Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Web Security Appliance \(wsa\) HIGH 7.5
CVE-2016-1383

Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consump…

Mitigation only
Fix from $1,950 2016-05-25
Web Security Appliance \(wsa\) HIGH 7.5
CVE-2016-1382

Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allo…

Mitigation only
Fix from $1,950 2016-05-25
Web Security Appliance HIGH 7.5
CVE-2016-1381

Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2016-05-25
Web Security Appliance HIGH 7.5
CVE-2016-1380

Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) …

Mitigation only
Fix from $1,950 2016-05-25
Identity Services Engine Software HIGH 7.5
CVE-2016-1402

The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorizati…

Mitigation only
Fix from $1,950 2016-05-21
Unified Computing System Central Software MEDIUM 6.1
CVE-2016-1401

Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified Computing System (UCS) Central Software 1.4(1a) allows remote a…

Mitigation only
Fix from $1,600 2016-05-21
iOS HIGH 7.5
CVE-2016-1399

The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 1…

Mitigation only
Fix from $1,950 2016-05-14
Cloud Network Automation Provisioner HIGH 7.1
CVE-2016-1393

SQL injection vulnerability in Cisco Cloud Network Automation Provisioner (CNAP) 1.0 and 1.1 allows remote authenticated users to execute arbitrary S…

Mitigation only
Fix from $1,950 2016-05-12
Prime Collaboration Assurance HIGH 7.4
CVE-2016-1392

Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to redirect users to arbitrary …

Mitigation only
Fix from $1,950 2016-05-05
Telepresence Tc Software CRITICAL 9.8
CVE-2016-1387

The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8…

Mitigation only
Fix from $2,300 2016-05-05
Finesse HIGH 8.6
CVE-2016-1373

The gadgets-integration API in Cisco Finesse 8.5(1) through 8.5(5), 8.6(1), 9.0(1), 9.0(2), 9.1(1), 9.1(1)SU1, 9.1(1)SU1.1, 9.1(1)ES1 through 9.1(1)E…

Mitigation only
Fix from $1,950 2016-05-05
Asa With Firepower Services HIGH 7.5
CVE-2016-1369

The Adaptive Security Appliance (ASA) 5585-X FirePOWER Security Services Processor (SSP) module for Cisco ASA with FirePOWER Services 5.3.1 through 6…

Mitigation only
Fix from $1,950 2016-05-05
Firesight System Software HIGH 7.5
CVE-2016-1368

Cisco FirePOWER System Software 5.3.x through 5.3.0.6 and 5.4.x through 5.4.0.3 on FirePOWER 7000 and 8000 appliances, and on the Advanced Malware Pr…

Mitigation only
Fix from $1,950 2016-05-05
Information Server CRITICAL 10.0
CVE-2016-1343

The XML parser in Cisco Information Server (CIS) 6.2 allows remote attackers to read arbitrary files or cause a denial of service (CPU and memory con…

Mitigation only
Fix from $2,300 2016-04-30
Webex Productivity Tools HIGH 7.8
CVE-2016-4349

Untrusted search path vulnerability in Cisco WebEx Productivity Tools 2.40.5001.10012 allows local users to gain privileges via a Trojan horse crypts…

Mitigation only
Fix from $1,950 2016-04-28
Webex Meetings Server HIGH 7.4
CVE-2016-1389

Open redirect vulnerability in Cisco WebEx Meetings Server (CWMS) 2.6 allows remote attackers to redirect users to arbitrary web sites and conduct ph…

Mitigation only
Fix from $1,950 2016-04-28
Application Policy Infrastructure Controller Enterprise Module HIGH 7.5
CVE-2016-1386

The API in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0(1) allows remote attackers to spoof administrative noti…

Mitigation only
Fix from $1,950 2016-04-28
Adaptive Security Appliance Software HIGH 7.5
CVE-2016-1367

The DHCPv6 relay implementation in Cisco Adaptive Security Appliance (ASA) Software 9.4.1 allows remote attackers to cause a denial of service (devic…

Mitigation only
Fix from $1,950 2016-04-21
Wireless Lan Controller Software HIGH 7.5
CVE-2016-1364

Cisco Wireless LAN Controller (WLC) Software 7.4 before 7.4.130.0(MD) and 7.5, 7.6, and 8.0 before 8.0.110.0(ED) allows remote attackers to cause a d…

Mitigation only
Fix from $1,950 2016-04-21
Aireos HIGH 7.5
CVE-2016-1362

Cisco AireOS 4.1 through 7.4.120.0, 7.5.x, and 7.6.100.0 on Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $1,950 2016-04-21
Ios Xe HIGH 7.5
CVE-2015-6360EPSS 8%

The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packe…

Mitigation only
Fix from $1,950 2016-04-21
iOS HIGH 7.5
CVE-2016-1384

The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, …

Mitigation only
Fix from $1,950 2016-04-20
Unified Computing System Platform Emulator HIGH 8.4
CVE-2016-1340

Heap-based buffer overflow in Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain p…

Mitigation only
Fix from $1,950 2016-04-16
Unified Computing System Platform Emulator HIGH 7.8
CVE-2016-1339

Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain privileges via crafted argument…

Mitigation only
Fix from $1,950 2016-04-16
iOS MEDIUM 5.3
CVE-2016-1378

Cisco IOS before 15.2(2)E1 on Catalyst switches allows remote attackers to obtain potentially sensitive software-version information via a request to…

Mitigation only
Fix from $1,600 2016-04-14
Unified Computing System Central Software CRITICAL 9.8
CVE-2016-1352

Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary OS commands via a crafted HTTP…

Mitigation only
Fix from $2,300 2016-04-14
Unity Connection MEDIUM 6.1
CVE-2016-1377

Cross-site scripting (XSS) vulnerability in Cisco Unity Connection through 11.0 allows remote attackers to inject arbitrary web script or HTML via un…

No fix yet
Fix from $1,600 2016-04-12
Ios Xr MEDIUM 5.3
CVE-2016-1376

Cisco IOS XR 4.2.3, 4.3.0, 4.3.4, and 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (CRC and symbol errors, and inte…

Mitigation only
Fix from $1,600 2016-04-12
Ip Interoperability And Collaboration System MEDIUM 6.1
CVE-2016-1375

Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote attackers to inject arbitrary we…

Mitigation only
Fix from $1,600 2016-04-08
Ucs Invicta C3124sa Appliance CRITICAL 9.8
CVE-2016-1313

Cisco UCS Invicta C3124SA Appliance 4.3.1 through 5.0.1, UCS Invicta Scaling System and Appliance, and Whiptail Racerunner improperly store a default…

Mitigation only
Fix from $2,300 2016-04-06