Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Prime Infrastructure MEDIUM 6.8
CVE-2013-1153

Cross-site request forgery (CSRF) vulnerability in the web interface in Cisco Prime Infrastructure allows remote attackers to hijack the authenticati…

Mitigation only
Fix from $1,600 2013-03-07
200 Series Smart Switches MEDIUM 5.0
CVE-2013-1154

The Cisco Small Business 200 Series Smart Switch 1.2.7.76 and earlier, Small Business 300 Series Managed Switch 1.2.7.76 and earlier, and Small Busin…

Fix: after 1.2.7.76
Fix from $1,600 2013-03-07
Aironet Access Point Software MEDIUM 6.1
CVE-2012-6026

The HTTP Profiler on the Cisco Aironet Access Point with software 15.2 and earlier does not properly manage buffers, which allows remote attackers to…

Mitigation only
Fix from $1,600 2013-03-05
Wireless Lan Controller Software MEDIUM 6.1
CVE-2013-1141

The mDNS snooping functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.4.1.54 and earlier does not properly manage buffers, w…

Fix: after 7.4.1.54
Fix from $1,600 2013-02-28
Network Admission Control MEDIUM 5.8
CVE-2013-1124

The Cisco Network Admission Control (NAC) agent on Mac OS X does not verify the X.509 certificate of an Identity Services Engine (ISE) server during …

Mitigation only
Fix from $1,600 2013-02-28
Unified Communications Manager HIGH 7.8
CVE-2013-1133

Cisco Unified Communications Manager (CUCM) 8.6 before 8.6(2a)su2, 8.6 BE3k before 8.6(4) BE3k, and 9.x before 9.0(1) allows remote attackers to caus…

Mitigation only
Fix from $1,950 2013-02-27
Unified Presence Server HIGH 7.8
CVE-2013-1137

Cisco Unified Presence Server (CUPS) 8.6, 9.0, and 9.1 before 9.1.1 allows remote attackers to cause a denial of service (CPU consumption) via crafte…

Mitigation only
Fix from $1,950 2013-02-27
Unified Communications Manager HIGH 7.1
CVE-2013-1134

The Location Bandwidth Manager (LBM) Intracluster-communication feature in Cisco Unified Communications Manager (CUCM) 9.x before 9.1(1) does not req…

Mitigation only
Fix from $1,950 2013-02-27
Prime Central For Hosted Collaboration Solution Assurance HIGH 7.1
CVE-2013-1135

Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.0 allows remote attackers to cause a denial of service (CPU consumpti…

Mitigation only
Fix from $1,950 2013-02-27
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2013-1138

The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory co…

Mitigation only
Fix from $1,600 2013-02-25
Application Networking Manager MEDIUM 6.8
CVE-2013-1125

The command-line interface in Cisco Identity Services Engine Software, Secure Access Control System (ACS), Application Networking Manager (ANM), Prim…

Mitigation only
Fix from $1,600 2013-02-19
Unity Connection MEDIUM 5.0
CVE-2013-1129

Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many…

Mitigation only
Fix from $1,600 2013-02-19
Unified Meetingplace MEDIUM 6.8
CVE-2013-1128

Multiple cross-site request forgery (CSRF) vulnerabilities in the server in Cisco Unified MeetingPlace before 7.1(2.2000) allow remote attackers to h…

Fix: after 7.1
Fix from $1,600 2013-02-15
Ata 187 Analog Telephone Adaptor Firmware HIGH 9.0
CVE-2013-1111

The Cisco ATA 187 Analog Telephone Adaptor with firmware 9.2.1.0 and 9.2.3.1 before ES build 4 does not properly implement access control, which allo…

Mitigation only
Fix from $1,950 2013-02-13
Small Business Wireless Access Ppoints MEDIUM 6.4
CVE-2013-1131

Cisco Small Business Wireless Access Points WAP200, WAP2000, WAP200E, and WET200 allow remote attackers to cause a denial of service or possibly have…

Mitigation only
Fix from $1,600 2013-02-13
iOS MEDIUM 5.4
CVE-2013-1100

The HTTP server in Cisco IOS on Catalyst switches does not properly handle TCP socket events, which allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2013-02-13
Nx Os MEDIUM 5.0
CVE-2013-1122

Cisco NX-OS on the Nexus 7000, when a certain Overlay Transport Virtualization (OTV) configuration is used, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,600 2013-02-13
Unity Express Software MEDIUM 6.8
CVE-2013-1120

Multiple cross-site request forgery (CSRF) vulnerabilities on the Cisco Unity Express with software before 8.0 allow remote attackers to hijack the a…

Fix: after 7.4
Fix from $1,600 2013-02-06
Carrier Routing System MEDIUM 5.0
CVE-2013-1112

Cisco Carrier Routing System (CRS) allows remote attackers to cause a denial of service (packet loss) via short malformed packets that trigger ineffi…

Mitigation only
Fix from $1,600 2013-01-31
Wireless Lan Controller Software HIGH 9.0
CVE-2013-1105

Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.3, 7.1 and 7.2 before 7.2.111.3, and 7.3 before 7.3.101.0 allow remote a…

Mitigation only
Fix from $1,950 2013-01-24
2000 Wireless Lan Controller HIGH 9.0
CVE-2013-1104

The HTTP Profiling functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.3.101.0 allows remote authenticated users to execute …

Mitigation only
Fix from $1,950 2013-01-24
Wireless Lan Controller Software HIGH 7.8
CVE-2013-1102

The Wireless Intrusion Prevention System (wIPS) component on Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.235.0, 7.1 and …

Mitigation only
Fix from $1,950 2013-01-24
Wireless Lan Controller Software HIGH 7.8
CVE-2013-1103

Cisco Wireless LAN Controller (WLC) devices with software 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote attackers …

Mitigation only
Fix from $1,950 2013-01-24
Adaptive Security Appliance Software MEDIUM 6.3
CVE-2012-6395

Cisco Adaptive Security Appliances (ASA) devices with firmware 8.4 do not properly validate unspecified input related to UNC share pathnames, which a…

Mitigation only
Fix from $1,600 2013-01-18
Adaptive Security Appliance Software MEDIUM 6.3
CVE-2012-5717

Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authentica…

Mitigation only
Fix from $1,600 2013-01-18
Prime Lan Management Solution HIGH 10.0
CVE-2012-6392

Cisco Prime LAN Management Solution (LMS) 4.1 through 4.2.2 on Linux does not properly validate authentication and authorization requests in TCP sess…

Mitigation only
Fix from $1,950 2013-01-17
Adaptive Security Appliance Software HIGH 7.8
CVE-2012-5419

Cisco Adaptive Security Appliance (ASA) software 8.7.1 and 8.7.1.1 for the Cisco ASA 1000V Cloud Firewall allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,950 2013-01-17
Webex Training Center MEDIUM 6.8
CVE-2013-1109

Cross-site request forgery (CSRF) vulnerability in testingLibraryAction.do in the Training Center testing library in Cisco WebEx Training Center allo…

Mitigation only
Fix from $1,600 2013-01-17
Telepresence Video Communication Servers Software MEDIUM 5.0
CVE-2012-5444

Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote attackers to create co…

Mitigation only
Fix from $1,600 2013-01-17
Skinny Client Control Protocol Software MEDIUM 6.8
CVE-2012-5445

The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properl…

Fix: after 9.2
Fix from $1,600 2012-12-28