Vulnerability index

Browse CVEs

3,245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2013-3420 Cross-site request forgery (CSRF) vulnerability in the web framework on the Cisco Identity Services Engine (ISE) allows remote attackers to hijack th… Identity Services Engine Software Mitigation only Fix from $1,6002013-07-18 MEDIUM 5.0 CVE-2013-3426 The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specify… Unified Ip Phones 9900 Series Firmware Mitigation only Fix from $1,6002013-07-18 HIGH 7.8 CVE-2013-3411 The IDSM-2 drivers in Cisco Intrusion Prevention System (IPS) Software on Cisco Catalyst 6500 devices with an IDSM-2 module allow remote attackers to… Intrusion Prevention System Mitigation only Fix from $1,9502013-07-18 HIGH 7.5 CVE-2013-3404 SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allows remote attackers to execute arbitrary SQL co… Unified Communications Manager Mitigation only Fix from $1,9502013-07-18 MEDIUM 6.8 CVE-2013-3403 Multiple untrusted search path vulnerabilities in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allow local users to gain privil… Unified Communications Manager Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.8 CVE-2013-3433 Untrusted search path vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allows local users to gain privileges by le… Unified Communications Manager Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.8 CVE-2013-3434 Untrusted search path vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allows local users to gain privileges by le… Unified Communications Manager Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.5 CVE-2013-3402 An unspecified function in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(2) allows remote authenticated users to execute arbitrary c… Unified Communications Manager Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.5 CVE-2013-3412 SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(2) allows remote authenticated users to execute arbitra… Unified Communications Manager Mitigation only Fix from $1,6002013-07-18 MEDIUM 6.8 CVE-2013-3424 Cross-site request forgery (CSRF) vulnerability in Administration and View pages in Cisco Secure Access Control System (ACS) allows remote attackers … Secure Access Control System Mitigation only Fix from $1,6002013-07-12 MEDIUM 6.8 CVE-2013-3418 Cisco Unified Communications Domain Manager does not properly allocate memory for GET and POST requests, which allows remote authenticated users to c… Unified Communications Domain Manager Mitigation only Fix from $1,6002013-07-11 MEDIUM 6.8 CVE-2013-3408 The firmware on Cisco Virtualization Experience Client 6000 devices sets incorrect operating-system permissions, which allows local users to gain pri… Virtualization Experience Client 6000 Series Firmware Mitigation only Fix from $1,6002013-07-10 MEDIUM 6.8 CVE-2013-3400 The license-installation module in Cisco NX-OS on Nexus 1000V devices allows local users to execute arbitrary commands via crafted "install license" … Nx Os Mitigation only Fix from $1,6002013-07-10 MEDIUM 6.8 CVE-2013-3395 Cross-site request forgery (CSRF) vulnerability in the web framework on Cisco IronPort Web Security Appliance (WSA) devices, Email Security Appliance… Content Security Management Appliance Mitigation only Fix from $1,6002013-07-02 MEDIUM 6.6 CVE-2013-3399 Buffer overflow in an unspecified Android API on the Cisco Desktop Collaboration Experience DX650 allows attackers to execute arbitrary code via vect… Desktop Collaboration Experience Mitigation only Fix from $1,6002013-07-02 MEDIUM 6.8 CVE-2013-3397 Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications Manager (CUCM) allows remote … Unified Communications Manager Mitigation only Fix from $1,6002013-06-26 MEDIUM 5.0 CVE-2013-3398 The web framework in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance provides different responses to requests for arbitrary pat… Prime Central For Hosted Collaboration Solution Mitigation only Fix from $1,6002013-06-26 HIGH 7.8 CVE-2013-3382 The Next-Generation Firewall (aka NGFW, formerly CX Context-Aware Security) module 9.x before 9.1.1.9 and 9.1.2.x before 9.1.2.12 for Cisco Adaptive … Adaptive Security Appliance Mitigation only Fix from $1,9502013-06-26 MEDIUM 5.0 CVE-2013-3393 The Precision Video Engine component in Cisco Jabber for Windows and Cisco Virtualization Experience Media Engine allows remote attackers to cause a … Jabber Mitigation only Fix from $1,6002013-06-26 MEDIUM 5.4 CVE-2013-1203 Cisco ASA CX Context-Aware Security Software allows remote attackers to cause a denial of service (device reload) via crafted TCP packets that appear… Asa Cx Context Aware Security Software Mitigation only Fix from $1,6002013-06-18 MEDIUM 5.0 CVE-2013-3381 Cisco Hosted Collaboration Mediation allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets on p… Hosted Collaboration Solution Mitigation only Fix from $1,6002013-06-12 MEDIUM 6.8 CVE-2013-1246 Cisco TelePresence System Software does not properly handle inactive t-shell sessions, which allows remote authenticated users to cause a denial of s… Telepresence System Software Mitigation only Fix from $1,6002013-05-31 MEDIUM 5.8 CVE-2013-1212 The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoo… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.4 CVE-2013-1210 Array index error in the Virtual Ethernet Module (VEM) kernel driver for VMware ESXi in Cisco NX-OS on the Nexus 1000V, when STUN debugging is enable… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.0 CVE-2013-1209 The encryption functionality in the Virtual Supervisor Module (VSM) to Virtual Ethernet Module (VEM) communication component in Cisco NX-OS on the Ne… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.0 CVE-2013-1211 Cisco NX-OS on the Nexus 1000V does not properly handle authentication for Virtual Ethernet Module (VEM) to Virtual Supervisor Module (VSM) communica… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.0 CVE-2013-1213 Cisco NX-OS on the Nexus 1000V does not assign the proper priority to heartbeat messages from a Virtual Ethernet Module (VEM) to a Virtual Supervisor… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.8 CVE-2013-1208 The encryption functionality in Cisco NX-OS on the Nexus 1000V does not properly handle Virtual Supervisor Module (VSM) to Virtual Ethernet Module (V… Nx Os Mitigation only Fix from $1,6002013-05-29 MEDIUM 5.8 CVE-2012-6399 Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of th… Webex Mitigation only Fix from $1,6002013-05-27 MEDIUM 5.0 CVE-2013-1204 Memory leak in the SNMP process in Cisco IOS XR allows remote attackers to cause a denial of service (memory consumption or process reload) by sendin… Ios Xr Mitigation only Fix from $1,6002013-05-23