Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Content Security Management Appliance MEDIUM 5.5
CVE-2015-4322

Cisco Content Security Management Appliance (SMA) 8.3.6-039, 9.1.0-31, and 9.1.0-103 improperly restricts the privileges available after LDAP authent…

Mitigation only
Fix from $1,600 2015-08-19
Edge Bluebird Operating System MEDIUM 6.8
CVE-2015-4308

The webGUI configuration-export feature in Cisco Edge Bluebird Operating System 1.2 on Edge 340 devices allows remote authenticated users to obtain s…

Mitigation only
Fix from $1,600 2015-08-19
Nx Os MEDIUM 6.8
CVE-2015-4301

Cisco NX-OS on Nexus 9000 devices 11.1(1c) allows remote authenticated users to cause a denial of service (device hang) via large files that are copi…

Mitigation only
Fix from $1,600 2015-08-19
Unified Web And E Mail Interaction Manager MEDIUM 5.5
CVE-2015-4299

Cisco Unified Web and E-Mail Interaction Manager 9.0(2) improperly performs authorization, which allows remote authenticated users to remove default …

Mitigation only
Fix from $1,600 2015-08-19
Unified Web And E Mail Interaction Manager MEDIUM 6.5
CVE-2015-4298

Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs authorization, which allows remote authenticated users to rea…

Mitigation only
Fix from $1,600 2015-08-19
Firesight System Software MEDIUM 6.4
CVE-2015-4302

The web interface in Cisco FireSIGHT Management Center 5.3.1.4 allows remote attackers to delete arbitrary system policies via modified parameters in…

Mitigation only
Fix from $1,600 2015-08-19
Webex Node For Mcs MEDIUM 5.8
CVE-2015-4297

Open redirect vulnerability in Cisco WebEx Node for Media Convergence Server (MCS) allows remote attackers to redirect users to arbitrary web sites a…

Mitigation only
Fix from $1,600 2015-08-19
Ios Xe HIGH 7.8
CVE-2015-4291

Cisco IOS XE 2.x before 2.4.3 and 2.5.x before 2.5.1 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Proc…

Mitigation only
Fix from $1,950 2015-08-01
Anyconnect Secure Mobility Client MEDIUM 6.4
CVE-2015-4289

Directory traversal vulnerability in Cisco AnyConnect Secure Mobility Client 4.0(2049) allows remote head-end systems to write to arbitrary files via…

Mitigation only
Fix from $1,600 2015-08-01
Ios Xe MEDIUM 5.0
CVE-2015-4293

The packet-reassembly implementation in Cisco IOS XE 3.13S and earlier allows remote attackers to cause a denial of service (CPU consumption or packe…

Mitigation only
Fix from $1,600 2015-07-30
Unified Computing System Central Software MEDIUM 5.0
CVE-2015-4286

The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCu…

Mitigation only
Fix from $1,600 2015-07-29
Firepower Extensible Operating System MEDIUM 5.0
CVE-2015-4287

Cisco Firepower Extensible Operating System 1.1(1.86) on Firepower 9000 devices allows remote attackers to bypass intended access restrictions and ob…

Mitigation only
Fix from $1,600 2015-07-29
iOS HIGH 7.1
CVE-2015-0681

The TFTP server in Cisco IOS 12.2(44)SQ1, 12.2(33)XN1, 12.4(25e)JAM1, 12.4(25e)JAO5m, 12.4(23)JY, 15.0(2)ED1, 15.0(2)EY3, 15.1(3)SVF4a, and 15.2(2)JB…

Mitigation only
Fix from $1,950 2015-07-24
Unified Meetingplace Web Conferencing HIGH 10.0
CVE-2015-4262

The password-change feature in Cisco Unified MeetingPlace Web Conferencing before 8.5(5) MR3 and 8.6 before 8.6(2) does not check the session ID or r…

Mitigation only
Fix from $1,950 2015-07-24
Application Policy Infrastructure Controller \(apic\) HIGH 9.0
CVE-2015-4235

Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3o) and 1.1 before 1.1(1j) and Nexus 9000 ACI devices with…

