Vulnerability index

Browse CVEs

58 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect AuthorizationCWE-863 × clear
CRITICAL 9.9 CVE-2020-3374 A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass author… Sd Wan 18.4.5 / 19.2.2+ Fix from $2,3002020-07-31 CRITICAL 9.8 CVE-2020-3140 A vulnerability in the web management interface of Cisco Prime License Manager (PLM) Software could allow an unauthenticated, remote attacker to gain… Prime License Manager after 11.5 Fix from $2,3002020-07-16 MEDIUM 5.9 CVE-2020-3150 A vulnerability in the web-based management interface of Cisco Small Business RV110W and RV215W Series Routers could allow an unauthenticated, remote… Rv110w Firmware 1.2.2.8 / 1.3.1.7+ Fix from $1,6002020-07-16 MEDIUM 5.3 CVE-2020-3360 A vulnerability in the Web Access feature of Cisco IP Phones Series 7800 and Series 8800 could allow an unauthenticated, remote attacker to view sens… Unified Ip Phone 6901 Firmware after 12.8 Fix from $1,6002020-06-18 MEDIUM 5.3 CVE-2020-3364 A vulnerability in the access control list (ACL) functionality of the standby route processor management interface of Cisco IOS XR Software could all… Ios Xr Mitigation only Fix from $1,6002020-06-18 MEDIUM 5.5 CVE-2020-3335 A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attacker to read sensitive informa… Application Policy Infrastructure Controller 1.1.2.20+ Fix from $1,6002020-06-03 CRITICAL 9.8 CVE-2020-3227 A vulnerability in the authorization controls for the Cisco IOx application hosting infrastructure in Cisco IOS XE Software could allow an unauthenti… Ios Xe Mitigation only Fix from $2,3002020-06-03 HIGH 8.8 CVE-2020-3229EPSS 5% A vulnerability in Role Based Access Control (RBAC) functionality of Cisco IOS XE Web Management Software could allow a Read-Only authenticated, remo… Ios Xe Patch available Fix from $1,9502020-06-03 HIGH 7.8 CVE-2019-12671 A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to gain shell access on an affected device and execu… Ios Xe Mitigation only Fix from $1,9502019-09-25 HIGH 8.8 CVE-2019-12648 A vulnerability in the IOx application environment for Cisco IOS Software could allow an authenticated, remote attacker to gain unauthorized access t… iOS Mitigation only Fix from $1,9502019-09-25 CRITICAL 9.1 CVE-2019-1912EPSS 17% A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to … Sf 220 24 Firmware 1.1.4.4+ Fix from $2,3002019-08-07 HIGH 8.8 CVE-2019-1626 A vulnerability in the vManage web-based UI (Web UI) of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to gain elevated priv… Sd Wan Firmware after 18.3.6 Fix from $1,9502019-06-20 HIGH 7.8 CVE-2019-1603 A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to escalate lower-level privileges to the administrat… Nx Os 7.0+ Fix from $1,9502019-03-08 HIGH 7.8 CVE-2019-1604 A vulnerability in the user account management interface of Cisco NX-OS Software could allow an authenticated, local attacker to gain elevated privil… Nx Os 6.2 / 7.0+ Fix from $1,9502019-03-08 HIGH 8.1 CVE-2018-15465 A vulnerability in the authorization subsystem of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, but unprivileged (le… Adaptive Security Appliance Software 9.4.4.29 / 9.6.4.20+ Fix from $1,9502018-12-24 MEDIUM 6.5 CVE-2018-15405 A vulnerability in the web interface for specific feature sets of Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director coul… Ucs Director Mitigation only Fix from $1,6002018-10-05 MEDIUM 6.5 CVE-2018-0460 A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read any fil… Network Functions Virtualization Infrastructure Mitigation only Fix from $1,6002018-10-05 MEDIUM 6.5 CVE-2018-0459 A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote at… Network Functions Virtualization Infrastructure Mitigation only Fix from $1,6002018-10-05 HIGH 7.8 CVE-2018-0337 A vulnerability in the role-based access-checking mechanisms of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrar… Nx Os Mitigation only Fix from $1,9502018-06-21 HIGH 7.8 CVE-2018-0338 A vulnerability in the role-based access-checking mechanisms of Cisco Unified Computing System (UCS) Software could allow an authenticated, local att… Unified Computing System Mitigation only Fix from $1,9502018-06-07 MEDIUM 6.5 CVE-2018-0278 A vulnerability in the management console of Cisco Firepower System Software could allow an unauthenticated, remote attacker to access sensitive data… Secure Firewall Management Center Mitigation only Fix from $1,6002018-05-02 HIGH 8.1 CVE-2018-0110 A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to access the remote support account even after it has b… Webex Meetings Server Mitigation only Fix from $1,9502018-01-18 MEDIUM 5.9 CVE-2018-0096 A vulnerability in the role-based access control (RBAC) functionality of Cisco Prime Infrastructure could allow an authenticated, remote attacker to … Prime Infrastructure Mitigation only Fix from $1,6002018-01-18 HIGH 7.8 CVE-2017-12261 A vulnerability in the restricted shell of the Cisco Identity Services Engine (ISE) that is accessible via SSH could allow an authenticated, local at… Identity Services Engine Mitigation only Fix from $1,9502017-11-02 HIGH 7.5 CVE-2017-6672 A vulnerability in certain filtering mechanisms of access control lists (ACLs) for Cisco ASR 5000 Series Aggregation Services Routers through 21.x co… Asr 5000 Series Software Mitigation only Fix from $1,9502017-07-25 HIGH 8.8 CVE-2017-3801 A vulnerability in the web-based GUI of Cisco UCS Director 6.0.0.0 and 6.0.0.1 could allow an authenticated, local attacker to execute arbitrary work… Unified Computing System Director Mitigation only Fix from $1,9502017-02-15 MEDIUM 5.8 CVE-2012-1342 Cisco Carrier Routing System (CRS) 3.9, 4.0, and 4.1 allows remote attackers to bypass ACL entries via fragmented packets, aka Bug ID CSCtj10975. Carrier Routing System Mitigation only Fix from $1,6002012-08-06 HIGH 9.3 CVE-2007-2586EPSS 14% The FTP Server in Cisco IOS 11.3 through 12.4 does not properly check user authorization, which allows remote attackers to execute arbitrary code, an… iOS No fix yet Fix from $1,9502007-05-10