Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Telepresence System Software Ix MEDIUM 5.0
CVE-2015-6276

Cisco TelePresence IX5000 8.0.3 stores a private key associated with an X.509 certificate under the web root with insufficient access control, which …

Mitigation only
Fix from $1,600 2015-09-05
Integrated Management Controller Supervisor HIGH 9.4
CVE-2015-6259

The JavaServer Pages (JSP) component in Cisco Integrated Management Controller (IMC) Supervisor before 1.0.0.1 and UCS Director (formerly Cloupia Uni…

Fix: after 5.2.0.0
Fix from $1,950 2015-09-04
Nx Os MEDIUM 6.1
CVE-2015-6277

The ARP implementation in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 5.2(1)SV3(1.4), Nexus 3000 devices 7.3(0)ZD(0.47), Nexus 4000 devices…

Mitigation only
Fix from $1,600 2015-09-02
Asr 1000 Series Software MEDIUM 5.0
CVE-2015-6274

The IPv4 implementation on Cisco ASR 1000 devices with software 15.5(3)S allows remote attackers to cause a denial of service (ESP QFP CPU consumptio…

Mitigation only
Fix from $1,600 2015-09-02
Telepresence Video Communication Server Software MEDIUM 6.9
CVE-2015-4330

A local file script in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to gain privileges for OS command exe…

Mitigation only
Fix from $1,600 2015-09-02
Ios Xe HIGH 7.8
CVE-2015-6272

Cisco IOS XE 2.1.0 through 2.2.3 and 2.3.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6271

Cisco IOS XE 2.1.0 through 2.4.3 and 2.5.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6270

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6269

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6273

Cisco IOS XE before 3.1.2S on ASR 1000 devices mishandles the automatic setup of Virtual Fragment Reassembly (VFR) by certain firewall and NAT compon…

Mitigation only
Fix from $1,950 2015-08-29
Ios Xe HIGH 7.8
CVE-2015-6268

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-29
Ios Xe HIGH 7.8
CVE-2015-6267

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-29
Identity Services Engine Software MEDIUM 5.0
CVE-2015-6266

The guest portal in Cisco Identity Services Engine (ISE) 3300 1.2(0.899) does not restrict access to uploaded HTML documents, which allows remote att…

Mitigation only
Fix from $1,600 2015-08-28
Prime Infrastructure MEDIUM 6.8
CVE-2015-6262

Cross-site request forgery (CSRF) vulnerability in Cisco Prime Infrastructure 1.2(0.103) and 2.0(0.0) allows remote attackers to hijack the authentic…

Mitigation only
Fix from $1,600 2015-08-25
Wireless Lan Controller Software MEDIUM 5.0
CVE-2015-6258

The Internet Access Point Protocol (IAPP) module on Cisco Wireless LAN Controller (WLC) devices with software 8.1(104.37) allows remote attackers to …

Mitigation only
Fix from $1,600 2015-08-22
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-6256

Cisco ASR 5000 devices with software 19.0.M0.60828 allow remote attackers to cause a denial of service (OSPF process restart) via crafted length fiel…

Mitigation only
Fix from $1,600 2015-08-22
Telepresence Video Communication Server Software MEDIUM 5.0
CVE-2015-4318

Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows remote attackers to cause a denial of service via invalid variables in a…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software MEDIUM 6.5
CVE-2015-4329

The administrator web interface in Cisco TelePresence Video Communication Server (VCS) X8.5.2 allows remote authenticated users to execute arbitrary …

Mitigation only
Fix from $1,600 2015-08-20
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2015-4321

The Unicast Reverse Path Forwarding (uRPF) implementation in Cisco Adaptive Security Appliance (ASA) Software 9.3(1.50), 9.3(2.100), 9.3(3), and 9.4(…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software MEDIUM 5.5
CVE-2015-4319

The password-change feature in the administrative web interface in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 improperly p…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software MEDIUM 5.5
CVE-2015-4316

The Mobile and Remote Access (MRA) endpoint-validation feature in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 improperly va…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software MEDIUM 6.5
CVE-2015-4303

Cisco TelePresence Video Communication Server (VCS) X8.5.2 allows remote authenticated users to execute arbitrary commands in the context of the nobo…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software HIGH 7.2
CVE-2015-4327

The CLI in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to obtain root privileges by writing script argum…

Mitigation only
Fix from $1,950 2015-08-20
Telepresence Video Communication Server Software MEDIUM 5.0
CVE-2015-4317

Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows remote attackers to cause a denial of service via invalid variables in a…

Mitigation only
Fix from $1,600 2015-08-20
Telepresence Video Communication Server Software MEDIUM 5.5
CVE-2015-4315

The Call Policy Configuration page in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.3 improperly validates external DTDs, which…

Mitigation only
Fix from $1,600 2015-08-20
Nx Os MEDIUM 6.1
CVE-2015-4323

Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.9); Nexus 3000 devices 6.0(2)U5(1.41), 7.0(3)I2(0.373), and 7.3(0…

Mitigation only
Fix from $1,600 2015-08-19
Nx Os MEDIUM 5.0
CVE-2015-4296

Nexus Data Broker (NDB) on Cisco Nexus 3000 devices with software 6.0(2)A6(1) allows remote attackers to cause a denial of service (Java process rest…

Mitigation only
Fix from $1,600 2015-08-19
Nx Os MEDIUM 6.1
CVE-2015-4324

Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.81), Nexus 3000 devices 7.3(0)ZN(0.81), Nexus 4000 devices 4.1(2)…

Mitigation only
Fix from $1,600 2015-08-19
Content Security Management Appliance MEDIUM 5.5
CVE-2015-4322

Cisco Content Security Management Appliance (SMA) 8.3.6-039, 9.1.0-31, and 9.1.0-103 improperly restricts the privileges available after LDAP authent…

Mitigation only
Fix from $1,600 2015-08-19
Edge Bluebird Operating System MEDIUM 6.8
CVE-2015-4308

The webGUI configuration-export feature in Cisco Edge Bluebird Operating System 1.2 on Edge 340 devices allows remote authenticated users to obtain s…

Mitigation only
Fix from $1,600 2015-08-19