Vulnerability index

Browse CVEs

3,245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Webex Recording Format Player HIGH 9.3
CVE-2012-3938EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3936EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2012-10-25
10008 Router HIGH 7.8
CVE-2012-4620

Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4621

The Device Sensor feature in Cisco IOS 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via a DHCP packet, aka …

Mitigation only
Fix from $1,950 2012-09-27
Ios Xe HIGH 7.8
CVE-2012-4623

The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x, 3.1.xS before 3.1.4S, 3.1.xSG and 3.2.xSG befo…

Mitigation only
Fix from $1,950 2012-09-27
Ios Xe HIGH 7.1
CVE-2012-4622

Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, when a Supervisor Engine 7L-E card is installed, allows remote attackers to cau…

Mitigation only
Fix from $1,950 2012-09-27
Unified Communications Manager HIGH 7.8
CVE-2012-3949

The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1;…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4618

The SIP ALG feature in the NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (de…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4619

The NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via transi…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.1
CVE-2012-3950

The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories a…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.1
CVE-2012-4617

The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2012-09-27
Secure Desktop HIGH 9.3
CVE-2012-4655

The WebLaunch feature in Cisco Secure Desktop before 3.6.6020 does not properly validate binaries that are received by the downloader process, which …

Mitigation only
Fix from $1,950 2012-09-24
Identity Services Engine Software MEDIUM 6.8
CVE-2012-3908

Multiple cross-site request forgery (CSRF) vulnerabilities in the ISE Administrator user interface (aka the Apache Tomcat interface) on Cisco Identit…

Mitigation only
Fix from $1,600 2012-09-16
iOS MEDIUM 5.0
CVE-2012-3915

The DMVPN tunnel implementation in Cisco IOS 15.2 allows remote attackers to cause a denial of service (persistent IKE state) via a large volume of h…

Mitigation only
Fix from $1,600 2012-09-16
Application Control Engine Module MEDIUM 5.0
CVE-2012-3919

The Cisco Application Control Engine (ACE) module 3.0 for Cisco Catalyst switches and Cisco routers does not properly monitor Load Balancer (LB) queu…

Mitigation only
Fix from $1,600 2012-09-16
Anyconnect Secure Mobility Client HIGH 9.3
CVE-2012-3088

Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495, and 3.2.x, does not check whether an HTTP request originally contains ScanSafe header…

Mitigation only
Fix from $1,950 2012-09-16
Unity Connection HIGH 7.8
CVE-2012-3060

Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka B…

Mitigation only
Fix from $1,950 2012-09-16
iOS HIGH 7.8
CVE-2012-3079

Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957.

Mitigation only
Fix from $1,950 2012-09-16
Vpn Client MEDIUM 6.9
CVE-2012-3052

Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working direc…

Mitigation only
Fix from $1,600 2012-09-16
iOS MEDIUM 6.3
CVE-2012-3893

The FlexVPN implementation in Cisco IOS 15.2 and 15.3 allows remote authenticated users to cause a denial of service (spoke crash) via spoke-to-spoke…

Mitigation only
Fix from $1,600 2012-09-16
iOS MEDIUM 6.3
CVE-2012-3895

Cisco IOS 15.0 through 15.3 allows remote authenticated users to cause a denial of service (device crash) via an MVPNv6 update, aka Bug ID CSCty89224.

Mitigation only
Fix from $1,600 2012-09-16
Nx Os MEDIUM 6.1
CVE-2012-3051

Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process crash or packet loss) via a large…

Mitigation only
Fix from $1,600 2012-09-16
Anyconnect Secure Mobility Client MEDIUM 5.0
CVE-2012-3094

The VPN downloader in the download_install component in Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495 on Linux accepts arbitrary X.5…

Mitigation only
Fix from $1,600 2012-09-16
Intrusion Prevention System MEDIUM 5.0
CVE-2012-3899

sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,600 2012-09-16
Intrusion Prevention System MEDIUM 5.0
CVE-2012-3901

The updateTime function in sensorApp on Cisco IPS 4200 series sensors 7.0 and 7.1 allows remote attackers to cause a denial of service (process crash…

Mitigation only
Fix from $1,600 2012-09-16
Nx Os MEDIUM 5.0
CVE-2012-1357

The igmp_snoop_orib_fill_source_update function in the IGMP process in NX-OS 5.0 and 5.1 on Cisco Nexus 5000 series switches allows remote attackers …

Mitigation only
Fix from $1,600 2012-08-06
iOS HIGH 7.8
CVE-2012-1350

Cisco IOS 12.3 and 12.4 on Aironet access points allows remote attackers to cause a denial of service (radio-interface input-queue hang) via IAPP 0x3…

Mitigation only
Fix from $1,950 2012-08-06
Emergency Responder MEDIUM 5.0
CVE-2012-1346

Cisco Emergency Responder 8.6 and 9.2 allows remote attackers to cause a denial of service (CPU consumption) by sending malformed UDP packets to the …

Mitigation only
Fix from $1,600 2012-08-06
Wide Area Application Services MEDIUM 5.0
CVE-2012-1348

Cisco Wide Area Application Services (WAAS) appliances with software 4.4, 5.0, and 5.1 include a one-way hash of a password within output text, which…

Mitigation only
Fix from $1,600 2012-08-06
Anyconnect Secure Mobility Client MEDIUM 5.8
CVE-2012-2499

The IPsec implementation in Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate…

Mitigation only
Fix from $1,600 2012-08-06