Vulnerability index

Browse CVEs

3,245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Network Admission Control Manager And Server System Software HIGH 9.4
CVE-2005-4332

Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service or up…

Mitigation only
Fix from $1,950 2005-12-17
Catalyst HIGH 7.8
CVE-2005-4258

Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and dest…

No fix yet
Fix from $1,950 2005-12-15
Adaptive Security Appliance Software MEDIUM 5.4
CVE-2005-3788

Race condition in Cisco Adaptive Security Appliance (ASA) 7.0(0), 7.0(2), and 7.0(4), when running with an Active/Standby configuration and when the …

Mitigation only
Fix from $1,600 2005-11-24
Pix MEDIUM 5.0
CVE-2005-3774EPSS 18%

Cisco PIX 6.3 and 7.0 allows remote attackers to cause a denial of service (blocked new connections) via spoofed TCP packets that cause the PIX to cr…

Mitigation only
Fix from $1,600 2005-11-23
Firewall Services Module MEDIUM 5.0
CVE-2005-3669EPSS 5%

Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in multiple Cisco products allow remote attackers …

Mitigation only
Fix from $1,600 2005-11-18
iOS HIGH 9.3
CVE-2005-3481EPSS 7%

Cisco IOS 12.0 to 12.4 might allow remote attackers to execute arbitrary code via a heap-based buffer overflow in system timers. NOTE: this issue doe…

No fix yet
Fix from $1,950 2005-11-03
iOS HIGH 7.5
CVE-2005-2841EPSS 14%

Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 and 12.3T, and 12.4 and 12.4T a…

Mitigation only
Fix from $1,950 2005-09-08
Ip Phone 7940 Firmware HIGH 7.5
CVE-2005-2181

Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, w…

Mitigation only
Fix from $1,950 2005-07-11
Catalyst HIGH 7.5
CVE-2005-1942

Cisco switches that support 802.1x security allow remote attackers to bypass port security and gain access to the VLAN via spoofed Cisco Discovery Pr…

Mitigation only
Fix from $1,950 2005-06-10
iOS HIGH 7.5
CVE-2005-1057

Cisco IOS 12.2T, 12.3 and 12.3T, when using Easy VPN Server XAUTH version 6 authentication, allows remote attackers to bypass authentication via a "m…

Mitigation only
Fix from $1,950 2005-05-02
iOS HIGH 7.5
CVE-2005-1058

Cisco IOS 12.2T, 12.3 and 12.3T, when processing an ISAKMP profile that specifies XAUTH authentication after Phase 1 negotiation, may not process cer…

Mitigation only
Fix from $1,950 2005-05-02
iOS MEDIUM 5.0
CVE-2005-0186

Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Tel…

No fix yet
Fix from $1,600 2005-01-19
Security Agent MEDIUM 5.1
CVE-2004-1112

The buffer overflow trigger in Cisco Security Agent (CSA) before 4.0.3 build 728 waits five minutes for a user response before terminating the proces…

Mitigation only
Fix from $1,600 2005-01-10
iOS MEDIUM 5.0
CVE-2004-1111

Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command…

Mitigation only
Fix from $1,600 2005-01-10
Cns Network Registrar MEDIUM 5.0
CVE-2004-1163

Cisco CNS Network Registrar Central Configuration Management (CCM) server 6.0 through 6.1.1.3 allows remote attackers to cause a denial of service (C…

Mitigation only
Fix from $1,600 2005-01-10
Cns Network Registrar MEDIUM 5.0
CVE-2004-1164

The lock manager in Cisco CNS Network Registrar 6.0 through 6.1.1.3 allows remote attackers to cause a denial of service (process crash) via a certai…

Mitigation only
Fix from $1,600 2005-01-10
Optical Networking Systems Software HIGH 7.5
CVE-2004-1436

The Transaction Language 1 (TL1) login interface in Cisco ONS 15327 4.6(0) and 4.6(1) and 15454 and 15454 SDH 4.6(0) and 4.6(1), when a user account …

Mitigation only
Fix from $1,950 2004-12-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2004-1432

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earl…

Mitigation only
Fix from $1,600 2004-12-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2004-1433

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earl…

Mitigation only
Fix from $1,600 2004-12-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2004-1434

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.1(0) to 4.1(2), 4.5(x), 4.0(0) to 4.0(2), and earlier versions, allow…

No fix yet
Fix from $1,600 2004-12-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2004-1435

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earl…

Mitigation only
Fix from $1,600 2004-12-31
Firewall Services Module HIGH 7.5
CVE-2004-0079EPSS 10%

The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) vi…

Mitigation only
Fix from $1,950 2004-11-23
Firewall Services Module MEDIUM 5.0
CVE-2004-0081EPSS 7%

OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop…

Mitigation only
Fix from $1,600 2004-11-23
Firewall Services Module MEDIUM 5.0
CVE-2004-0112EPSS 10%

The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos …

Mitigation only
Fix from $1,600 2004-11-23
Catos MEDIUM 5.0
CVE-2004-0551

Cisco CatOS 5.x before 5.5(20) through 8.x before 8.2(2) and 8.3(2)GLX, as used in Catalyst switches, allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,600 2004-08-06
Leap HIGH 10.0
CVE-2003-1096EPSS 10%

The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary attacks, which makes it easier f…

No fix yet
Fix from $1,950 2003-12-31
iOS HIGH 9.3
CVE-2003-1398

Cisco IOS 12.0 through 12.2, when IP routing is disabled, accepts false ICMP redirect messages, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2003-12-31
Content Services Switch 11000 MEDIUM 5.0
CVE-2003-1132

The DNS server for Cisco Content Service Switch (CSS) 11000 and 11500, when prompted for a nonexistent AAAA record, responds with response code 3 (NX…

Mitigation only
Fix from $1,600 2003-12-31
iOS MEDIUM 5.0
CVE-2003-0511EPSS 9%

The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2003-08-27
iOS MEDIUM 5.0
CVE-2003-0512

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allo…

Mitigation only
Fix from $1,600 2003-08-27