Vulnerability index

Browse CVEs

320 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Ip Phone Multiplatform Firmware HIGH 8.8
CVE-2018-0341EPSS 6%

A vulnerability in the web-based UI of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware before 11.2(1) could allow an authentic…

Mitigation only
Fix from $1,950 2018-07-16
Nx Os HIGH 7.8
CVE-2018-0306

A vulnerability in the CLI parser of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-injection attack on an af…

Fix: 5.2 / 7.3+
Fix from $1,950 2018-06-21
Nx Os HIGH 8.8
CVE-2018-0293

A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attacker to execute CLI commands th…

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nx Os HIGH 8.8
CVE-2018-0330

A vulnerability in the NX-API management application programming interface (API) in devices running, or based on, Cisco NX-OS Software could allow an…

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nx Os HIGH 7.8
CVE-2018-0307

A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-injection attack on an affected …

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Network Services Orchestrator HIGH 8.8
CVE-2018-0274

A vulnerability in the CLI parser of Cisco Network Services Orchestrator (NSO) could allow an authenticated, remote attacker to execute arbitrary she…

Fix: after 4.4.2.0
Fix from $1,950 2018-06-07
Enterprise Nfv Infrastructure Software HIGH 8.8
CVE-2018-0279

A vulnerability in the Secure Copy Protocol (SCP) server of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote…

Fix: 3.6.3+
Fix from $1,950 2018-05-17
Network Functions Virtualization Infrastructure MEDIUM 6.7
CVE-2018-0324

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, high-privileged, local attacker to p…

Mitigation only
Fix from $1,600 2018-05-17
Ios Xe HIGH 7.8
CVE-2018-0194

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands into th…

Fix: 16.3.1+
Fix from $1,950 2018-04-02
Ios Xe HIGH 7.8
CVE-2018-0193

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands into th…

Fix: 16.3.1+
Fix from $1,950 2018-03-28
Ios Xe HIGH 7.8
CVE-2018-0176

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Lin…

Mitigation only
Fix from $1,950 2018-03-28
Ios Xe HIGH 7.8
CVE-2018-0182

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands into th…

Fix: 16.3.1+
Fix from $1,950 2018-03-28
Ios Xe HIGH 7.8
CVE-2018-0185

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to inject arbitrary commands into th…

Fix: 16.3.1+
Fix from $1,950 2018-03-28
Ios Xe MEDIUM 6.7
CVE-2018-0183

A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell …

Fix: 3.13.0as / 3.13.2as+
Fix from $1,600 2018-03-28
Ios Xe MEDIUM 6.7
CVE-2018-0184

A vulnerability in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Linux shell …

Fix: 3.8.6e / 3.13.9s+
Fix from $1,600 2018-03-28
iOS HIGH 7.8
CVE-2018-0169

Multiple vulnerabilities in the CLI parser of Cisco IOS XE Software could allow an authenticated, local attacker to gain access to the underlying Lin…

Mitigation only
Fix from $1,950 2018-03-28
Identity Services Engine MEDIUM 6.7
CVE-2018-0221

A vulnerability in specific CLI commands for the Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to perform command…

Mitigation only
Fix from $1,600 2018-03-08
Staros MEDIUM 6.7
CVE-2018-0224

A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow an authenticated, …

Mitigation only
Fix from $1,600 2018-03-08
Asr 5000 Firmware MEDIUM 6.7
CVE-2018-0217

A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow an authenticated, …

Mitigation only
Fix from $1,600 2018-03-08
Identity Services Engine MEDIUM 5.3
CVE-2018-0214

A vulnerability in certain CLI commands of Cisco Identity Services Engine (ISE) could allow an authenticated, local attacker to execute arbitrary com…

Mitigation only
Fix from $1,600 2018-03-08
D9800 Firmware HIGH 8.8
CVE-2018-0099

A vulnerability in the web management GUI of the Cisco D9800 Network Transport Receiver could allow an authenticated, remote attacker to perform a co…

No fix yet
Fix from $1,950 2018-01-18
Staros MEDIUM 6.7
CVE-2018-0115

A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series routers could allow an authenticated, local attacker to exe…

Mitigation only
Fix from $1,600 2018-01-18
Ip Phone 8800 Series Firmware MEDIUM 6.7
CVE-2017-12305

A vulnerability in the debug interface of Cisco IP Phone 8800 series could allow an authenticated, local attacker to execute arbitrary commands, aka …

Mitigation only
Fix from $1,600 2017-11-16
Unified Computing System Manager Firmware HIGH 7.8
CVE-2017-12243EPSS 77%

A vulnerability in the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower…

Mitigation only
Fix from $1,950 2017-11-02
Ios Xe MEDIUM 6.7
CVE-2017-6796

A vulnerability in the USB-modem code of Cisco IOS XE Software running on Cisco ASR 920 Series Aggregation Services Routers could allow an authentica…

Mitigation only
Fix from $1,600 2017-09-07
Virtual Network Function Element Manager HIGH 8.1
CVE-2017-6710

A vulnerability in the Cisco Virtual Network Function (VNF) Element Manager could allow an authenticated, remote attacker to elevate privileges and r…

Fix: after 5.1.3
Fix from $1,950 2017-08-17
Dpc3939 Firmware CRITICAL 9.8
CVE-2017-9483

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows Network Processor (NP) Linux users…

No fix yet
Fix from $2,300 2017-07-31
Residential Gateway Firmware CRITICAL 9.8
CVE-2017-11588

On Cisco DDR2200 ADSL2+ Residential Gateway DDR2200B-NA-AnnexA-FCC-V00.00.03.45.4E and DDR2201v1 ADSL2+ Residential Gateway DDR2201v1-NA-AnnexA-FCC-V…

Mitigation only
Fix from $2,300 2017-07-24
Ultra Services Framework Staging Server CRITICAL 9.8
CVE-2017-6714

A vulnerability in the AutoIT service of Cisco Ultra Services Framework Staging Server could allow an unauthenticated, remote attacker to execute arb…

Fix: after 5.0.2
Fix from $2,300 2017-07-06
Elastic Services Controller HIGH 8.8
CVE-2017-6712

A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root …

Mitigation only
Fix from $1,950 2017-07-06