Vulnerability index

Browse CVEs

3,245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Secure Access Control System MEDIUM 5.0
CVE-2013-5470

Cisco Secure Access Control System (ACS) does not properly handle requests to read from the TACACS+ socket, which allows remote attackers to cause a …

Mitigation only
Fix from $1,600 2013-09-04
Mobility Services Engine MEDIUM 5.0
CVE-2013-3469

Cisco Mobility Services Engine does not properly set up the Oracle SSL service, which allows remote attackers to obtain an unauthenticated session to…

Mitigation only
Fix from $1,600 2013-09-04
iOS HIGH 7.1
CVE-2013-5469

The TCP implementation in Cisco IOS does not properly implement the transitions from the ESTABLISHED state to the CLOSED state, which allows remote a…

Mitigation only
Fix from $1,950 2013-08-30
Wireless Lan Controller MEDIUM 6.3
CVE-2013-3474

The Web Administrator Interface on Cisco Wireless LAN Controller (WLC) devices allows remote authenticated users to cause a denial of service (device…

Mitigation only
Fix from $1,600 2013-08-30
Ios Xr MEDIUM 5.0
CVE-2013-3470

The RIP process in Cisco IOS XR allows remote attackers to cause a denial of service (process crash) via a crafted version-2 RIP packet, aka Bug ID C…

Mitigation only
Fix from $1,600 2013-08-30
Unified Ip Phone 8945 HIGH 7.8
CVE-2013-3468

The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka…

Mitigation only
Fix from $1,950 2013-08-29
Unified Communications Manager MEDIUM 6.8
CVE-2013-3472

Cross-site request forgery (CSRF) vulnerability in the Enterprise License Manager (ELM) in Cisco Unified Communications Manager (CM) allows remote at…

Mitigation only
Fix from $1,600 2013-08-29
Unified Communications Manager HIGH 8.5
CVE-2013-3462

Buffer overflow in Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6, 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and…

Mitigation only
Fix from $1,950 2013-08-25
Prime Central For Hosted Collaboration Solution Assurance HIGH 7.8
CVE-2013-3387

Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service …

Mitigation only
Fix from $1,950 2013-08-25
Prime Central For Hosted Collaboration Solution Assurance HIGH 7.8
CVE-2013-3388

Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service …

Mitigation only
Fix from $1,950 2013-08-25
Prime Central For Hosted Collaboration Solution Assurance HIGH 7.8
CVE-2013-3389

Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service …

Mitigation only
Fix from $1,950 2013-08-25
Prime Central For Hosted Collaboration Solution Assurance HIGH 7.8
CVE-2013-3390

Memory leak in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a den…

Mitigation only
Fix from $1,950 2013-08-25
Unified Communications Manager HIGH 7.8
CVE-2013-3459

Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6a does not properly handle errors, which allows remote attackers to cause a…

Mitigation only
Fix from $1,950 2013-08-25
Unified Communications Manager HIGH 7.8
CVE-2013-3460

Memory leak in Cisco Unified Communications Manager (Unified CM) 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(1) allows remo…

Mitigation only
Fix from $1,950 2013-08-25
Unified Communications Manager HIGH 7.1
CVE-2013-3461

Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SI…

Mitigation only
Fix from $1,950 2013-08-25
Finesse MEDIUM 5.0
CVE-2013-3455

Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka Bug ID CSCug16732.

Mitigation only
Fix from $1,600 2013-08-12
Finesse MEDIUM 5.0
CVE-2013-3457

Absolute path traversal vulnerability in the web interface in Cisco Finesse allows remote attackers to read directory contents via a direct request t…

Mitigation only
Fix from $1,600 2013-08-12
Unified Communications Manager MEDIUM 6.8
CVE-2013-3450

Cross-site request forgery (CSRF) vulnerability in the User WebDialer page in Cisco Unified Communications Manager (Unified CM) allows remote attacke…

Mitigation only
Fix from $1,600 2013-08-05
Unified Communications Manager MEDIUM 6.8
CVE-2013-3451

Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Unified Communications Manager (Unified CM) allow remote attackers to hijack the …

Mitigation only
Fix from $1,600 2013-08-05
iOS MEDIUM 5.8
CVE-2013-0149

The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9.1, FWSM, NX-OS, an…

Mitigation only
Fix from $1,600 2013-08-05
Unified Computing System MEDIUM 5.0
CVE-2013-1190

The C-Series Rack Server component 1.4 in Cisco Unified Computing System (UCS) does not properly restrict inbound access to ports, which allows remot…

Mitigation only
Fix from $1,600 2013-08-02
Wide Area Application Services HIGH 10.0
CVE-2013-3443EPSS 6%

The web service framework in Cisco WAAS Software 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1 in a Central Manager (CM) con…

Mitigation only
Fix from $1,950 2013-08-01
Wide Area Application Services HIGH 9.0
CVE-2013-3444

The web framework in Cisco WAAS Software before 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1; Cisco ACNS Software 4.x and 5…

Mitigation only
Fix from $1,950 2013-08-01
Vc240 Network Bullet Camera MEDIUM 5.0
CVE-2012-3913

The Cisco VC220 and VC240 cameras allow remote attackers to cause a denial of service (WebUI outage) via crafted packets, aka Bug IDs CSCtf73188, CSC…

Mitigation only
Fix from $1,600 2013-08-01
Identity Services Engine MEDIUM 5.0
CVE-2013-3445

The firewall subsystem in Cisco Identity Services Engine has an incorrect rule for open ports, which allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,600 2013-07-29
Unified Meetingplace Web Conferencing MEDIUM 5.0
CVE-2013-3438

The web framework in the server in Cisco Unified MeetingPlace Web Conferencing allows remote attackers to bypass intended access restrictions and rea…

No fix yet
Fix from $1,600 2013-07-24
Aironet 3600 MEDIUM 5.4
CVE-2013-3441

Cisco Aironet 3600 access points allow remote attackers to cause a denial of service (memory corruption and device crash) by disrupting Cisco Wireles…

Mitigation only
Fix from $1,600 2013-07-23
Unified Operations Manager MEDIUM 6.5
CVE-2013-3437

SQL injection vulnerability in the management application in Cisco Unified Operations Manager allows remote authenticated users to execute arbitrary …

Mitigation only
Fix from $1,600 2013-07-23
Unified Ip Conference Station 7937g Firmware MEDIUM 5.0
CVE-2013-3435

The Cisco Unified IP Conference Station 7937G allows remote attackers to cause a denial of service (networking outage) via a flood of TCP packets, ak…

Mitigation only
Fix from $1,600 2013-07-23
iOS MEDIUM 5.0
CVE-2013-3436

The default configuration of the Group Encrypted Transport VPN (GET VPN) feature on Cisco IOS uses an improper mechanism for enabling Group Domain of…

Mitigation only
Fix from $1,600 2013-07-19