Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rvs4000 Firmware HIGH 10.0
CVE-2014-0659EPSS 74%

The Cisco WAP4410N access point with firmware through 2.0.6.1, WRVS4400N router with firmware 1.x through 1.1.13 and 2.x through 2.0.2.1, and RVS4000…

Fix: after 2.0.6.1
Fix from $1,950 2014-01-12
Unity Connection MEDIUM 6.8
CVE-2014-0664

The server in Cisco Unity Connection allows remote authenticated users to cause a denial of service (CPU consumption) via unspecified IMAP commands, …

Mitigation only
Fix from $1,600 2014-01-10
Unified Ip Phones 9900 Series Firmware MEDIUM 5.4
CVE-2014-0658

Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898.

Mitigation only
Fix from $1,600 2014-01-10
Unified Presence Server MEDIUM 6.5
CVE-2013-6983

SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to execute arbitrary SQL commands…

Mitigation only
Fix from $1,600 2013-12-31
Ios Xe MEDIUM 5.4
CVE-2013-6981

Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka B…

Fix: after 3.7s
Fix from $1,600 2013-12-28
Ios Xe MEDIUM 5.4
CVE-2013-6979

The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies on the Linux-IOS internal-network configuration, w…

Mitigation only
Fix from $1,600 2013-12-23
Epc3925 MEDIUM 6.8
CVE-2013-6976

Cross-site request forgery (CSRF) vulnerability in goform/Quick_setup on Cisco EPC3925 devices allows remote attackers to hijack the authentication o…

No fix yet
Fix from $1,600 2013-12-19
Cisco Ons 15454 System Software MEDIUM 5.0
CVE-2013-6701

The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritiz…

Mitigation only
Fix from $1,600 2013-12-18
Webex Training Center MEDIUM 5.8
CVE-2013-6966

Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta…

Mitigation only
Fix from $1,600 2013-12-17
Webex Training Center MEDIUM 6.8
CVE-2013-6710

Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Training Center allows remote attackers to hijack the authentication of unspecified vi…

Mitigation only
Fix from $1,600 2013-12-14
Webex Sales Center MEDIUM 5.8
CVE-2013-6959

Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks…

Mitigation only
Fix from $1,600 2013-12-14
Webex Sales Center MEDIUM 5.8
CVE-2013-6967

Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web si…

No fix yet
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.8
CVE-2013-6971

Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6965

The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation is completed, which allows rem…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6968

Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail address exists, which allows …

Mitigation only
Fix from $1,600 2013-12-14
Webex Meeting Center MEDIUM 5.0
CVE-2013-6970

Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages within server responses, aka Bug…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6972

Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conference attendance, by reading…

Mitigation only
Fix from $1,600 2013-12-14
Webex Training Center MEDIUM 5.0
CVE-2013-6709

The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed, which allows remote attacker…

Mitigation only
Fix from $1,600 2013-12-14
Unified Communications Manager HIGH 7.3
CVE-2013-7030EPSS 5%

The TFTP service in Cisco Unified Communications Manager (aka CUCM or Unified CM) allows remote attackers to obtain sensitive information from a phon…

No fix yet
Fix from $1,950 2013-12-12
Scientific Atlanta Dpr\/epr2320 Firmware HIGH 8.3
CVE-2013-7043

Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Scientific Atlanta DPR2320R2 routers with software 2.0.2r1262-090417 allow remote…

No fix yet
Fix from $1,950 2013-12-10
Cloud Portal MEDIUM 5.0
CVE-2013-6708

Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889.

Mitigation only
Fix from $1,600 2013-12-10
Ons 15454 HIGH 7.1
CVE-2013-6703

The TLS/SSLv3 module on Cisco ONS 15454 controller cards allows remote attackers to cause a denial of service (card reset) via crafted (1) TLS or (2)…

Mitigation only
Fix from $1,950 2013-12-03
Ios Xe HIGH 7.1
CVE-2013-6704

Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to cause a denial of service (memory consumption) via …

Mitigation only
Fix from $1,950 2013-12-03
iOS MEDIUM 6.1
CVE-2013-6705

The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (IPDT AVL corruption and device re…

Mitigation only
Fix from $1,600 2013-12-03
Adaptive Security Appliance Software HIGH 7.1
CVE-2013-6696

Cisco Adaptive Security Appliance (ASA) Software does not properly handle errors during the processing of DNS responses, which allows remote attacker…

Mitigation only
Fix from $1,950 2013-12-02
Ios Xe MEDIUM 5.4
CVE-2013-6706

The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS …

Mitigation only
Fix from $1,600 2013-11-29
Ios Xr MEDIUM 5.0
CVE-2013-6700

The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload) via a request for an unspecified MIB, aka Bug I…

Mitigation only
Fix from $1,600 2013-11-29
Wireless Lan Controller MEDIUM 5.0
CVE-2013-6699

The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller (WLC) devices allows remote …

Mitigation only
Fix from $1,600 2013-11-22
Ios Xe MEDIUM 6.3
CVE-2013-6692

Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP address, which allows remote authenticated users to ca…

Fix: after 3.8s
Fix from $1,600 2013-11-22
iOS MEDIUM 5.4
CVE-2013-6693

The MLDP implementation in Cisco IOS 15.3(3)S and earlier on 7600 routers, when many VRFs are configured, allows remote attackers to cause a denial o…

Fix: after 15.3
Fix from $1,600 2013-11-22