Vulnerability index

Browse CVEs

3,250 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2015-0631 Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by m… Ips Sensor Software Mitigation only Fix from $1,9502015-02-21 HIGH 7.1 CVE-2015-0618 Cisco IOS XR 5.0.1 and 5.2.1 on Network Convergence System (NCS) 6000 devices and 5.1.3 and 5.1.4 on Carrier Routing System X (CRS-X) devices allows … Ios Xr Mitigation only Fix from $1,9502015-02-21 MEDIUM 5.0 CVE-2015-0628 The proxy engine on Cisco Web Security Appliance (WSA) devices allows remote attackers to bypass intended proxying restrictions via a malformed HTTP … Web Security Appliance Mitigation only Fix from $1,6002015-02-20 HIGH 7.2 CVE-2015-0584 The image-upgrade implementation on Cisco Desktop Collaboration Experience (aka Collaboration Desk Experience or DX) DX650 endpoints allows local use… Desktop Collaboration Experience Dx650 Mitigation only Fix from $1,9502015-02-20 HIGH 7.1 CVE-2015-0622 The Wireless Intrusion Detection (aka WIDS) functionality on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of… Wireless Lan Controller Mitigation only Fix from $1,9502015-02-19 HIGH 7.8 CVE-2015-0621 Cisco TelePresence MCU devices with software 4.5(1.45) allow remote attackers to cause a denial of service (device reload) via an unspecified series … Telepresence Mcu 4500 Series Software Mitigation only Fix from $1,9502015-02-18 MEDIUM 5.0 CVE-2015-0617 Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices allow remote attackers to cause a denial of service (CPU consumption and SNMP outa… Asr 5000 Series Software Mitigation only Fix from $1,6002015-02-18 HIGH 7.1 CVE-2015-0593 The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage session-object structures, which allows remote at… iOS Mitigation only Fix from $1,9502015-02-13 MEDIUM 5.0 CVE-2015-0619 Memory leak in the embedded web server in the WebVPN subsystem in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to cause a… Adaptive Security Appliance Software Mitigation only Fix from $1,6002015-02-12 MEDIUM 6.5 CVE-2015-0611 The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-… Telepresence System Software Ix Mitigation only Fix from $1,6002015-02-12 MEDIUM 6.8 CVE-2014-2152 Cross-site request forgery (CSRF) vulnerability in the INSERT page in Cisco Prime Infrastructure (PI) allows remote attackers to hijack the authentic… Prime Infrastructure Mitigation only Fix from $1,6002015-02-12 HIGH 9.0 CVE-2015-0589 The administrative web interface in Cisco WebEx Meetings Server 1.0 through 1.5 allows remote authenticated users to execute arbitrary OS commands wi… Webex Meetings Server Mitigation only Fix from $1,9502015-02-07 MEDIUM 5.0 CVE-2015-0604 The web framework on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to upload files to arbitrary locations on… Unified Ip Phones 9971 Firmware Mitigation only Fix from $1,6002015-02-07 MEDIUM 6.8 CVE-2014-8008EPSS 8% Absolute path traversal vulnerability in the Real-Time Monitoring Tool (RTMT) API in Cisco Unified Communications Manager (CUCM) allows remote authen… Unified Communications Manager Mitigation only Fix from $1,6002015-01-22 MEDIUM 5.0 CVE-2015-0590 Cisco WebEx Meeting Center allows remote attackers to activate disabled meeting attributes, and consequently obtain sensitive information, by providi… Webex Meeting Center Mitigation only Fix from $1,6002015-01-17 MEDIUM 5.0 CVE-2015-0591 Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to cause a denial of service (daemon hang and GUI outage) via a flood o… Unified Communications Domain Manager Mitigation only Fix from $1,6002015-01-15 MEDIUM 6.8 CVE-2015-0588 Cross-site request forgery (CSRF) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to hijack the authen… Unified Communications Domain Manager Mitigation only Fix from $1,6002015-01-15 MEDIUM 5.0 CVE-2014-8034 Cisco WebEx Meetings Server 1.5 presents the same CAPTCHA challenge for each login attempt, which makes it easier for remote attackers to obtain acce… Webex Meetings Server Mitigation only Fix from $1,6002015-01-15 MEDIUM 5.0 CVE-2015-0583 Cisco WebEx Meeting Center does not properly restrict the content of URLs, which allows remote attackers to obtain sensitive information via vectors … Webex Meeting Center Mitigation only Fix from $1,6002015-01-14 MEDIUM 5.0 CVE-2015-0579 Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway allow remote attackers to cause a denial of service (memory and CPU consumpt… Telepresence Video Communication Server Mitigation only Fix from $1,6002015-01-14 MEDIUM 5.7 CVE-2015-0578 Cisco Adaptive Security Appliance (ASA) Software, when a DHCPv6 relay is configured, allows remote attackers to cause a denial of service (device rel… Adaptive Security Appliance Software Mitigation only Fix from $1,6002015-01-14 MEDIUM 5.0 CVE-2014-3314 Cisco AnyConnect on Android and OS X does not properly verify the host type, which allows remote attackers to spoof authentication forms and possibly… Anyconnect Secure Mobility Client Mitigation only Fix from $1,6002015-01-14 MEDIUM 5.0 CVE-2015-0582 The High Availability (HA) subsystem in Cisco NX-OS on MDS 9000 devices allows remote attackers to cause a denial of service via crafted traffic, aka… Nx Os Mitigation only Fix from $1,6002015-01-10 MEDIUM 5.0 CVE-2014-8035 The web framework in Cisco WebEx Meetings Server produces different returned messages for URL requests depending on whether a username exists, which … Webex Meetings Server Mitigation only Fix from $1,6002015-01-10 MEDIUM 5.0 CVE-2014-8036 The outlookpa component in Cisco WebEx Meetings Server does not properly validate API input, which allows remote attackers to modify a meeting's invi… Webex Meetings Server Mitigation only Fix from $1,6002015-01-10 MEDIUM 5.0 CVE-2014-8020 Cisco Unified Communication Domain Manager Platform Software allows remote attackers to cause a denial of service (CPU consumption, and performance d… Unified Communications Domain Manager Mitigation only Fix from $1,6002015-01-10 MEDIUM 5.0 CVE-2014-8033 The play/modules component in Cisco WebEx Meetings Server allows remote attackers to obtain administrator access via crafted API requests, aka Bug ID… Webex Meetings Server Mitigation only Fix from $1,6002015-01-09 MEDIUM 6.8 CVE-2014-8031 Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server allows remote attackers to hijack the authentication of arbitrary user… Webex Meetings Server Mitigation only Fix from $1,6002015-01-09 MEDIUM 5.8 CVE-2014-8029 Open redirect vulnerability in the web interface in Cisco Secure Access Control System (ACS) allows remote attackers to redirect users to arbitrary w… Secure Access Control System Mitigation only Fix from $1,6002015-01-09 MEDIUM 6.5 CVE-2014-8027 The RBAC component in Cisco Secure Access Control System (ACS) allows remote authenticated users to obtain Network Device Administrator privileges fo… Secure Access Control System Mitigation only Fix from $1,6002015-01-09