco UCS Central Software 1.2(1a) allows local users to gain privileges for OS command execution via a crafted CLI parameter, aka Bug ID CSCut32795.

Mitigation only
Fix from $1,950 2015-06-17
Secure Desktop HIGH 9.3
CVE-2015-0691

A certain Cisco JAR file, as distributed in Cache Cleaner in Cisco Secure Desktop (CSD), allows remote attackers to execute arbitrary commands via a …

Mitigation only
Fix from $1,950 2015-04-17