Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ace 4710 HIGH 7.8
CVE-2009-0625

Unspecified vulnerability in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.2) and Cisco ACE 471…

Mitigation only
Fix from $1,950 2009-02-26
Application Control Engine Module HIGH 7.8
CVE-2009-0742

The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Contro…

Patch available
Fix from $1,950 2009-02-26
Application Control Engine Module MEDIUM 6.8
CVE-2009-0624

Unspecified vulnerability in the SNMPv2c implementation in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers be…

Fix: after 1.2
Fix from $1,600 2009-02-26
iOS MEDIUM 6.8
CVE-2009-0471

Cross-site request forgery (CSRF) vulnerability in the HTTP server in Cisco IOS 12.4(23) allows remote attackers to execute arbitrary commands, as de…

Mitigation only
Fix from $1,600 2009-02-06
Catalyst 3750 Series Integrated Wireless Lan Controller HIGH 9.0
CVE-2009-0062

Unspecified vulnerability in the Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 In…

Mitigation only
Fix from $1,950 2009-02-05
4400 Wireless Lan Controller HIGH 7.8
CVE-2009-0059

The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Control…

Mitigation only
Fix from $1,950 2009-02-05
4400 Wireless Lan Controller HIGH 7.8
CVE-2009-0061

Unspecified vulnerability in the Wireless LAN Controller (WLC) TSEC driver in the Cisco 4400 WLC, Cisco Catalyst 6500 and 7600 Wireless Services Modu…

Mitigation only
Fix from $1,950 2009-02-05
4400 Wireless Lan Controller MEDIUM 6.1
CVE-2009-0058

The Cisco Wireless LAN Controller (WLC), Cisco Catalyst 6500 Wireless Services Module (WiSM), and Cisco Catalyst 3750 Integrated Wireless LAN Control…

Mitigation only
Fix from $1,600 2009-02-05
Security Manager MEDIUM 6.8
CVE-2008-3820

Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server…

Patch available
Fix from $1,600 2009-01-22
Unified Ip Phone 7940g HIGH 7.1
CVE-2008-4444

Cisco Unified IP Phone (aka SIP phone) 7960G and 7940G with firmware P0S3-08-9-00 and possibly other versions before 8.10 allows remote attackers to …

Mitigation only
Fix from $1,950 2009-01-16
Ironport Encryption Appliance MEDIUM 6.8
CVE-2009-0055

Cross-site request forgery (CSRF) vulnerability in the administration interface in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5,…

Mitigation only
Fix from $1,600 2009-01-16
Ironport Encryption Appliance MEDIUM 6.8
CVE-2009-0056

Cross-site request forgery (CSRF) vulnerability in the administration interface in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5,…

Mitigation only
Fix from $1,600 2009-01-16
Ons HIGH 7.8
CVE-2008-3818

Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1, and 8.5.2 allows remote atta…

Mitigation only
Fix from $1,950 2009-01-16
Gss 4480 Global Site Selector MEDIUM 5.0
CVE-2008-3819

dnsserver in Cisco Application Control Engine Global Site Selector (GSS) before 3.0(1) allows remote attackers to cause a denial of service (daemon c…

Patch available
Fix from $1,600 2009-01-08
Wvc54gc HIGH 9.3
CVE-2008-4391EPSS 6%

Stack-based buffer overflow in the SetSource method in the NetCamPlayerWeb11gv2 ActiveX control in NetCamPlayerWeb11gv2.ocx on the Cisco Linksys WVC5…

Fix: after 1.19
Fix from $1,950 2008-12-09
Linksys Wvc54gc Firmware HIGH 7.5
CVE-2008-4390

The Cisco Linksys WVC54GC wireless video camera before firmware 1.25 sends cleartext configuration data in response to a Setup Wizard remote-manageme…

Fix: 1.25+
Fix from $1,950 2008-12-09
iOS MEDIUM 6.8
CVE-2008-5230

The Temporal Key Integrity Protocol (TKIP) implementation in unspecified Cisco products and other vendors' products, as used in WPA and WPA2 on Wi-Fi…

No fix yet
Fix from $1,600 2008-11-25
Catos HIGH 7.1
CVE-2008-4963

Unspecified vulnerability in the VLAN Trunking Protocol (VTP) implementation on Cisco IOS and CatOS, when the VTP operating mode is not transparent, …

Mitigation only
Fix from $1,950 2008-11-06
Adaptive Security Appliance 5500 Series HIGH 7.8
CVE-2008-3816

Unspecified vulnerability in Cisco Adaptive Security Appliances (ASA) 5500 Series and PIX Security Appliances 7.2(4)9 and 7.2(4)10 allows remote atta…

Patch available
Fix from $1,950 2008-10-23
Adaptive Security Appliance 5500 Series HIGH 7.8
CVE-2008-3817

Memory leak in Cisco Adaptive Security Appliances (ASA) 5500 Series and PIX Security Appliances 8.0 before 8.0(4) and 8.1 before 8.1(2) allows remote…

Patch available
Fix from $1,950 2008-10-23
iOS HIGH 7.1
CVE-2008-4609EPSS 32%

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems…

Fix: 12.2+
Fix from $1,950 2008-10-20
Unity HIGH 7.1
CVE-2008-4543

Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentica…

Fix: after 7.0
Fix from $1,950 2008-10-13
Unity MEDIUM 5.0
CVE-2008-4544

Unspecified vulnerability in an unspecified Microsoft API, as used by Cisco Unity and possibly other products, allows remote attackers to cause a den…

No fix yet
Fix from $1,600 2008-10-13
Unity MEDIUM 5.8
CVE-2008-3814

Unspecified vulnerability in Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication…

Patch available
Fix from $1,600 2008-10-08
Linksys Wrt350n HIGH 10.0
CVE-2008-4296

The Cisco Linksys WRT350N with firmware 1.0.3.7 has "admin" as its default password for the "admin" account, which makes it easier for remote attacke…

Mitigation only
Fix from $1,950 2008-09-27
iOS HIGH 9.3
CVE-2008-3807

Cisco IOS 12.2 and 12.3 on Cisco uBR10012 series devices, when linecard redundancy is configured, enables a read/write SNMP service with "private" as…

Mitigation only
Fix from $1,950 2008-09-26
iOS HIGH 8.5
CVE-2008-3805

Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses i…

Mitigation only
Fix from $1,950 2008-09-26
iOS HIGH 8.5
CVE-2008-3806

Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses i…

Mitigation only
Fix from $1,950 2008-09-26
iOS HIGH 7.8
CVE-2008-3798

Cisco IOS 12.4 allows remote attackers to cause a denial of service (device crash) via a normal, properly formed SSL packet that occurs during termin…

Mitigation only
Fix from $1,950 2008-09-26
iOS HIGH 7.8
CVE-2008-3799

Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers …

Mitigation only
Fix from $1,950 2008-09-26