Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webex Meeting Center MEDIUM 5.0
CVE-2013-6970

Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages within server responses, aka Bug…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6972

Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conference attendance, by reading…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6709

The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed, which allows remote attacker…

Mitigation only
Fix from $1,600 2013-12-14
Unified Communications Manager HIGH 7.3
CVE-2013-7030EPSS 5%

The TFTP service in Cisco Unified Communications Manager (aka CUCM or Unified CM) allows remote attackers to obtain sensitive information from a phon…

No fix yet
Fix from $1,950 2013-12-12
Scientific Atlanta Dpr\/epr2320 Firmware HIGH 8.3
CVE-2013-7043

Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Scientific Atlanta DPR2320R2 routers with software 2.0.2r1262-090417 allow remote…

No fix yet
Fix from $1,950 2013-12-10
Cloud Portal MEDIUM 5.0
CVE-2013-6708

Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889.

Mitigation only
Fix from $1,600 2013-12-10
Ons 15454 HIGH 7.1
CVE-2013-6703

The TLS/SSLv3 module on Cisco ONS 15454 controller cards allows remote attackers to cause a denial of service (card reset) via crafted (1) TLS or (2)…

Mitigation only
Fix from $1,950 2013-12-03
Ios Xe HIGH 7.1
CVE-2013-6704

Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to cause a denial of service (memory consumption) via …

Mitigation only
Fix from $1,950 2013-12-03
iOS MEDIUM 6.1
CVE-2013-6705

The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (IPDT AVL corruption and device re…

Mitigation only
Fix from $1,600 2013-12-03
Adaptive Security Appliance Software HIGH 7.1
CVE-2013-6696

Cisco Adaptive Security Appliance (ASA) Software does not properly handle errors during the processing of DNS responses, which allows remote attacker…

Mitigation only
Fix from $1,950 2013-12-02
Ios Xe MEDIUM 5.4
CVE-2013-6706

The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS …

Mitigation only
Fix from $1,600 2013-11-29
Ios Xr MEDIUM 5.0
CVE-2013-6700

The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload) via a request for an unspecified MIB, aka Bug I…

Mitigation only
Fix from $1,600 2013-11-29
Wireless Lan Controller MEDIUM 5.0
CVE-2013-6699

The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller (WLC) devices allows remote …

Mitigation only
Fix from $1,600 2013-11-22
Service Portal MEDIUM 6.8
CVE-2013-3406

The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Services Portal 9.4(1) allows remo…

Mitigation only
Fix from $1,600 2013-11-18
Wireless Lan Controller MEDIUM 6.8
CVE-2013-6684

The web framework on Cisco Wireless LAN Controller (WLC) devices does not properly validate configuration parameters, which allows remote authenticat…

Mitigation only
Fix from $1,600 2013-11-13
Unified Ip Phone Firmware MEDIUM 6.6
CVE-2013-6685

The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block devices, which allows local users to gain privile…

Mitigation only
Fix from $1,600 2013-11-13
Nx Os MEDIUM 6.1
CVE-2013-6683

The IPv6 implementation in Cisco NX-OS does not properly handle neighbor-table adjacencies, which allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $1,600 2013-11-13
Telepresence Vx Clinical Assistant HIGH 10.0
CVE-2013-5558

The WIL-A module in Cisco TelePresence VX Clinical Assistant 1.2 before 1.21 changes the admin password to an empty password upon a reboot, which mak…

Mitigation only
Fix from $1,950 2013-11-08
iOS HIGH 7.8
CVE-2013-5553

Multiple memory leaks in Cisco IOS 15.1 before 15.1(4)M7 allow remote attackers to cause a denial of service (memory consumption or device reload) by…

Mitigation only
Fix from $1,950 2013-11-08
Prime Central For Hosted Collaboration Solution MEDIUM 5.0
CVE-2013-5562

The ITM web server in Cisco Prime Central for Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (temporary HTT…

Mitigation only
Fix from $1,600 2013-11-06
Anyconnect Secure Mobility Client MEDIUM 6.8
CVE-2013-5559

Buffer overflow in the Active Template Library (ATL) framework in the VPNAPI COM module in Cisco AnyConnect Secure Mobility Client 2.x allows user-as…

Mitigation only
Fix from $1,600 2013-11-04
Adaptive Security Appliance Cx Context Aware Security Software MEDIUM 5.0
CVE-2013-5561

The Safe Search enforcement feature in Cisco Adaptive Security Appliance (ASA) CX Context-Aware Security Software does not properly perform filtering…

Mitigation only
Fix from $1,600 2013-11-04
Prime Central For Hosted Collaboration Solution MEDIUM 5.0
CVE-2013-5564

The Java process in the Impact server in Cisco Prime Central for Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,600 2013-11-04
Adaptive Security Appliance Software MEDIUM 6.3
CVE-2013-5551

Cisco Adaptive Security Appliance (ASA) Software, when certain same-security-traffic and management-access options are enabled, allows remote authent…

Mitigation only
Fix from $1,600 2013-11-01
Ios Xe HIGH 7.8
CVE-2013-5543

Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via mal…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5545

The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5546

The TCP reassembly feature in Cisco IOS XE 3.7 before 3.7.3S and 3.8 before 3.8.1S on 1000 ASR devices allows remote attackers to cause a denial of s…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xe HIGH 7.8
CVE-2013-5547

Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending malformed EoGRE pa…

Mitigation only
Fix from $1,950 2013-10-31
Ios Xr HIGH 7.1
CVE-2013-5549

Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which…

Mitigation only
Fix from $1,950 2013-10-25
Identity Services Engine Software MEDIUM 5.0
CVE-2013-5531

Cisco Identity Services Engine (ISE) 1.x before 1.1.1 allows remote attackers to bypass authentication, and read support-bundle configuration and cre…

Mitigation only
Fix from $1,600 2013-10-25