Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ip Phone 8800 Series Firmware HIGH 7.0
CVE-2016-1435

Cisco 8800 phones with software 11.0(1) do not properly enforce mounted-filesystem permissions, which allows local users to write to arbitrary files …

Mitigation only
Fix from $1,950 2016-06-23
Ip Phone 8800 Series Firmware MEDIUM 6.5
CVE-2016-1434

The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows remote authenticated users to delete arbitrary files v…

Mitigation only
Fix from $1,600 2016-06-23
Ios Xe MEDIUM 6.5
CVE-2016-1428

Double free vulnerability in Cisco IOS XE 3.15S, 3.16S, and 3.17S allows remote authenticated users to cause a denial of service (device restart) via…

Mitigation only
Fix from $1,600 2016-06-23
iOS HIGH 7.5
CVE-2015-6289

Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and 829 devices allows remote attackers to cause a denial of service (memory consump…

Mitigation only
Fix from $1,950 2016-06-23
iOS MEDIUM 6.5
CVE-2016-1424

Cisco IOS 15.2(1)T1.11 and 15.2(2)TST allows remote attackers to cause a denial of service (device crash) via a crafted LLDP packet, aka Bug ID CSCun…

Mitigation only
Fix from $1,600 2016-06-19
Rv215w Wireless N Vpn Router Firmware MEDIUM 6.5
CVE-2016-1397

Buffer overflow in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3…

Mitigation only
Fix from $1,600 2016-06-19
Rv130w Wireless N Multifunction Vpn Router Firmware MEDIUM 6.1
CVE-2016-1396

Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices w…

Mitigation only
Fix from $1,600 2016-06-19
Rv130w Wireless N Multifunction Vpn Router Firmware CRITICAL 9.8
CVE-2016-1395

The web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W dev…

Mitigation only
Fix from $2,300 2016-06-19
Ios Xe MEDIUM 6.5
CVE-2016-1432

Cisco IOS XE 3.15S and 3.16S on cBR-8 Converged Broadband Router devices allows remote authenticated users to cause a denial of service (NULL pointer…

Mitigation only
Fix from $1,600 2016-06-18
Secure Firewall Management Center MEDIUM 6.1
CVE-2016-1431

Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.1, and 5.4.0 allows remote attackers to injec…

Mitigation only
Fix from $1,600 2016-06-18
Prime Network Registrar HIGH 7.5
CVE-2016-1427

The System Configuration Protocol (SCP) core messaging interface in Cisco Prime Network Registrar 8.2 before 8.2.3.1 and 8.3 before 8.3.2 allows remo…

Mitigation only
Fix from $1,950 2016-06-18
Ip Phone 8800 Series Firmware HIGH 7.5
CVE-2016-1421

A vulnerability in the web application for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or ca…

Mitigation only
Fix from $1,950 2016-06-10
Application Infrastructure Controller HIGH 7.8
CVE-2016-1420

The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files,…

Mitigation only
Fix from $1,950 2016-06-10
Aironet Access Point Software HIGH 8.1
CVE-2016-1419

Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka…

Mitigation only
Fix from $1,950 2016-06-10
Aironet Access Point Software HIGH 7.8
CVE-2016-1418

Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root ac…

Mitigation only
Fix from $1,950 2016-06-08
Email Security Appliance HIGH 7.5
CVE-2016-1405

libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-1…

Mitigation only
Fix from $1,950 2016-06-08
Ip Phone 8800 Series Firmware HIGH 7.8
CVE-2016-1403

CISCO IP 8800 phones with software 11.0.1 and earlier allow local users to gain privileges for OS command execution via crafted CLI commands, aka Bug…

Mitigation only
Fix from $1,950 2016-06-04
Prime Network Analysis Module Software HIGH 8.8
CVE-2016-1391

Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(2) and Prime Virtual Network Analysis Module (vNAM) be…

Mitigation only
Fix from $1,950 2016-06-04
Prime Network Analysis Module Software HIGH 7.8
CVE-2016-1390

Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) and Prime Virtual Network Analysis Module (vNAM) be…

Mitigation only
Fix from $1,950 2016-06-04
Network Analysis Module CRITICAL 9.8
CVE-2016-1388

Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) and Prime Virtual Network Analysis Module (vNAM) be…

Mitigation only
Fix from $2,300 2016-06-03
Network Analysis Module Software MEDIUM 5.3
CVE-2016-1370

Cisco Prime Network Analysis Module (NAM) before 6.2(1-b) miscalculates IPv6 payload lengths, which allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2016-06-03
iOS HIGH 7.5
CVE-2016-1409

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 through 5.3.2, and NX-OS allows…

Mitigation only
Fix from $1,950 2016-05-29
Ucs Invicta C3124sa Appliance HIGH 7.5
CVE-2016-1404

Cisco UCS Invicta 4.3, 4.5, and 5.0.1 on Invicta appliances and Invicta Scaling System uses the same hardcoded GnuPG encryption key across different …

Mitigation only
Fix from $1,950 2016-05-29
Secure Firewall Management Center MEDIUM 6.5
CVE-2016-1413

The web interface in Cisco Firepower Management Center 5.4.0 through 6.0.0.1 allows remote authenticated users to modify pages by placing crafted cod…

Mitigation only
Fix from $1,600 2016-05-28
Webex Meeting Center HIGH 7.5
CVE-2016-1410

Cisco WebEx Meeting Center Original Release Base allows remote attackers to obtain sensitive information about username validity by (1) attending or …

Mitigation only
Fix from $1,950 2016-05-28
Adaptive Security Appliance Software MEDIUM 6.5
CVE-2016-1379

Cisco Adaptive Security Appliance (ASA) Software 9.0 through 9.5.1 mishandles IPsec error processing, which allows remote authenticated users to caus…

Mitigation only
Fix from $1,600 2016-05-28
Adaptive Security Appliance Software MEDIUM 6.5
CVE-2016-1385

The XML parser in Cisco Adaptive Security Appliance (ASA) Software through 9.5.2 allows remote authenticated users to cause a denial of service (inst…

Mitigation only
Fix from $1,600 2016-05-26
Ios Xr HIGH 7.5
CVE-2016-1407

Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2016-05-25
Evolved Programmable Network Manager HIGH 8.8
CVE-2016-1406

The API web interface in Cisco Prime Infrastructure before 3.1 and Cisco Evolved Programmable Network Manager before 1.2.4 allows remote authenticate…

Mitigation only
Fix from $1,950 2016-05-25
Telepresence Video Communication Server HIGH 7.5
CVE-2016-1400

Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via…

Mitigation only
Fix from $1,950 2016-05-25