Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wireless Lan Controller Software MEDIUM 6.8
CVE-2012-5992

Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allow remote attack…

No fix yet
Fix from $1,600 2012-12-19
Wireless Lan Controller Software MEDIUM 6.3
CVE-2012-5991EPSS 6%

screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to cause a…

No fix yet
Fix from $1,600 2012-12-19
Secure Access Control Server MEDIUM 5.0
CVE-2012-5424

Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP …

Mitigation only
Fix from $1,600 2012-11-07
Prime Data Center Network Manager HIGH 10.0
CVE-2012-5417

Cisco Prime Data Center Network Manager (DCNM) before 6.1(1) does not properly restrict access to certain JBoss MainDeployer functionality, which all…

Mitigation only
Fix from $1,950 2012-11-02
Unified Meetingplace HIGH 7.8
CVE-2012-5416

Buffer overflow in Cisco Unified MeetingPlace Web Conferencing before 7.1MR1 Patch 1, 8.0 before 8.0MR1 Patch 1, and 8.5 before 8.5MR3 allows remote …

Fix: after 7.1
Fix from $1,950 2012-11-02
Adaptive Security Appliance Software HIGH 9.0
CVE-2012-4661

Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Mod…

Mitigation only
Fix from $1,950 2012-10-29
Adaptive Security Appliance Software HIGH 7.8
CVE-2012-4660

The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500…

Mitigation only
Fix from $1,950 2012-10-29
Adaptive Security Appliance Software HIGH 7.1
CVE-2012-4643

The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series de…

Mitigation only
Fix from $1,950 2012-10-29
Adaptive Security Appliance Software HIGH 7.1
CVE-2012-4659

The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Modul…

Mitigation only
Fix from $1,950 2012-10-29
Adaptive Security Appliance Software HIGH 7.1
CVE-2012-4662

The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6…

Mitigation only
Fix from $1,950 2012-10-29
Adaptive Security Appliance Software HIGH 7.1
CVE-2012-4663

The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6…

Mitigation only
Fix from $1,950 2012-10-29
Webex Recording Format Player HIGH 9.3
CVE-2012-3937EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3938EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3939EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Patch available
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3940EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Patch available
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3941EPSS 5%

Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to e…

Patch available
Fix from $1,950 2012-10-25
Webex Recording Format Player HIGH 9.3
CVE-2012-3936EPSS 5%

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2012-10-25
10008 Router HIGH 7.8
CVE-2012-4620

Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4621

The Device Sensor feature in Cisco IOS 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via a DHCP packet, aka …

Mitigation only
Fix from $1,950 2012-09-27
Ios Xe HIGH 7.8
CVE-2012-4623

The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x, 3.1.xS before 3.1.4S, 3.1.xSG and 3.2.xSG befo…

Mitigation only
Fix from $1,950 2012-09-27
Ios Xe HIGH 7.1
CVE-2012-4622

Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, when a Supervisor Engine 7L-E card is installed, allows remote attackers to cau…

Mitigation only
Fix from $1,950 2012-09-27
Unified Communications Manager HIGH 7.8
CVE-2012-3949

The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1;…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4618

The SIP ALG feature in the NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (de…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.8
CVE-2012-4619

The NAT implementation in Cisco IOS 12.2, 12.4, and 15.0 through 15.2 allows remote attackers to cause a denial of service (device reload) via transi…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.1
CVE-2012-3950

The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories a…

Mitigation only
Fix from $1,950 2012-09-27
iOS HIGH 7.1
CVE-2012-4617

The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2012-09-27
Secure Desktop HIGH 9.3
CVE-2012-4655

The WebLaunch feature in Cisco Secure Desktop before 3.6.6020 does not properly validate binaries that are received by the downloader process, which …

Mitigation only
Fix from $1,950 2012-09-24
Identity Services Engine Software MEDIUM 6.8
CVE-2012-3908

Multiple cross-site request forgery (CSRF) vulnerabilities in the ISE Administrator user interface (aka the Apache Tomcat interface) on Cisco Identit…

Mitigation only
Fix from $1,600 2012-09-16
iOS MEDIUM 5.0
CVE-2012-3915

The DMVPN tunnel implementation in Cisco IOS 15.2 allows remote attackers to cause a denial of service (persistent IKE state) via a large volume of h…

Mitigation only
Fix from $1,600 2012-09-16
Application Control Engine Module MEDIUM 5.0
CVE-2012-3919

The Cisco Application Control Engine (ACE) module 3.0 for Cisco Catalyst switches and Cisco routers does not properly monitor Load Balancer (LB) queu…

Mitigation only
Fix from $1,600 2012-09-16