Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2016-1291EPSS 7% Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allow remote attackers to execute arbitrary… Evolved Programmable Network Manager Mitigation only Fix from $2,3002016-04-06 HIGH 8.1 CVE-2016-1290 The web API in Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allows remote authenticated … Evolved Programmable Network Manager Mitigation only Fix from $1,9502016-04-06 HIGH 7.5 CVE-2016-1345 Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware pr… Asa With Firepower Services Mitigation only Fix from $1,9502016-04-01 HIGH 7.5 CVE-2016-1351 The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.1 and 15.2 and NX-OS 4.1 through 6.2 allows remote attackers to cause a deni… iOS Mitigation only Fix from $1,9502016-03-26 HIGH 7.5 CVE-2016-1347 The Wide Area Application Services (WAAS) Express implementation in Cisco IOS 15.1 through 15.5 allows remote attackers to cause a denial of service … iOS Mitigation only Fix from $1,9502016-03-24 MEDIUM 6.5 CVE-2016-1366 The SCP and SFTP modules in Cisco IOS XR 5.0.0 through 5.2.5 on Network Convergence System 6000 devices use weak permissions for system files, which … Ios Xr Mitigation only Fix from $1,6002016-03-24 MEDIUM 5.3 CVE-2016-1361 Cisco IOS XR through 4.3.2 on Gigabit Switch Router (GSR) 12000 devices does not properly check for a Bidirectional Forwarding Detection (BFD) header… Ios Xr Mitigation only Fix from $1,6002016-03-12 HIGH 7.1 CVE-2016-1360 Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows… Prime Lan Management Solution Mitigation only Fix from $1,9502016-03-12 MEDIUM 6.5 CVE-2016-1338 Cisco TelePresence Video Communication Server (VCS) X8.5.1 and X8.5.2 allows remote authenticated users to cause a denial of service (VoIP outage) vi… Telepresence Video Communication Server Software Mitigation only Fix from $1,6002016-03-12 CRITICAL 9.8 CVE-2016-1327EPSS 7% Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary c… Dpc2203 Cable Modem Firmware Mitigation only Fix from $2,3002016-03-09 HIGH 7.5 CVE-2016-1326 The administration interface on Cisco DPQ3925 devices with firmware r1 allows remote attackers to cause a denial of service (device restart) via a cr… Dpq3925 8x4 Docsis 3.0 Wireless Residential Gateway With Embedded Digital Voice Adapter Mitigation only Fix from $1,9502016-03-09 HIGH 7.5 CVE-2016-1325 The administration interface on Cisco DPC3939B and DPC3941 devices allows remote attackers to obtain sensitive information via a crafted HTTP request… Dpc3939 Wireless Residential Voice Gateway Firmware Mitigation only Fix from $1,9502016-03-09 HIGH 7.5 CVE-2016-1312 The HTTPS inspection engine in the Content Security and Control Security Services Module (CSC-SSM) 6.6 before 6.6.1164.0 for Cisco ASA 5500 devices a… Asa 5500 Csc Ssm Firmware Mitigation only Fix from $1,9502016-03-09 HIGH 8.8 CVE-2016-1359 Cisco Prime Infrastructure 3.0 allows remote authenticated users to execute arbitrary code via a crafted HTTP request that is mishandled during viewi… Prime Infrastructure Mitigation only Fix from $1,9502016-03-03 MEDIUM 6.4 CVE-2016-1358 Cisco Prime Infrastructure 2.2, 3.0, and 3.1(0.0) allows remote authenticated users to read arbitrary files or cause a denial of service via an XML d… Prime Infrastructure Mitigation only Fix from $1,6002016-03-03 MEDIUM 5.3 CVE-2016-1357 The password-management administration component in Cisco Policy Suite (CPS) 7.0.1.3, 7.0.2, 7.0.2-att, 7.0.3-att, 7.0.4-att, and 7.5.0 allows remote… Cisco Policy Suite Mitigation only Fix from $1,6002016-03-03 MEDIUM 5.3 CVE-2016-1288 The HTTPS Proxy feature in Cisco AsyncOS before 8.5.3-051 and 9.x before 9.0.0-485 on Web Security Appliance (WSA) devices allows remote attackers to… Web Security Appliance Mitigation only Fix from $1,6002016-03-03 MEDIUM 6.1 CVE-2016-1355 Cross-site scripting (XSS) vulnerability in the Device Management UI in the management interface in Cisco FireSIGHT System Software 6.1.0 allows remo… Firesight System Software Mitigation only Fix from $1,6002016-03-03 MEDIUM 6.1 CVE-2016-1354 Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 8.x before 8.1.1 allows remote attackers to inject arb… Unified Communications Domain Manager Mitigation only Fix from $1,6002016-03-03 MEDIUM 5.3 CVE-2016-1353 The TCP implementation in Cisco Videoscape Distribution Suite for Internet Streaming (VDS-IS) 3.3(0), 3.3(1), 4.0(0), and 4.1(0) does not properly in… Videoscape Distribution Suite For Internet Streaming Mitigation only Fix from $1,6002016-03-01 MEDIUM 5.3 CVE-2016-1342 The device login page in Cisco FirePOWER Management Center 5.3 through 6.0.0.1 allows remote attackers to obtain potentially sensitive software-versi… Secure Firewall Management Center Mitigation only Fix from $1,6002016-02-26 HIGH 8.8 CVE-2016-1297 The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC res… Application Control Engine Software Mitigation only Fix from $1,9502016-02-26 CRITICAL 9.8 CVE-2016-1341 Cisco NX-OS 7.0(1)N1(1), 7.0(1)N1(3), and 7.0(4)N1(1) on Nexus 2000 Fabric Extender devices has a blank root password, which allows local users to ga… Nx Os Mitigation only Fix from $2,3002016-02-24 HIGH 7.5 CVE-2016-1335 The SSH implementation in Cisco StarOS before 19.3.M0.62771 and 20.x before 20.0.M0.62768 on ASR 5000 devices mishandles a multi-user public-key auth… Asr 5000 Series Software Mitigation only Fix from $1,9502016-02-19 MEDIUM 5.3 CVE-2016-1334 Cisco Small Business 500 Wireless Access Point devices with firmware 1.0.4.4 allow remote attackers to set the system time via a crafted POST request… Small Business Wireless Access Points Firmware Mitigation only Fix from $1,6002016-02-17 MEDIUM 6.5 CVE-2016-1333 Cisco IOS 15.5(3)M and 15.6(1)T0a on Cisco 1000 Connected Grid routers allows remote authenticated users to cause a denial of service (device reload)… iOS Mitigation only Fix from $1,6002016-02-17 MEDIUM 5.8 CVE-2016-1321 Cisco Universal Small Cell devices with firmware R2.12 through R3.5 contain an image-decryption key in flash memory, which allows remote attackers to… Universal Small Cell Firmware Mitigation only Fix from $1,6002016-02-15 MEDIUM 5.3 CVE-2016-1324 The REST interface in Cisco Spark 2015-06 allows remote attackers to cause a denial of service (resource outage) by accessing an administrative page,… Spark Mitigation only Fix from $1,6002016-02-12 HIGH 7.5 CVE-2016-1322 The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via un… Spark Mitigation only Fix from $1,9502016-02-12 MEDIUM 6.7 CVE-2016-1320 The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges,… Prime Collaboration Mitigation only Fix from $1,6002016-02-12