Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webex Meeting Center MEDIUM 5.0
CVE-2015-4207

Cisco WebEx Meeting Center places a meeting's access number in a URL, which allows remote attackers to obtain sensitive information and bypass intend…

Mitigation only
Fix from $1,600 2015-06-23
Ios Xr MEDIUM 5.7
CVE-2015-4205

Cisco IOS XR 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (NPU chip reset or line-card reload) by sending crafted I…

Mitigation only
Fix from $1,600 2015-06-23
iOS MEDIUM 5.4
CVE-2015-4203

Race condition in Cisco IOS 12.2SCH in the Performance Routing Engine (PRE) module on uBR10000 devices, when NetFlow and an MPLS IPv6 VPN are configu…

Mitigation only
Fix from $1,600 2015-06-23
Data Center Analytics Framework MEDIUM 6.8
CVE-2015-4189

Cross-site request forgery (CSRF) vulnerability in Cisco Data Center Analytics Framework (DCAF) 1.4 allows remote attackers to hijack the authenticat…

Mitigation only
Fix from $1,600 2015-06-23
Cisco Ios MEDIUM 6.8
CVE-2015-4204

Memory leak in Cisco IOS 12.2 in the Performance Routing Engine (PRE) module on uBR10000 devices allows remote authenticated users to cause a denial …

Mitigation only
Fix from $1,600 2015-06-23
iOS HIGH 7.8
CVE-2015-4200

Memory leak in the IPv6-to-IPv4 functionality in Cisco IOS 15.3S in the Performance Routing Engine (PRE) module on UBR devices allows remote attacker…

Mitigation only
Fix from $1,950 2015-06-23
iOS MEDIUM 5.0
CVE-2015-4202

Cisco IOS 12.2SCH on uBR10000 router Cable Modem Termination Systems (CMTS) does not properly restrict access to the IP Detail Record (IPDR) service,…

Mitigation only
Fix from $1,600 2015-06-20
Nx Os MEDIUM 6.1
CVE-2015-4197

Cisco NX-OS 5.2(5) on Nexus 7000 devices allows remote attackers to cause a denial of service (device crash) by sending a malformed LLDP packet on th…

Mitigation only
Fix from $1,600 2015-06-20
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-4201

The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 17.2.0.59184 and 18.0.L0.59219 allows …

Mitigation only
Fix from $1,600 2015-06-20
Webex Meeting Center MEDIUM 5.0
CVE-2015-4194

The web-based administrative interface in Cisco WebEx Meeting Center provides different error messages for failed login attempts depending on whether…

Mitigation only
Fix from $1,600 2015-06-19
Ios Xr MEDIUM 5.0
CVE-2015-4191

Cisco IOS XR 5.2.1 allows remote attackers to cause a denial of service (ipv6_io service reload) via a malformed IPv6 packet, aka Bug ID CSCuq95565.

Mitigation only
Fix from $1,600 2015-06-19
Prime Collaboration MEDIUM 5.0
CVE-2015-4188

SQL injection vulnerability in the Manager interface in Cisco Prime Collaboration 10.5(1) allows remote attackers to execute arbitrary SQL commands v…

Mitigation only
Fix from $1,600 2015-06-17
Virtualization Experience Client 6000 Series Firmware HIGH 7.2
CVE-2015-4186

The diagnostics subsystem in the administrative web interface on Cisco Virtualization Experience (aka VXC) Client 6215 devices with firmware 11.2(27.…

Mitigation only
Fix from $1,950 2015-06-17
Unified Computing System HIGH 7.2
CVE-2015-4183

Cisco UCS Central Software 1.2(1a) allows local users to gain privileges for OS command execution via a crafted CLI parameter, aka Bug ID CSCut32795.

