Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Telepresence Video Communication Server MEDIUM 6.5
CVE-2016-1444

The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.…

Mitigation only
Fix from $1,600 2016-07-07
Amp Threat Grid Appliance HIGH 8.1
CVE-2016-1443

The virtual network stack on Cisco AMP Threat Grid Appliance devices before 2.1.1 allows remote attackers to bypass a sandbox protection mechanism, a…

Mitigation only
Fix from $1,950 2016-07-07
Prime Infrastructure HIGH 8.8
CVE-2016-1442

The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via …

Mitigation only
Fix from $1,950 2016-07-07
iOS MEDIUM 6.5
CVE-2016-1425

Cisco IOS 15.0(2)SG5, 15.1(2)SG3, 15.2(1)E, 15.3(3)S, and 15.4(1.13)S allows remote attackers to cause a denial of service (device crash) via a craft…

Mitigation only
Fix from $1,600 2016-07-03
Rv130w Firmware MEDIUM 6.5
CVE-2016-1398

Buffer overflow in the web-based management interface on Cisco RV110W devices with firmware through 1.2.1.4, RV130W devices with firmware through 1.0…

Mitigation only
Fix from $1,600 2016-07-03
Epc3928 Firmware HIGH 8.1
CVE-2016-1337

Cisco EPC3928 devices allow remote attackers to obtain sensitive configuration and credential information by making requests during the early part of…

No fix yet
Fix from $1,950 2016-07-03
Epc3928 Firmware HIGH 7.5
CVE-2016-1336EPSS 9%

goform/Docsis_system on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long LanguageSelect parameter…

No fix yet
Fix from $1,950 2016-07-03
Epc3928 Firmware HIGH 7.5
CVE-2016-1328EPSS 9%

goform/WClientMACList on Cisco EPC3928 devices allows remote attackers to cause a denial of service (device crash) via a long h_sortWireless paramete…

No fix yet
Fix from $1,950 2016-07-03
Cloud Network Automation Provisioner HIGH 8.2
CVE-2016-1441

Cisco Cloud Network Automation Provisioner (CNAP) 1.0(0) in Cisco Configuration Assistant (CCA) allows remote attackers to bypass intended filesystem…

Mitigation only
Fix from $1,950 2016-07-03
Firesight System Software HIGH 8.6
CVE-2016-1394

Cisco Firepower System Software 6.0.0 through 6.1.0 has a hardcoded account, which allows remote attackers to obtain CLI access by leveraging knowled…

Mitigation only
Fix from $1,950 2016-07-03
Web Security Appliance MEDIUM 5.3
CVE-2016-1440

The proxy process on Cisco Web Security Appliance (WSA) devices through 9.1.0-070 allows remote attackers to cause a denial of service (CPU consumpti…

Mitigation only
Fix from $1,600 2016-07-02
Prime Collaboration Provisioning CRITICAL 9.8
CVE-2016-1416

Cisco Prime Collaboration Provisioning 10.6 SP2 (aka 10.6.0.10602) mishandles LDAP authentication, which allows remote attackers to obtain administra…

Mitigation only
Fix from $2,300 2016-07-02
Prime Infrastructure HIGH 8.8
CVE-2016-1408

Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute ar…

Mitigation only
Fix from $1,950 2016-07-02
Prime Infrastructure CRITICAL 9.8
CVE-2016-1289EPSS 6%

The API in Cisco Prime Infrastructure 1.2 through 3.0 and Evolved Programmable Network Manager (EPNM) 1.2 allows remote attackers to execute arbitrar…

Mitigation only
Fix from $2,300 2016-07-02
Asyncos HIGH 7.5
CVE-2016-1438

Cisco AsyncOS 9.7.0-125 on Email Security Appliance (ESA) devices allows remote attackers to bypass intended spam filtering via crafted executable co…

Mitigation only
Fix from $1,950 2016-06-23
Unified Contact Center Enterprise MEDIUM 6.1
CVE-2016-1439

Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified Contact Center Enterprise through 10.5(2) allows remote attacke…

Mitigation only
Fix from $1,600 2016-06-23
Prime Collaboration Deployment MEDIUM 6.5
CVE-2016-1437

SQL injection vulnerability in the SQL database in Cisco Prime Collaboration Deployment before 11.5.1 allows remote authenticated users to execute ar…

Mitigation only
Fix from $1,600 2016-06-23
Asr 5000 Software HIGH 7.5
CVE-2016-1436

The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) implementation on Cisco ASR 5000 Packet Data Network Gateway devices before 19.4 …

Mitigation only
Fix from $1,950 2016-06-23
Ip Phone 8800 Series Firmware HIGH 7.0
CVE-2016-1435

Cisco 8800 phones with software 11.0(1) do not properly enforce mounted-filesystem permissions, which allows local users to write to arbitrary files …

Mitigation only
Fix from $1,950 2016-06-23
Ip Phone 8800 Series Firmware MEDIUM 6.5
CVE-2016-1434

The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows remote authenticated users to delete arbitrary files v…

Mitigation only
Fix from $1,600 2016-06-23
Ios Xe MEDIUM 6.5
CVE-2016-1428

Double free vulnerability in Cisco IOS XE 3.15S, 3.16S, and 3.17S allows remote authenticated users to cause a denial of service (device restart) via…

Mitigation only
Fix from $1,600 2016-06-23
iOS HIGH 7.5
CVE-2015-6289

Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and 829 devices allows remote attackers to cause a denial of service (memory consump…

Mitigation only
Fix from $1,950 2016-06-23
iOS MEDIUM 6.5
CVE-2016-1424

Cisco IOS 15.2(1)T1.11 and 15.2(2)TST allows remote attackers to cause a denial of service (device crash) via a crafted LLDP packet, aka Bug ID CSCun…

Mitigation only
Fix from $1,600 2016-06-19
Rv215w Wireless N Vpn Router Firmware MEDIUM 6.5
CVE-2016-1397

Buffer overflow in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3…

Mitigation only
Fix from $1,600 2016-06-19
Rv130w Wireless N Multifunction Vpn Router Firmware MEDIUM 6.1
CVE-2016-1396

Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices w…

Mitigation only
Fix from $1,600 2016-06-19
Rv130w Wireless N Multifunction Vpn Router Firmware CRITICAL 9.8
CVE-2016-1395

The web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W dev…

Mitigation only
Fix from $2,300 2016-06-19
Ios Xe MEDIUM 6.5
CVE-2016-1432

Cisco IOS XE 3.15S and 3.16S on cBR-8 Converged Broadband Router devices allows remote authenticated users to cause a denial of service (NULL pointer…

Mitigation only
Fix from $1,600 2016-06-18
Secure Firewall Management Center MEDIUM 6.1
CVE-2016-1431

Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.1, and 5.4.0 allows remote attackers to injec…

Mitigation only
Fix from $1,600 2016-06-18
Prime Network Registrar HIGH 7.5
CVE-2016-1427

The System Configuration Protocol (SCP) core messaging interface in Cisco Prime Network Registrar 8.2 before 8.2.3.1 and 8.3 before 8.3.2 allows remo…

Mitigation only
Fix from $1,950 2016-06-18
Ip Phone 8800 Series Firmware HIGH 7.5
CVE-2016-1421

A vulnerability in the web application for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or ca…

Mitigation only
Fix from $1,950 2016-06-10