Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2016-1383 Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consump… Web Security Appliance \(wsa\) Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1382 Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allo… Web Security Appliance \(wsa\) Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1381 Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of se… Web Security Appliance Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1380 Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) … Web Security Appliance Mitigation only Fix from $1,9502016-05-25 HIGH 7.5 CVE-2016-1402 The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorizati… Identity Services Engine Software Mitigation only Fix from $1,9502016-05-21 MEDIUM 6.1 CVE-2016-1401 Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified Computing System (UCS) Central Software 1.4(1a) allows remote a… Unified Computing System Central Software Mitigation only Fix from $1,6002016-05-21 HIGH 7.5 CVE-2016-1399 The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 1… iOS Mitigation only Fix from $1,9502016-05-14 HIGH 7.1 CVE-2016-1393 SQL injection vulnerability in Cisco Cloud Network Automation Provisioner (CNAP) 1.0 and 1.1 allows remote authenticated users to execute arbitrary S… Cloud Network Automation Provisioner Mitigation only Fix from $1,9502016-05-12 HIGH 7.4 CVE-2016-1392 Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to redirect users to arbitrary … Prime Collaboration Assurance Mitigation only Fix from $1,9502016-05-05 CRITICAL 9.8 CVE-2016-1387 The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8… Telepresence Tc Software Mitigation only Fix from $2,3002016-05-05 HIGH 8.6 CVE-2016-1373 The gadgets-integration API in Cisco Finesse 8.5(1) through 8.5(5), 8.6(1), 9.0(1), 9.0(2), 9.1(1), 9.1(1)SU1, 9.1(1)SU1.1, 9.1(1)ES1 through 9.1(1)E… Finesse Mitigation only Fix from $1,9502016-05-05 HIGH 7.5 CVE-2016-1369 The Adaptive Security Appliance (ASA) 5585-X FirePOWER Security Services Processor (SSP) module for Cisco ASA with FirePOWER Services 5.3.1 through 6… Asa With Firepower Services Mitigation only Fix from $1,9502016-05-05 HIGH 7.5 CVE-2016-1368 Cisco FirePOWER System Software 5.3.x through 5.3.0.6 and 5.4.x through 5.4.0.3 on FirePOWER 7000 and 8000 appliances, and on the Advanced Malware Pr… Firesight System Software Mitigation only Fix from $1,9502016-05-05 CRITICAL 10.0 CVE-2016-1343 The XML parser in Cisco Information Server (CIS) 6.2 allows remote attackers to read arbitrary files or cause a denial of service (CPU and memory con… Information Server Mitigation only Fix from $2,3002016-04-30 HIGH 7.8 CVE-2016-4349 Untrusted search path vulnerability in Cisco WebEx Productivity Tools 2.40.5001.10012 allows local users to gain privileges via a Trojan horse crypts… Webex Productivity Tools Mitigation only Fix from $1,9502016-04-28 HIGH 7.4 CVE-2016-1389 Open redirect vulnerability in Cisco WebEx Meetings Server (CWMS) 2.6 allows remote attackers to redirect users to arbitrary web sites and conduct ph… Webex Meetings Server Mitigation only Fix from $1,9502016-04-28 HIGH 7.5 CVE-2016-1386 The API in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0(1) allows remote attackers to spoof administrative noti… Application Policy Infrastructure Controller Enterprise Module Mitigation only Fix from $1,9502016-04-28 HIGH 7.5 CVE-2016-1367 The DHCPv6 relay implementation in Cisco Adaptive Security Appliance (ASA) Software 9.4.1 allows remote attackers to cause a denial of service (devic… Adaptive Security Appliance Software Mitigation only Fix from $1,9502016-04-21 HIGH 7.5 CVE-2016-1364 Cisco Wireless LAN Controller (WLC) Software 7.4 before 7.4.130.0(MD) and 7.5, 7.6, and 8.0 before 8.0.110.0(ED) allows remote attackers to cause a d… Wireless Lan Controller Software Mitigation only Fix from $1,9502016-04-21 HIGH 7.5 CVE-2016-1362 Cisco AireOS 4.1 through 7.4.120.0, 7.5.x, and 7.6.100.0 on Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of servic… Aireos Mitigation only Fix from $1,9502016-04-21 HIGH 7.5 CVE-2015-6360EPSS 8% The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packe… Ios Xe Mitigation only Fix from $1,9502016-04-21 HIGH 7.5 CVE-2016-1384 The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, … iOS Mitigation only Fix from $1,9502016-04-20 HIGH 8.4 CVE-2016-1340 Heap-based buffer overflow in Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain p… Unified Computing System Platform Emulator Mitigation only Fix from $1,9502016-04-16 HIGH 7.8 CVE-2016-1339 Cisco Unified Computing System (UCS) Platform Emulator 2.5(2)TS4, 3.0(2c)A, and 3.0(2c)TS9 allows local users to gain privileges via crafted argument… Unified Computing System Platform Emulator Mitigation only Fix from $1,9502016-04-16 MEDIUM 5.3 CVE-2016-1378 Cisco IOS before 15.2(2)E1 on Catalyst switches allows remote attackers to obtain potentially sensitive software-version information via a request to… iOS Mitigation only Fix from $1,6002016-04-14 CRITICAL 9.8 CVE-2016-1352 Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary OS commands via a crafted HTTP… Unified Computing System Central Software Mitigation only Fix from $2,3002016-04-14 MEDIUM 6.1 CVE-2016-1377 Cross-site scripting (XSS) vulnerability in Cisco Unity Connection through 11.0 allows remote attackers to inject arbitrary web script or HTML via un… Unity Connection No fix yet Fix from $1,6002016-04-12 MEDIUM 5.3 CVE-2016-1376 Cisco IOS XR 4.2.3, 4.3.0, 4.3.4, and 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (CRC and symbol errors, and inte… Ios Xr Mitigation only Fix from $1,6002016-04-12 MEDIUM 6.1 CVE-2016-1375 Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote attackers to inject arbitrary we… Ip Interoperability And Collaboration System Mitigation only Fix from $1,6002016-04-08 CRITICAL 9.8 CVE-2016-1313 Cisco UCS Invicta C3124SA Appliance 4.3.1 through 5.0.1, UCS Invicta Scaling System and Appliance, and Whiptail Racerunner improperly store a default… Ucs Invicta C3124sa Appliance Mitigation only Fix from $2,3002016-04-06