Vulnerability index

Browse CVEs

3,245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Netflow Collection Engine HIGH 10.0
CVE-2007-2282

Cisco Network Services (CNS) NetFlow Collection Engine (NFC) before 6.0 has an nfcuser account with the default password nfcuser, which allows remote…

Mitigation only
Fix from $1,950 2007-04-26
2000 Wireless Lan Controller MEDIUM 6.1
CVE-2007-2038

The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attack…

Mitigation only
Fix from $1,600 2007-04-16
Trust Agent HIGH 7.5
CVE-2007-1800

Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to ga…

Mitigation only
Fix from $1,950 2007-04-02
7940 Router MEDIUM 5.0
CVE-2007-1542EPSS 9%

Unspecified vulnerability in the Cisco IP Phone 7940 and 7960 running firmware before POS8-6-0 allows remote attackers to cause a denial of service v…

Mitigation only
Fix from $1,600 2007-03-20
Network Analysis Module HIGH 10.0
CVE-2007-1257EPSS 7%

The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNM…

Mitigation only
Fix from $1,950 2007-03-03
Catalyst 6000 MEDIUM 6.1
CVE-2007-1258

Unspecified vulnerability in Cisco IOS 12.2SXA, SXB, SXD, and SXF; and the MSFC2, MSFC2a and MSFC3 running in Hybrid Mode on Cisco Catalyst 6000, 650…

Mitigation only
Fix from $1,600 2007-03-03
Secure Services Client HIGH 7.2
CVE-2007-1067

Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been depl…

Mitigation only
Fix from $1,950 2007-02-22
iOS HIGH 7.1
CVE-2007-0918

The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XA, 12.3YA, 12.3T, and other trains allows remote …

Mitigation only
Fix from $1,950 2007-02-14
iOS MEDIUM 6.4
CVE-2007-0917

The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signatures that use regular express…

Mitigation only
Fix from $1,600 2007-02-14
Ios Transmission Control Protocol HIGH 10.0
CVE-2007-0480EPSS 9%

Cisco IOS 9.x, 10.x, 11.x, and 12.x and IOS XR 2.0.x, 3.0.x, and 3.2.x allows remote attackers to cause a denial of service or execute arbitrary code…

Mitigation only
Fix from $1,950 2007-01-25
Ios Transmission Control Protocol HIGH 7.8
CVE-2007-0479

Memory leak in the TCP listener in Cisco IOS 9.x, 10.x, 11.x, and 12.x allows remote attackers to cause a denial of service by sending crafted TCP tr…

Mitigation only
Fix from $1,950 2007-01-25
Ios Transmission Control Protocol HIGH 7.8
CVE-2007-0481

Cisco IOS allows remote attackers to cause a denial of service (crash) via a crafted IPv6 Type 0 Routing header.

Mitigation only
Fix from $1,950 2007-01-25
Secure Access Control Server HIGH 10.0
CVE-2006-4098EPSS 13%

Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before…

Mitigation only
Fix from $1,950 2006-12-31
Secure Desktop MEDIUM 5.5
CVE-2006-5393

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local u…

Mitigation only
Fix from $1,600 2006-10-18
Network Access Control HIGH 7.5
CVE-2006-4983

Cisco NAC allows quarantined devices to communicate over the network with (1) DNS, (2) DHCP, and (3) EAPoUDP, which allows attackers to bypass contro…

Mitigation only
Fix from $1,950 2006-09-26
Ids Sensor Software MEDIUM 5.0
CVE-2006-4910

The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to …

Mitigation only
Fix from $1,600 2006-09-21
Content Services Switch 11000 MEDIUM 5.0
CVE-2006-4352

The ArrowPoint cookie functionality for Cisco 11000 series Content Service Switches specifies an internal IP address if the administrator does not sp…

No fix yet
Fix from $1,600 2006-08-25
Pix Firewall 501 MEDIUM 6.8
CVE-2006-4312

Cisco PIX 500 Series Security Appliances and ASA 5500 Series Adaptive Security Appliances, when running 7.0(x) up to 7.0(5) and 7.1(x) up to 7.1(2.4)…

Mitigation only
Fix from $1,600 2006-08-23
Pix Firewall 501 MEDIUM 5.0
CVE-2006-4194

Unspecified vulnerability in Cisco PIX 500 Series Security Appliances allows remote attackers to send arbitrary UDP packets to intranet devices via u…

Mitigation only
Fix from $1,600 2006-08-17
Callmanager Express MEDIUM 5.0
CVE-2006-4032

Unspecified vulnerability in Cisco IOS CallManager Express (CME) allows remote attackers to gain sensitive information (user names) from the Session …

Mitigation only
Fix from $1,600 2006-08-09
iOS MEDIUM 5.0
CVE-2006-3906EPSS 7%

Internet Key Exchange (IKE) version 1 protocol, as implemented on Cisco IOS, VPN 3000 Concentrators, and PIX firewalls, allows remote attackers to ca…

Mitigation only
Fix from $1,600 2006-07-27
Secure Access Control Server HIGH 7.5
CVE-2006-3226

Cisco Secure Access Control Server (ACS) 4.x for Windows uses the client's IP address and the server's port number to grant access to an HTTP server …

Mitigation only
Fix from $1,950 2006-06-26
Ios Xr MEDIUM 5.0
CVE-2006-1927

Cisco IOS XR, when configured for Multi Protocol Label Switching (MPLS) and running on Cisco CRS-1 or Cisco 12000 series routers, allows remote attac…

Mitigation only
Fix from $1,600 2006-04-20
Ios Xr MEDIUM 5.0
CVE-2006-1928

Cisco IOS XR, when configured for Multi Protocol Label Switching (MPLS) and running on Cisco CRS-1 routers, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,600 2006-04-20
Transport Controller HIGH 7.5
CVE-2006-1672

The installation of Cisco Transport Controller (CTC) for Cisco Optical Networking System (ONS) 15000 series nodes adds a Java policy file entry with …

Mitigation only
Fix from $1,950 2006-04-07
Transport Controller MEDIUM 5.0
CVE-2006-1671

Control cards for Cisco Optical Networking System (ONS) 15000 series nodes before 20060405 allow remote attackers to cause a denial of service (card …

Mitigation only
Fix from $1,600 2006-04-07
Anomaly Guard Module MEDIUM 5.1
CVE-2006-0764

The Authentication, Authorization, and Accounting (AAA) capability in versions 5.0(1) and 5.0(3) of the software used by multiple Cisco Anomaly Detec…

Mitigation only
Fix from $1,600 2006-02-18
iOS MEDIUM 6.1
CVE-2005-4826

Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(22)EA3 on Catalyst 2950T switches allows remote attackers to …

Mitigation only
Fix from $1,600 2005-12-31
Application And Content Networking Software MEDIUM 5.0
CVE-2005-4794

Cisco IP Phones 7902/7905/7912, ATA 186/188, Unity Express, ACNS, and Subscriber Edge Services Manager (SESM) allows remote attackers to cause a deni…

Mitigation only
Fix from $1,600 2005-12-31
Vpn 3001 Concentrator HIGH 7.5
CVE-2005-4499

The Downloadable RADIUS ACLs feature in Cisco PIX and VPN 3000 concentrators, when creating an ACL on the Cisco Secure Access Control Server (CS ACS)…

Mitigation only
Fix from $1,950 2005-12-22