Mitigation only
Fix from $1,950 2015-07-24
Ios Xr MEDIUM 5.0
CVE-2015-4285

The Local Packet Transport Services (LPTS) implementation in Cisco IOS XR 5.1.2, 5.1.3, 5.2.1, and 5.2.2 on ASR9k devices makes incorrect decisions a…

Mitigation only
Fix from $1,600 2015-07-23
Ios Xr MEDIUM 5.0
CVE-2015-4284

The Concurrent Data Management Replication process in Cisco IOS XR 5.3.0 on ASR 9000 devices allows remote attackers to cause a denial of service (BG…

Mitigation only
Fix from $1,600 2015-07-22
Webex Meetings Server MEDIUM 6.8
CVE-2015-4281

Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.5 MR1 allows remote attackers to hijack the authentication of arbitr…

Mitigation only
Fix from $1,600 2015-07-22
Videoscape Policy Resource Manager HIGH 7.8
CVE-2015-4283

Cisco Videoscape Policy Resource Manager (PRM) 3.5.4 allows remote attackers to cause a denial of service (CPU and memory consumption, and TCP servic…

Mitigation only
Fix from $1,950 2015-07-21
Unified Computing System HIGH 7.2
CVE-2015-4279

The Manager component in Cisco Unified Computing System (UCS) 2.2(3b) on B Blade Server devices allows local users to gain privileges for executing a…

Mitigation only
Fix from $1,950 2015-07-20
Prime Collaboration MEDIUM 5.0
CVE-2015-4280

Cisco Prime Collaboration Assurance 10.0 allows remote attackers to cause a denial of service (HTTP service outage) via a crafted HTTP request, aka B…

No fix yet
Fix from $1,600 2015-07-18
Webex Meetings Server MEDIUM 6.5
CVE-2015-4276

Cisco WebEx Meetings Server 2.5MR1 allows remote authenticated users to execute arbitrary code via a crafted command parameter, aka Bug ID CSCus56138.

Mitigation only
Fix from $1,600 2015-07-16
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-4275

The Packet Data Network Gateway (aka PGW) component on Cisco ASR 5000 devices with software 18.0.0.59167 and 18.0.0.59211 allows remote attackers to …

Mitigation only
Fix from $1,600 2015-07-16
Unified Intelligence Center MEDIUM 6.8
CVE-2015-4274

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Unified Intelligence Center 10.0(1) and 10.6(1) allows remote attackers…

Mitigation only
Fix from $1,600 2015-07-16
Identity Services Engine Software MEDIUM 6.8
CVE-2015-4267

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Identity Services Engine (ISE) 1.2(0.793), 1.3(0.876), 1.4(0.109), 2.0(…

Mitigation only
Fix from $1,600 2015-07-15
Telepresence Tc Software MEDIUM 6.4
CVE-2015-4271

Cisco TelePresence TC before 7.3.4 on Integrator C devices allows remote attackers to bypass authentication via vectors involving multiple request pa…

Mitigation only
Fix from $1,600 2015-07-15
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-4273

The Packet Data Network Gateway (aka PGW) component on Cisco ASR 5000 devices with software 15.0(912), 15.0(935), and 15.0(938) allows remote attacke…

Mitigation only
Fix from $1,600 2015-07-15
Telepresence Advanced Media Gateway MEDIUM 6.8
CVE-2015-4254

Cross-site request forgery (CSRF) vulnerability on Cisco TelePresence Advanced Media Gateway devices with software 1.1(1.40) allows remote attackers …

Mitigation only
Fix from $1,600 2015-07-10
Asr 5000 Series Software HIGH 7.2
CVE-2015-4244

The boot implementation on Cisco ASR 5000 and 5500 devices with software 14.0 allows local users to execute arbitrary Linux commands by leveraging ad…

Mitigation only
Fix from $1,950 2015-07-10
Telepresence Mse 8000 Series MEDIUM 6.8
CVE-2015-4258

Cross-site request forgery (CSRF) vulnerability on Cisco TelePresence MSE 8000 devices allows remote attackers to hijack the authentication of arbitr…

Mitigation only
Fix from $1,600 2015-07-10