Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Videoscape Distribution Suite Service Manager MEDIUM 6.1
CVE-2016-6418

Cross-site scripting (XSS) vulnerability in Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.0 through 3.4.0 allows remote attackers to…

Mitigation only
Fix from $1,600 2016-10-05
Firesight System Software HIGH 8.8
CVE-2016-6417

Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Management Center allows remote…

Mitigation only
Fix from $1,950 2016-10-05
Content Security Management Appliance MEDIUM 5.9
CVE-2016-6416

The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 through 9.9.6-026, Web Security Appliance (WSA) devices 9.0.0-16…

Mitigation only
Fix from $1,600 2016-10-05
iOS HIGH 7.5
CVE-2016-6392

Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.1 through 3.9 allow remote attackers to cause a denial of service (device restart) via a crafted IP…

Mitigation only
Fix from $1,950 2016-10-05
Ios Xe HIGH 7.5
CVE-2016-6386

Cisco IOS XE 3.1 through 3.17 and 16.1 on 64-bit platforms allows remote attackers to cause a denial of service (data-structure corruption and device…

Mitigation only
Fix from $1,950 2016-10-05
iOS HIGH 7.5
CVE-2016-6384

Cisco IOS 12.2 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.17 and 16.2 allow remote attackers to cause a denial of service (device re…

Fix: after 15.6
Fix from $1,950 2016-10-05
iOS HIGH 7.5
CVE-2016-6382

Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (device restart) via a malformed…

Mitigation only
Fix from $1,950 2016-10-05
iOS HIGH 7.5
CVE-2016-6381

Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of service (memory consumption or …

Mitigation only
Fix from $1,950 2016-10-05
Firesight System Software MEDIUM 6.5
CVE-2016-6420

Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to bypass authorization checks …

Mitigation only
Fix from $1,600 2016-10-05
Secure Firewall Management Center HIGH 7.5
CVE-2016-6419

SQL injection vulnerability in Cisco Firepower Management Center 4.10.3 through 5.4.0 allows remote authenticated users to execute arbitrary SQL comm…

Mitigation only
Fix from $1,950 2016-10-05
Application Policy Infrastructure Controller HIGH 7.8
CVE-2016-6413

The installation procedure on Cisco Application Policy Infrastructure Controller (APIC) devices 1.3(2f) mishandles binary files, which allows local u…

Mitigation only
Fix from $1,950 2016-09-24
iOS MEDIUM 6.5
CVE-2016-6412

The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows man-in-the-mid…

Mitigation only
Fix from $1,600 2016-09-24
Firesight System Software HIGH 7.5
CVE-2016-6411

Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons between URLs and X.509 certificates, which allows remote …

Mitigation only
Fix from $1,950 2016-09-24
iOS MEDIUM 6.5
CVE-2016-6410

The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is enabled, allows remote authent…

Mitigation only
Fix from $1,600 2016-09-24
iOS HIGH 7.5
CVE-2016-6409

The Data in Motion (DMo) component in Cisco IOS 15.6(1)T and IOS XE, when the IOx feature set is enabled, allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,950 2016-09-24
Prime Home HIGH 7.5
CVE-2016-6408

Cisco Prime Home 5.2.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction w…

Mitigation only
Fix from $1,950 2016-09-24
iOS HIGH 7.8
CVE-2016-6414

iox in Cisco IOS, possibly 15.6 and earlier, and IOS XE, possibly 3.18 and earlier, allows local users to execute arbitrary IOx Linux commands on the…

Mitigation only
Fix from $1,950 2016-09-22
Email Security Appliance Firmware CRITICAL 9.8
CVE-2016-6406

Cisco IronPort AsyncOS 9.1.2-023, 9.1.2-028, 9.1.2-036, 9.7.2-046, 9.7.2-047, 9.7.2-054, 10.0.0-124, and 10.0.0-125 on Email Security Appliance (ESA)…

Mitigation only
Fix from $2,300 2016-09-22
Cloud Services Platform 2100 CRITICAL 9.8
CVE-2016-6374

Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote attackers to execute arbitrary code via a crafted dnslookup command in an HTTP request, ak…

Mitigation only
Fix from $2,300 2016-09-22
Cloud Services Platform 2100 HIGH 7.2
CVE-2016-6373

The web-based GUI in Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote authenticated administrators to execute arbitrary OS commands as root…

Mitigation only
Fix from $1,950 2016-09-22
iOS MEDIUM 6.5
CVE-2014-2146

The Zone-Based Firewall (ZBFW) functionality in Cisco IOS, possibly 15.4 and earlier, and IOS XE, possibly 3.13 and earlier, mishandles zone checking…

Fix: after 15.4
Fix from $1,600 2016-09-22
iOS HIGH 7.5
CVE-2016-6415 KEVEPSS 87%

The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and…

Fix: 5.3.0+
Fix from $1,950 2016-09-19
Webex Meetings Server HIGH 7.5
CVE-2016-1483

Cisco WebEx Meetings Server 2.6 allows remote attackers to cause a denial of service (CPU consumption) by repeatedly accessing the account-validation…

Mitigation only
Fix from $1,950 2016-09-19
Fog Director MEDIUM 6.5
CVE-2016-6405

Cisco Fog Director 1.0(0) for IOx allows remote authenticated users to bypass intended access restrictions and write to arbitrary files via the Cartr…

Mitigation only
Fix from $1,600 2016-09-18
iOS MEDIUM 6.1
CVE-2016-6404

Cross-site scripting (XSS) vulnerability in the web framework in Cisco IOx Local Manager in IOS 15.5(2)T and IOS XE allows remote attackers to inject…

Mitigation only
Fix from $1,600 2016-09-18
iOS MEDIUM 5.9
CVE-2016-6403

The Data in Motion (DMo) application in Cisco IOS 15.6(1)T and IOS XE, when the IOx feature set is enabled, allows remote attackers to cause a denial…

Fix: after 15.6
Fix from $1,600 2016-09-18
Unified Computing System HIGH 7.8
CVE-2016-6402

UCS Manager and UCS 6200 Fabric Interconnects in Cisco Unified Computing System (UCS) through 3.0(2d) allow local users to obtain OS root access via …

Mitigation only
Fix from $1,950 2016-09-18
Ios Xr MEDIUM 5.3
CVE-2016-1433

Cisco IOS XR 6.0 and 6.0.1 on NCS 6000 devices allows remote attackers to cause a denial of service (OSPFv3 process reload) via crafted OSPFv3 packet…

Mitigation only
Fix from $1,600 2016-09-18
Webex Meetings Server HIGH 8.1
CVE-2016-1482

Cisco WebEx Meetings Server 2.6 allows remote attackers to execute arbitrary commands by injecting these commands into an application script, aka Bug…

Mitigation only
Fix from $1,950 2016-09-17
Web Security Appliance HIGH 7.5
CVE-2016-6407

Cisco AsyncOS through 9.5.0-444 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (link saturation) by mak…

Mitigation only
Fix from $1,950 2016-09-17