Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unity Connection HIGH 9.0
CVE-2012-0366

Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Adminis…

Fix: after 7.1
Fix from $1,950 2012-03-01
Unity Connection HIGH 7.8
CVE-2012-0367

Cisco Unity Connection before 7.1.5b(Su5), 8.0 and 8.5 before 8.5.1(Su3), and 8.6 before 8.6.2 allows remote attackers to cause a denial of service (…

Fix: after 7.1
Fix from $1,950 2012-03-01
Wireless Lan Controller Software HIGH 7.8
CVE-2012-0368

The administrative management interface on Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0, 7.1 bef…

Mitigation only
Fix from $1,950 2012-03-01
Wireless Lan Controller Software HIGH 7.8
CVE-2012-0369

Cisco Wireless LAN Controller (WLC) devices with software 6.0 and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote at…

Mitigation only
Fix from $1,950 2012-03-01
Wireless Lan Controller Software HIGH 7.8
CVE-2012-0370

Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0 and 7.1 before 7.1.91.0, when WebAuth is enabled, a…

Mitigation only
Fix from $1,950 2012-03-01
Unified Communications Manager HIGH 7.8
CVE-2011-4486

Cisco Unified Communications Manager (CUCM) with software 6.x and 7.x before 7.1(5b)su5, 8.0 before 8.0(3a)su3, and 8.5 and 8.6 before 8.6(2a)su1 and…

Mitigation only
Fix from $1,950 2012-03-01
Telepresence System Software HIGH 7.8
CVE-2012-0330

Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a m…

Mitigation only
Fix from $1,950 2012-03-01
Cius Software HIGH 7.8
CVE-2012-0359

The Cisco Cius with software before 9.2(1) SR2 allows remote attackers to cause a denial of service (device crash or hang) via malformed network traf…

Fix: after 9.2
Fix from $1,950 2012-03-01
Telepresence System Software HIGH 7.5
CVE-2012-0331

Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a c…

Mitigation only
Fix from $1,950 2012-03-01
Unified Communications Manager MEDIUM 6.8
CVE-2011-4487

SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) with software 6.x and 7.x before 7.1(5b)su5, 8.0 before 8.0(3a)su3, and 8.…

Mitigation only
Fix from $1,600 2012-03-01
Small Business Srp520 Series Firmware HIGH 9.0
CVE-2012-0363

The web interface on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows…

Fix: after 1.01.24
Fix from $1,950 2012-02-25
Small Business Srp520 Series Firmware HIGH 9.0
CVE-2012-0365

Directory traversal vulnerability in the Local TFTP file-upload application on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-…

Fix: after 1.01.24
Fix from $1,950 2012-02-25
Small Business Srp520 Series Firmware HIGH 7.8
CVE-2012-0364

Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allow remote attackers to r…

Fix: after 1.01.24
Fix from $1,950 2012-02-25
Nx Os HIGH 7.8
CVE-2012-0352

Cisco NX-OS 4.2.x before 4.2(1)SV1(5.1) on Nexus 1000v series switches; 4.x and 5.0.x before 5.0(2)N1(1) on Nexus 5000 series switches; and 4.2.x bef…

Mitigation only
Fix from $1,950 2012-02-16
Digital Media Manager HIGH 9.0
CVE-2012-0329

Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows remote authenticated users to execute arbitrary code via vectors involving a URL and…

Fix: after 5.2.2
Fix from $1,950 2012-01-19
Telepresence E20 Software HIGH 10.0
CVE-2011-4659

Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video Phone E20 has a default password for the root account after an upgrade to TE 4.1.0,…

Mitigation only
Fix from $1,950 2012-01-19
Linksys Wrt54g Router Firmware HIGH 7.5
CVE-2011-4499

The UPnP IGD implementation in the Broadcom UPnP stack on the Cisco Linksys WRT54G with firmware before 4.30.5, WRT54GS v1 through v3 with firmware b…

Fix: after 4.70.6
Fix from $1,950 2011-11-22
Linksys Wrt54gx Router Firmware HIGH 7.5
CVE-2011-4500

The UPnP IGD implementation on the Cisco Linksys WRT54GX with firmware 2.00.05, when UPnP is enabled, configures the SOAP server to listen on the WAN…

Mitigation only
Fix from $1,950 2011-11-22
Small Business Srp521w HIGH 9.3
CVE-2011-4005

Cross-site request forgery (CSRF) vulnerability in the Services Ready Platform Configuration Utility web interface on the Cisco Small Business SRP521…

Fix: after 1.02.01_mr2
Fix from $1,950 2011-11-03
Unified Communications Manager HIGH 7.8
CVE-2011-0941

Memory leak in Cisco Unified Communications Manager (CUCM) 6.x before 6.1(5)su2, 7.x before 7.1(5b)su3, 8.x before 8.0(3a)su1, and 8.5 before 8.5(1),…

Mitigation only
Fix from $1,950 2011-11-01
Webex Recording Format Player HIGH 9.3
CVE-2011-3319

Buffer overflow in the WRF parsing functionality in the Cisco WebEx Recording Format (WRF) player T26 before SP49 EP40 and T27 before SP28 allows rem…

Mitigation only
Fix from $1,950 2011-10-27
Webex Recording Format Player HIGH 9.3
CVE-2011-4004

Buffer overflow in the ATAS32 processing functionality in the Cisco WebEx Recording Format (WRF) player T26 before SP49 EP40 and T27 before SP28 allo…

Mitigation only
Fix from $1,950 2011-10-27
Unified Ip Interactive Voice Response HIGH 7.8
CVE-2011-3315EPSS 26%

Directory traversal vulnerability in Cisco Unified Communications Manager (CUCM) 5.x and 6.x before 6.1(5)SU2, 7.x before 7.1(5b)SU2, and 8.x before …

Mitigation only
Fix from $1,950 2011-10-27
Video Surveillance 2421 HIGH 7.8
CVE-2011-3318

Cisco Video Surveillance 2421 and 2500 series cameras with software 1.1.x and 2.x before 2.4.0 and Video Surveillance 2600 series cameras with softwa…

Fix: after 4.2.0
Fix from $1,950 2011-10-27
Nx Os MEDIUM 6.8
CVE-2011-2569

Cisco Nexus OS (aka NX-OS) 4.2 and 5.0 and Cisco Unified Computing System with software 1.4 and 2.0 do not properly restrict command-line options, wh…

Mitigation only
Fix from $1,600 2011-10-27
iOS HIGH 7.5
CVE-2011-1640

The ethernet-lldp component in Cisco IOS 12.2 before 12.2(33)SXJ1 does not properly support a large number of LLDP Management Address (MA) TLVs, whic…

Fix: 12.2+
Fix from $1,950 2011-10-22
iOS HIGH 7.5
CVE-2011-2057

The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle (1) a loop between a dot1x enabled port and an open-authen…

Fix: 12.2+
Fix from $1,950 2011-10-22
iOS HIGH 7.5
CVE-2011-2058

The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle an external loop between a pair of dot1x enabled ports, wh…

Fix: 12.2+
Fix from $1,950 2011-10-22
Ciscoworks Common Services MEDIUM 5.0
CVE-2011-2042

The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially s…

Mitigation only
Fix from $1,600 2011-10-22
iOS MEDIUM 5.0
CVE-2011-2059

The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive informa…

Fix: 15.1+
Fix from $1,600 2011-10-22