Mitigation only
Fix from $1,950 2015-06-17
iOS MEDIUM 6.9
CVE-2015-4185

The TCL interpreter in Cisco IOS 15.2 does not properly maintain the vty state, which allows local users to gain privileges by starting a session ver…

Mitigation only
Fix from $1,600 2015-06-13
Email Security Appliance MEDIUM 5.0
CVE-2015-4184

The anti-spam scanner on Cisco Email Security Appliance (ESA) devices 3.3.1-09, 7.5.1-gpl-022, and 8.5.6-074 allows remote attackers to bypass intend…

Mitigation only
Fix from $1,600 2015-06-13
Identity Services Engine Software MEDIUM 5.5
CVE-2015-4182

The administrative web interface in Cisco Identity Services Engine (ISE) before 1.3 allows remote authenticated users to bypass intended access restr…

Mitigation only
Fix from $1,600 2015-06-12
Ios Xr MEDIUM 5.0
CVE-2015-0776

telnetd in Cisco IOS XR 5.0.1 on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (device reload) via a m…

Mitigation only
Fix from $1,600 2015-06-12
Nx Os MEDIUM 5.0
CVE-2015-0775

The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5…

Mitigation only
Fix from $1,600 2015-06-12
Ios Xr Software HIGH 7.8
CVE-2015-0769

Cisco IOS XR 4.0.1 through 4.2.0 for CRS-3 Carrier Routing System allows remote attackers to cause a denial of service (NPU ASIC scan and line-card r…

Mitigation only
Fix from $1,950 2015-06-12
Telepresence Video Communication Server Software HIGH 7.1
CVE-2015-0772

Cisco TelePresence Video Communication Server (VCS) X8.5RC4 allows remote attackers to cause a denial of service (CPU consumption or device outage) v…

Mitigation only
Fix from $1,950 2015-06-12
Prime Network Control System MEDIUM 6.5
CVE-2015-0768

The Device Work Center (DWC) component in Cisco Prime Network Control System (NCS) 2.1(0.0.85), 2.2(0.0.58), and 2.2(0.0.69) does not properly implem…

Mitigation only
Fix from $1,600 2015-06-12
Firesight System Software MEDIUM 5.5
CVE-2015-0773

Cisco FireSIGHT System Software 5.3.1.3 and 6.0.0 allows remote authenticated users to delete an arbitrary user's dashboard via a modified VPN deleti…

Mitigation only
Fix from $1,600 2015-06-12
iOS MEDIUM 6.3
CVE-2015-0771

The IKE implementation in the WS-IPSEC-3 service module in Cisco IOS 12.2 on Catalyst 6500 devices allows remote authenticated users to cause a denia…

Mitigation only
Fix from $1,600 2015-06-12
Telepresence Tc Software MEDIUM 5.0
CVE-2015-0770

CRLF injection vulnerability in Cisco TelePresence TC 6.x before 6.3.4 and 7.x before 7.3.3 on Integrator C SX20 devices allows remote attackers to i…

Mitigation only
Fix from $1,600 2015-06-07
Edge 340 Firmware HIGH 7.2
CVE-2015-0767

Cisco Edge 300 software 1.0 and 1.1 on Edge 340 devices allows local users to obtain root privileges via unspecified commands, aka Bug ID CSCur18132.

Mitigation only
Fix from $1,950 2015-06-07
Ons 15454 System Software MEDIUM 5.0
CVE-2015-0765

Cisco ONS 15454 System Software 10.30 and 10.301 allows remote attackers to cause a denial of service (tNetTask CPU consumption or card reset) via a …

Mitigation only
Fix from $1,600 2015-06-04
Unified Meetingplace MEDIUM 5.0
CVE-2015-0764

Cisco Unified MeetingPlace 8.6(1.9) allows remote attackers to read arbitrary files via a crafted resource request, aka Bug ID CSCus95603.

Mitigation only
Fix from $1,600 2015-06-04
Unified Meetingplace MEDIUM 5.0
CVE-2015-0763

Cisco Unified MeetingPlace 8.6(1.2) does not properly validate session IDs in http URLs, which allows remote attackers to obtain sensitive session in…

Mitigation only
Fix from $1,600 2015-06-04
Headend Digital Broadband Delivery System MEDIUM 6.8
CVE-2015-0759

Cross-site request forgery (CSRF) vulnerability in Cisco Headend Digital Broadband Delivery System allows remote attackers to hijack the authenticati…

Mitigation only
Fix from $1,600 2015-06-02