Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Skinny Client Control Protocol \(sccp\) Firmware HIGH 10.0
CVE-2008-0530EPSS 5%

Buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP and SIP firmware might allow remote attackers to execute arbitrar…

Patch available
Fix from $1,950 2008-02-15
Skinny Client Control Protocol \(sccp\) Firmware HIGH 9.3
CVE-2008-0531

Heap-based buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SIP firmware might allow remote SIP servers to execute arbi…

Patch available
Fix from $1,950 2008-02-15
Skinny Client Control Protocol \(sccp\) Firmware HIGH 7.8
CVE-2008-0526

Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a long IC…

Patch available
Fix from $1,950 2008-02-15
Skinny Client Control Protocol \(sccp\) Firmware HIGH 7.8
CVE-2008-0527

The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a cra…

Patch available
Fix from $1,950 2008-02-15
Unified Callmanager MEDIUM 6.5
CVE-2008-0026

SQL injection vulnerability in Cisco Unified CallManager/Communications Manager (CUCM) 5.0/5.1 before 5.1(3a) and 6.0/6.1 before 6.1(1a) allows remot…

Mitigation only
Fix from $1,600 2008-02-14
Application Velocity System HIGH 10.0
CVE-2008-0029

Cisco Application Velocity System (AVS) before 5.1.0 is installed with default passwords for some system accounts, which allows remote attackers to g…

Fix: after 5.0.1
Fix from $1,950 2008-01-23
Adaptive Security Appliance Software HIGH 7.1
CVE-2008-0028

Unspecified vulnerability in Cisco PIX 500 Series Security Appliance and 5500 Series Adaptive Security Appliance (ASA) before 7.2(3)6 and 8.0(3), whe…

Fix: 7.2+
Fix from $1,950 2008-01-23
Unified Callmanager HIGH 10.0
CVE-2008-0027EPSS 57%

Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 …

Patch available
Fix from $1,950 2008-01-17
Firewall Services Module HIGH 7.8
CVE-2007-5584

Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.2(3) allows remote attackers to cause a denial of service (device reload) via cr…

Patch available
Fix from $1,950 2007-12-20
Ip Phone 7940 HIGH 7.8
CVE-2007-5583EPSS 6%

Cisco IP Phone 7940 with firmware P0S3-08-7-00 allows remote attackers to cause a denial of service ("486 Busy" responses or device reboot) via a seq…

No fix yet
Fix from $1,950 2007-12-18
Security Agent HIGH 10.0
CVE-2007-5580EPSS 6%

Buffer overflow in a certain driver in Cisco Security Agent 4.5.1 before 4.5.1.672, 5.0 before 5.0.0.225, 5.1 before 5.1.0.106, and 5.2 before 5.2.0.…

Mitigation only
Fix from $1,950 2007-12-15
Catos HIGH 7.1
CVE-2007-5651

Unspecified vulnerability in the Extensible Authentication Protocol (EAP) implementation in Cisco IOS 12.3 and 12.4 on Cisco Access Points and 1310 W…

Mitigation only
Fix from $1,950 2007-10-23
Firewall Services Module HIGH 7.8
CVE-2007-5570

Cisco Firewall Services Module (FWSM) 3.2(1), and 3.1(5) and earlier, allows remote attackers to cause a denial of service (device reload) via a craf…

Fix: after 3.2
Fix from $1,950 2007-10-18
Firewall Services Module HIGH 7.1
CVE-2007-5568

Cisco PIX and ASA appliances with 7.0 through 8.0 software, and Cisco Firewall Services Module (FWSM) 3.1(5) and earlier, allow remote attackers to c…

Fix: after 3.1
Fix from $1,950 2007-10-18
Adaptive Security Appliance HIGH 7.1
CVE-2007-5569

Cisco PIX and ASA appliances with 7.1 and 7.2 software, when configured for TLS sessions to the device, allow remote attackers to cause a denial of s…

Mitigation only
Fix from $1,950 2007-10-18
Firewall Services Module MEDIUM 6.8
CVE-2007-5571

Cisco Firewall Services Module (FWSM) 3.1(6), and 3.2(2) and earlier, does not properly enforce edited ACLs, which might allow remote attackers to by…

Fix: after 3.2
Fix from $1,600 2007-10-18
iOS HIGH 9.3
CVE-2007-5552

Integer overflow in Cisco IOS allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: as of 20071016, the only disclosure i…

No fix yet
Fix from $1,950 2007-10-18
iOS HIGH 7.1
CVE-2007-5551

Off-by-one error in Cisco IOS allows remote attackers to execute arbitrary code via unspecified vectors that trigger a heap-based buffer overflow. N…

Mitigation only
Fix from $1,950 2007-10-18
iOS MEDIUM 6.9
CVE-2007-5548

Multiple stack-based buffer overflows in Command EXEC in Cisco IOS allow local users to gain privileges via unspecified vectors, aka (1) PSIRT-047497…

No fix yet
Fix from $1,600 2007-10-18
iOS MEDIUM 5.0
CVE-2007-5550

Unspecified vulnerability in Cisco IOS allows remote attackers to obtain the IOS version via unspecified vectors involving a "common network service"…

No fix yet
Fix from $1,600 2007-10-18
Unified Callmanager HIGH 10.0
CVE-2007-5538EPSS 6%

Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), …

Fix: after 5.1
Fix from $1,950 2007-10-18
Unified Contact Center Enterprise HIGH 9.0
CVE-2007-5539

Unspecified vulnerability in Cisco Unified Intelligent Contact Management Enterprise (ICME), Unified ICM Hosted (ICMH), Unified Contact Center Enterp…

Mitigation only
Fix from $1,950 2007-10-18
Unified Callmanager HIGH 7.8
CVE-2007-5537

Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(2), and Unified CallManager 5.0, allow remote attackers to cause a d…

Fix: after 5.1
Fix from $1,950 2007-10-18
Call Manager MEDIUM 5.0
CVE-2007-5468

Cisco CallManager 5.1.1.3000-5 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote atta…

Mitigation only
Fix from $1,600 2007-10-16
Wireless Lan Solution Engine HIGH 10.0
CVE-2007-5382

The conversion utility for converting CiscoWorks Wireless LAN Solution Engine (WLSE) 4.1.91.0 and earlier to Cisco Wireless Control System (WCS) crea…

Fix: after 4.1.91.0
Fix from $1,950 2007-10-12
iOS HIGH 9.3
CVE-2007-5381EPSS 15%

Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to ex…

No fix yet
Fix from $1,950 2007-10-12
Catalyst 6500 MEDIUM 5.0
CVE-2007-5134

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might …

Patch available
Fix from $1,600 2007-09-27
Content Switching Module With Ssl HIGH 7.8
CVE-2007-4788

Cisco Content Switching Modules (CSM) 4.2 before 4.2.3a, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.2a, allow remote attacker…

Fix: after 4.2
Fix from $1,950 2007-09-10
Content Switching Module With Ssl HIGH 7.8
CVE-2007-4789

Cisco Content Switching Modules (CSM) 4.2 before 4.2.7, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.6, when service terminatio…

Patch available
Fix from $1,950 2007-09-10
Adaptive Security Appliance Software MEDIUM 5.3
CVE-2007-4786

Cisco Adaptive Security Appliance (ASA) running PIX 7.0 before 7.0.7.1, 7.1 before 7.1.2.61, 7.2 before 7.2.2.34, and 8.0 before 8.0.2.11, when AAA i…

Fix: 7.0.7.1 / 7.1.2.61+
Fix from $1,600 2007-09-10