Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ips Sensor Software HIGH 7.1
CVE-2015-0631

Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by m…

Mitigation only
Fix from $1,950 2015-02-21
Ios Xr HIGH 7.1
CVE-2015-0618

Cisco IOS XR 5.0.1 and 5.2.1 on Network Convergence System (NCS) 6000 devices and 5.1.3 and 5.1.4 on Carrier Routing System X (CRS-X) devices allows …

Mitigation only
Fix from $1,950 2015-02-21
Web Security Appliance MEDIUM 5.0
CVE-2015-0628

The proxy engine on Cisco Web Security Appliance (WSA) devices allows remote attackers to bypass intended proxying restrictions via a malformed HTTP …

Mitigation only
Fix from $1,600 2015-02-20
Desktop Collaboration Experience Dx650 HIGH 7.2
CVE-2015-0584

The image-upgrade implementation on Cisco Desktop Collaboration Experience (aka Collaboration Desk Experience or DX) DX650 endpoints allows local use…

Mitigation only
Fix from $1,950 2015-02-20
Wireless Lan Controller HIGH 7.1
CVE-2015-0622

The Wireless Intrusion Detection (aka WIDS) functionality on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,950 2015-02-19
Telepresence Mcu 4500 Series Software HIGH 7.8
CVE-2015-0621

Cisco TelePresence MCU devices with software 4.5(1.45) allow remote attackers to cause a denial of service (device reload) via an unspecified series …

Mitigation only
Fix from $1,950 2015-02-18
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-0617

Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices allow remote attackers to cause a denial of service (CPU consumption and SNMP outa…

Mitigation only
Fix from $1,600 2015-02-18
iOS HIGH 7.1
CVE-2015-0593

The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage session-object structures, which allows remote at…

Mitigation only
Fix from $1,950 2015-02-13
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2015-0619

Memory leak in the embedded web server in the WebVPN subsystem in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to cause a…

Mitigation only
Fix from $1,600 2015-02-12
Telepresence System Software Ix MEDIUM 6.5
CVE-2015-0611

The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-…

Mitigation only
Fix from $1,600 2015-02-12
Prime Infrastructure MEDIUM 6.8
CVE-2014-2152

Cross-site request forgery (CSRF) vulnerability in the INSERT page in Cisco Prime Infrastructure (PI) allows remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2015-02-12
Webex Meetings Server HIGH 9.0
CVE-2015-0589

The administrative web interface in Cisco WebEx Meetings Server 1.0 through 1.5 allows remote authenticated users to execute arbitrary OS commands wi…

Mitigation only
Fix from $1,950 2015-02-07
Unified Ip Phones 9971 Firmware MEDIUM 5.0
CVE-2015-0604

The web framework on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to upload files to arbitrary locations on…

Mitigation only
Fix from $1,600 2015-02-07
Unified Communications Manager MEDIUM 6.8
CVE-2014-8008EPSS 8%

Absolute path traversal vulnerability in the Real-Time Monitoring Tool (RTMT) API in Cisco Unified Communications Manager (CUCM) allows remote authen…

Mitigation only
Fix from $1,600 2015-01-22
Webex Meeting Center MEDIUM 5.0
CVE-2015-0590

Cisco WebEx Meeting Center allows remote attackers to activate disabled meeting attributes, and consequently obtain sensitive information, by providi…

Mitigation only
Fix from $1,600 2015-01-17
Unified Communications Domain Manager MEDIUM 5.0
CVE-2015-0591

Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to cause a denial of service (daemon hang and GUI outage) via a flood o…

Mitigation only
Fix from $1,600 2015-01-15
Unified Communications Domain Manager MEDIUM 6.8
CVE-2015-0588

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to hijack the authen…

Mitigation only
Fix from $1,600 2015-01-15
Webex Meetings Server MEDIUM 5.0
CVE-2014-8034

Cisco WebEx Meetings Server 1.5 presents the same CAPTCHA challenge for each login attempt, which makes it easier for remote attackers to obtain acce…

Mitigation only
Fix from $1,600 2015-01-15
Webex Meeting Center MEDIUM 5.0
CVE-2015-0583

Cisco WebEx Meeting Center does not properly restrict the content of URLs, which allows remote attackers to obtain sensitive information via vectors …

Mitigation only
Fix from $1,600 2015-01-14
Telepresence Video Communication Server MEDIUM 5.0
CVE-2015-0579

Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway allow remote attackers to cause a denial of service (memory and CPU consumpt…

Mitigation only
Fix from $1,600 2015-01-14
Adaptive Security Appliance Software MEDIUM 5.7
CVE-2015-0578

Cisco Adaptive Security Appliance (ASA) Software, when a DHCPv6 relay is configured, allows remote attackers to cause a denial of service (device rel…

Mitigation only
Fix from $1,600 2015-01-14
Anyconnect Secure Mobility Client MEDIUM 5.0
CVE-2014-3314

Cisco AnyConnect on Android and OS X does not properly verify the host type, which allows remote attackers to spoof authentication forms and possibly…

Mitigation only
Fix from $1,600 2015-01-14
Nx Os MEDIUM 5.0
CVE-2015-0582

The High Availability (HA) subsystem in Cisco NX-OS on MDS 9000 devices allows remote attackers to cause a denial of service via crafted traffic, aka…

Mitigation only
Fix from $1,600 2015-01-10
Webex Meetings Server MEDIUM 5.0
CVE-2014-8035

The web framework in Cisco WebEx Meetings Server produces different returned messages for URL requests depending on whether a username exists, which …

Mitigation only
Fix from $1,600 2015-01-10
Webex Meetings Server MEDIUM 5.0
CVE-2014-8036

The outlookpa component in Cisco WebEx Meetings Server does not properly validate API input, which allows remote attackers to modify a meeting's invi…

Mitigation only
Fix from $1,600 2015-01-10
Unified Communications Domain Manager MEDIUM 5.0
CVE-2014-8020

Cisco Unified Communication Domain Manager Platform Software allows remote attackers to cause a denial of service (CPU consumption, and performance d…

Mitigation only
Fix from $1,600 2015-01-10
Webex Meetings Server MEDIUM 5.0
CVE-2014-8033

The play/modules component in Cisco WebEx Meetings Server allows remote attackers to obtain administrator access via crafted API requests, aka Bug ID…

Mitigation only
Fix from $1,600 2015-01-09
Webex Meetings Server MEDIUM 6.8
CVE-2014-8031

Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server allows remote attackers to hijack the authentication of arbitrary user…

Mitigation only
Fix from $1,600 2015-01-09
Secure Access Control System MEDIUM 5.8
CVE-2014-8029

Open redirect vulnerability in the web interface in Cisco Secure Access Control System (ACS) allows remote attackers to redirect users to arbitrary w…

Mitigation only
Fix from $1,600 2015-01-09
Secure Access Control System MEDIUM 6.5
CVE-2014-8027

The RBAC component in Cisco Secure Access Control System (ACS) allows remote authenticated users to obtain Network Device Administrator privileges fo…

Mitigation only
Fix from $1,600 2015-01-09