Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Anyconnect Secure Mobility Client MEDIUM 6.6
CVE-2015-6322

The IPC channel in Cisco AnyConnect Secure Mobility Client 2.0.0343 through 4.1(8) allows local users to bypass intended access restrictions and move…

Mitigation only
Fix from $1,600 2015-10-12
Telepresence Video Communication Server Software MEDIUM 6.9
CVE-2015-6318

Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 and X8.5.2 allows local users to write to arbitrary files via an unspecified sy…

Mitigation only
Fix from $1,600 2015-10-12
Telepresence Video Communication Server Software MEDIUM 6.9
CVE-2015-4325

The process-management implementation in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to gain privileges …

Mitigation only
Fix from $1,600 2015-10-12
iOS MEDIUM 6.3
CVE-2015-6263

The RADIUS client implementation in Cisco IOS 15.4(3)M2.2, when a shared RADIUS secret is configured, allows remote RADIUS servers to cause a denial …

Mitigation only
Fix from $1,600 2015-10-12
Wireless Lan Controller MEDIUM 6.1
CVE-2015-6311

Cisco Wireless LAN Controller (WLC) devices with software 7.0(240.0), 7.3(101.0), and 7.4(1.19) allow remote attackers to cause a denial of service (…

Mitigation only
Fix from $1,600 2015-10-08
Unified Communications Manager Im And Presence Service MEDIUM 5.0
CVE-2015-6310

The REST interface in Cisco Unified Communications Manager IM and Presence Service 11.5(1) allows remote attackers to cause a denial of service (SIP …

Mitigation only
Fix from $1,600 2015-10-08
Vpn Client HIGH 7.2
CVE-2015-7600

Cisco VPN Client 5.x through 5.0.07.0440 uses weak permissions for vpnclient.ini, which allows local users to gain privileges by entering an arbitrar…

No fix yet
Fix from $1,950 2015-10-06
Email Security Appliance MEDIUM 6.8
CVE-2015-6309

Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumpt…

Mitigation only
Fix from $1,600 2015-10-02
Firepower MEDIUM 6.1
CVE-2015-6307

Cisco FirePOWER (formerly Sourcefire) 7000 and 8000 devices with software 5.4.0.1 allow remote attackers to cause a denial of service (inspection-eng…

Mitigation only
Fix from $1,600 2015-09-28
iOS HIGH 9.3
CVE-2015-6280

The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before…

Mitigation only
Fix from $1,950 2015-09-28
iOS HIGH 7.8
CVE-2015-6279

The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE…

Mitigation only
Fix from $1,950 2015-09-28
iOS HIGH 7.8
CVE-2015-6278

The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE…

Mitigation only
Fix from $1,950 2015-09-28
Anyconnect Secure Mobility Client HIGH 7.2
CVE-2015-6306

Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to o…

Patch available
Fix from $1,950 2015-09-26
Anyconnect Secure Mobility Client HIGH 7.2
CVE-2015-6305

Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0…

No fix yet
Fix from $1,950 2015-09-26
Wireless Lan Controller Software MEDIUM 5.0
CVE-2015-6302

The RADIUS functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.0(250.0) and 7.0(252.0) allows remote attackers to disconnect…

Mitigation only
Fix from $1,600 2015-09-26
Ios Xe HIGH 7.8
CVE-2015-6282

Cisco IOS XE 2.x and 3.x before 3.10.6S, 3.11.xS through 3.13.xS before 3.13.3S, and 3.14.xS through 3.15.xS before 3.15.1S allows remote attackers t…

Mitigation only
Fix from $1,950 2015-09-26
Telepresence Server Software MEDIUM 6.8
CVE-2015-6304

Cross-site request forgery (CSRF) vulnerability in Cisco TelePresence Server software 3.0(2.24) allows remote attackers to hijack the authentication …

Mitigation only
Fix from $1,600 2015-09-24
Ios Xr MEDIUM 5.0
CVE-2015-6301

The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via …

Mitigation only
Fix from $1,600 2015-09-20
Unity Connection MEDIUM 6.5
CVE-2015-6299

SQL injection vulnerability in the web interface in Cisco Unity Connection 9.1(1.2) and earlier allows remote authenticated users to execute arbitrar…

Mitigation only
Fix from $1,600 2015-09-20
Telepresence Server Software HIGH 7.8
CVE-2015-6284

Buffer overflow in the Conference Control Protocol API implementation in Cisco TelePresence Server software before 4.1(2.33) on 7010, MSE 8710, Multi…

Mitigation only
Fix from $1,950 2015-09-20
Prime Collaboration Provisioning HIGH 9.0
CVE-2015-4307

The web framework in Cisco Prime Collaboration Provisioning before 11.0 allows remote authenticated users to bypass intended access restrictions and …

Mitigation only
Fix from $1,950 2015-09-20
Prime Collaboration Assurance HIGH 8.5
CVE-2015-4306

The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended login-session rea…

Mitigation only
Fix from $1,950 2015-09-20
Prime Collaboration Assurance HIGH 9.0
CVE-2015-4304

The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended access restrictio…

Mitigation only
Fix from $1,950 2015-09-20
Ios Xr MEDIUM 5.0
CVE-2015-6297

The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via …

Mitigation only
Fix from $1,600 2015-09-18
Prime Network Registrar HIGH 7.2
CVE-2015-6296

Cisco Prime Network Registrar (CPNR) 8.1(3.3), 8.2(3), and 8.3(2) has a default account, which allows local users to obtain root access by leveraging…

Mitigation only
Fix from $1,950 2015-09-18
iOS MEDIUM 6.1
CVE-2015-6294

Cisco IOS 15.2(3)E and earlier and IOS XE 3.6(2)E and earlier allow remote attackers to cause a denial of service (functionality loss) via crafted Ci…

Mitigation only
Fix from $1,600 2015-09-18
Content Security Management Appliance MEDIUM 5.0
CVE-2015-6288

Cisco Content Security Management Appliance (SMA) 7.8.0-000 does not properly validate credentials, which allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,600 2015-09-14
Web Security Virtual Appliance MEDIUM 5.0
CVE-2015-6287

Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows remote attackers to cause a denial of service (service outage) via a flood of TCP t…

Mitigation only
Fix from $1,600 2015-09-14
Application Visibility And Control MEDIUM 5.7
CVE-2015-6286

Cisco Application Visibility and Control (AVC) 15.3(3)JA, when FlexConnect is enabled, allows remote attackers to cause a denial of service (access-p…

Mitigation only
Fix from $1,600 2015-09-14
Email Security Appliance MEDIUM 6.4
CVE-2015-6285

Format string vulnerability in Cisco Email Security Appliance (ESA) 7.6.0 and 8.0.0 allows remote attackers to cause a denial of service (memory over…

Mitigation only
Fix from $1,600 2015-09-14