Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Secure Firewall Management Center HIGH 8.8
CVE-2016-1458

The web-based GUI in Cisco Firepower Management Center 4.x and 5.x before 5.3.0.3, 5.3.1.x before 5.3.1.2, and 5.4.x before 5.4.0.1 and Cisco Adaptiv…

Mitigation only
Fix from $1,950 2016-08-18
Secure Firewall Management Center HIGH 8.8
CVE-2016-1457

The web-based GUI in Cisco Firepower Management Center 4.x and 5.x before 5.3.1.2 and 5.4.x before 5.4.0.1 and Cisco Adaptive Security Appliance (ASA…

Mitigation only
Fix from $1,950 2016-08-18
Application Policy Infrastructure Controller Enterprise Module HIGH 8.8
CVE-2016-1365

The Grapevine update process in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0 allows remote authenticated users …

Mitigation only
Fix from $1,950 2016-08-18
Adaptive Security Appliance Software HIGH 7.8
CVE-2016-6367 KEVEPSS 23%

Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges v…

Fix: 8.4 / 9.0+
Fix from $1,950 2016-08-18
Pix Firewall Software HIGH 8.8
CVE-2016-6366 KEVEPSS 88%

Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V, ASAv, Fi…

Fix: 9.0.4.40 / 9.1.7+
Fix from $1,950 2016-08-18
iOS HIGH 7.5
CVE-2016-1478

Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a deni…

Mitigation only
Fix from $1,950 2016-08-08
Telepresence Video Communication Server HIGH 8.8
CVE-2016-1468

The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbi…

Mitigation only
Fix from $1,950 2016-08-08
Unified Communications Manager Im And Presence Service HIGH 7.5
CVE-2016-1466

Cisco Unified Communications Manager IM and Presence Service 9.1(1) SU6, 9.1(1) SU6a, 9.1(1) SU7, 10.5(2) SU2, 10.5(2) SU2a, 11.0(1) SU1, and 11.5(1)…

Mitigation only
Fix from $1,950 2016-08-08
Rv180 Vpn Router Firmware HIGH 8.8
CVE-2016-1430

Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as root via a crafted HTTP request, aka Bug ID CSCuz485…

Mitigation only
Fix from $1,950 2016-08-08
Rv180 Vpn Router Firmware HIGH 7.5
CVE-2016-1429EPSS 7%

Directory traversal vulnerability in the web interface on Cisco RV180 and RV180W devices allows remote attackers to read arbitrary files via a crafte…

Mitigation only
Fix from $1,950 2016-08-08
Rv110w Wireless N Vpn Firewall Firmware HIGH 8.8
CVE-2015-6397

Cisco RV110W, RV130W, and RV215W devices have an incorrect RBAC configuration for the default account, which allows remote authenticated users to obt…

Mitigation only
Fix from $1,950 2016-08-08
Rv110w Wireless N Vpn Firewall Firmware HIGH 7.8
CVE-2015-6396

The CLI command parser on Cisco RV110W, RV130W, and RV215W devices allows local users to execute arbitrary shell commands as an administrator via cra…

No fix yet
Fix from $1,950 2016-08-08
Asyncos HIGH 7.5
CVE-2016-1461

Cisco AsyncOS on Email Security Appliance (ESA) devices through 9.7.0-125 allows remote attackers to bypass malware detection via a crafted attachmen…

Fix: after 9.7.0-125
Fix from $1,950 2016-08-01
Videoscape Session Resource Manager MEDIUM 6.5
CVE-2016-1467

Cisco Videoscape Session Resource Manager (VSRM) allows remote attackers to cause a denial of service (device restart) by sending a traffic flood to …

Mitigation only
Fix from $1,600 2016-07-28
Nx Os MEDIUM 6.5
CVE-2016-1465

Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hyperviso…

Mitigation only
Fix from $1,600 2016-07-28
Firesight System Software HIGH 7.5
CVE-2016-1463

Cisco FireSIGHT System Software 5.3.0, 5.3.1, 5.4.0, 6.0, and 6.0.1 allows remote attackers to bypass Snort rules via crafted parameters in the heade…

Mitigation only
Fix from $1,950 2016-07-28
Prime Service Catalog MEDIUM 6.1
CVE-2016-1462

Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Prime Service Catalog (PSC) 11.0 allows remote attackers to i…

Mitigation only
Fix from $1,600 2016-07-28
Wireless Lan Controller Software MEDIUM 6.5
CVE-2016-1460

Cisco Wireless LAN Controller (WLC) devices 7.4(121.0) and 8.0(0.30220.385) allow remote attackers to cause a denial of service via crafted wireless …

Mitigation only
Fix from $1,600 2016-07-28
Unified Computing System Performance Manager HIGH 8.8
CVE-2016-1374

The web framework in Cisco Unified Computing System (UCS) Performance Manager 2.0.0 and earlier allows remote authenticated users to execute arbitrar…

Mitigation only
Fix from $1,950 2016-07-28
iOS MEDIUM 5.3
CVE-2016-1459

Cisco IOS 12.4 and 15.0 through 15.5 and IOS XE 3.13 through 3.17 allow remote authenticated users to cause a denial of service (device reload) via c…

Mitigation only
Fix from $1,600 2016-07-17
Webex Meetings Server HIGH 8.8
CVE-2016-1448

Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.7 allows remote attackers to hijack the authentication of arbitrary …

Mitigation only
Fix from $1,950 2016-07-17
Ios Xr HIGH 7.8
CVE-2016-1456

The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a privileged context by leveraging unspecified conta…

Mitigation only
Fix from $1,950 2016-07-15
Asr 5000 MEDIUM 6.5
CVE-2016-1452

Cisco ASR 5000 devices with software 18.3 through 20.0.0 allow remote attackers to make configuration changes over SNMP by leveraging knowledge of th…

Mitigation only
Fix from $1,600 2016-07-15
Meeting Server MEDIUM 6.1
CVE-2016-1451

Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Meeting Server (formerly Acano Conferencing Server) 1.7 throu…

Mitigation only
Fix from $1,600 2016-07-15
Webex Meetings Server HIGH 7.5
CVE-2016-1450

Cisco WebEx Meetings Server 2.6 allows remote authenticated users to conduct command-injection attacks via vectors related to an upload's file type, …

Mitigation only
Fix from $1,950 2016-07-15
Webex Meetings Server MEDIUM 6.1
CVE-2016-1449

Cross-site scripting (XSS) vulnerability in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrary web script or HTML via a craf…

Mitigation only
Fix from $1,600 2016-07-15
Webex Meetings Server MEDIUM 6.1
CVE-2016-1447

Cross-site scripting (XSS) vulnerability in the administrator interface in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrar…

Mitigation only
Fix from $1,600 2016-07-15
Webex Meetings Server HIGH 8.8
CVE-2016-1446

SQL injection vulnerability in Cisco WebEx Meetings Server 2.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified ve…

Mitigation only
Fix from $1,950 2016-07-15
Ios Xr HIGH 7.5
CVE-2016-1426

Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of service (timer consumption and Route Processor reload…

Mitigation only
Fix from $1,950 2016-07-15
Adaptive Security Appliance Software MEDIUM 5.3
CVE-2016-1445

Cisco Adaptive Security Appliance (ASA) Software 8.2 through 9.4.3.3 allows remote attackers to bypass intended ICMP Echo Reply ACLs via vectors rela…

Fix: 9.4.3.3 / 9.5.2.10+
Fix from $1,600 2016-07-12