Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firewall Services Module HIGH 7.8
CVE-2007-0963

Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.3), when set to log at the "debug" level, allows remote attackers…

Patch available
Fix from $1,950 2007-02-16
Firewall Services Module HIGH 7.8
CVE-2007-0965

Cisco FWSM 3.x before 3.1(3.2), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote at…

Patch available
Fix from $1,950 2007-02-16
Firewall Services Module HIGH 7.8
CVE-2007-0966

Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.11), when the HTTPS server is enabled, allows remote attackers to cause a denial of service (d…

Patch available
Fix from $1,950 2007-02-16
Firewall Services Module HIGH 7.8
CVE-2007-0967

Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.1) allows remote attackers to cause a denial of service (device reboot) via malformed SNMP req…

Patch available
Fix from $1,950 2007-02-16
Firewall Services Module MEDIUM 5.4
CVE-2007-0964

Cisco FWSM 3.x before 3.1(3.18), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote a…

Patch available
Fix from $1,600 2007-02-16
iOS HIGH 7.1
CVE-2007-0918

The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XA, 12.3YA, 12.3T, and other trains allows remote …

Mitigation only
Fix from $1,950 2007-02-14
iOS MEDIUM 6.4
CVE-2007-0917

The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signatures that use regular express…

Mitigation only
Fix from $1,600 2007-02-14
iOS HIGH 7.8
CVE-2007-0648

Cisco IOS after 12.3(14)T, 12.3(8)YC1, 12.3(8)YG, and 12.4, with voice support and without Session Initiated Protocol (SIP) configured, allows remote…

Patch available
Fix from $1,950 2007-02-01
Ios Transmission Control Protocol HIGH 10.0
CVE-2007-0480EPSS 9%

Cisco IOS 9.x, 10.x, 11.x, and 12.x and IOS XR 2.0.x, 3.0.x, and 3.2.x allows remote attackers to cause a denial of service or execute arbitrary code…

Mitigation only
Fix from $1,950 2007-01-25
Ios Transmission Control Protocol HIGH 7.8
CVE-2007-0479

Memory leak in the TCP listener in Cisco IOS 9.x, 10.x, 11.x, and 12.x allows remote attackers to cause a denial of service by sending crafted TCP tr…

Mitigation only
Fix from $1,950 2007-01-25
Ios Transmission Control Protocol HIGH 7.8
CVE-2007-0481

Cisco IOS allows remote attackers to cause a denial of service (crash) via a crafted IPv6 Type 0 Routing header.

Mitigation only
Fix from $1,950 2007-01-25
Security Monitoring Analysis And Response System MEDIUM 6.4
CVE-2007-0397

The Cisco Security Monitoring, Analysis and Response System (CS-MARS) before 4.2.3 and Adaptive Security Device Manager (ASDM) before 5.2(2.54) do no…

Patch available
Fix from $1,600 2007-01-20
Ip Contact Center Enterprise MEDIUM 5.0
CVE-2007-0198

The JTapi Gateway process in Cisco Unified Contact Center Enterprise, Unified Contact Center Hosted, IP Contact Center Enterprise, and Cisco IP Conta…

Fix: after 7.1
Fix from $1,600 2007-01-11
iOS MEDIUM 5.0
CVE-2007-0199

The Data-link Switching (DLSw) feature in Cisco IOS 11.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via "an in…

Fix: after 12.4
Fix from $1,600 2007-01-11
Secure Access Control Server HIGH 7.5
CVE-2007-0105EPSS 11%

Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before …

Fix: after 4.0.1
Fix from $1,950 2007-01-09
Network Admission Control Manager And Server System Software HIGH 10.0
CVE-2007-0057

Cisco Clean Access (CCA) 3.6.x through 3.6.4.2 and 4.0.x through 4.0.3.2 does not properly configure or allow modification of a shared secret authent…

Fix: 4.0.3.2+
Fix from $1,950 2007-01-04
Network Admission Control Manager And Server System Software HIGH 7.8
CVE-2007-0058

Cisco Clean Access (CCA) 3.5.x through 3.5.9 and 3.6.x through 3.6.1.1 on the Clean Access Manager (CAM) allows remote attackers to bypass authentica…

Fix: after 3.6.1.1
Fix from $1,950 2007-01-04
Secure Access Control Server HIGH 10.0
CVE-2006-4098EPSS 13%

Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before…

Mitigation only
Fix from $1,950 2006-12-31
Secure Access Control Server HIGH 7.8
CVE-2006-4097

Multiple unspecified vulnerabilities in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engi…

Fix: after 4.0
Fix from $1,950 2006-12-31
Security Agent Management Center HIGH 7.5
CVE-2006-5660

Cisco Security Agent Management Center (CSAMC) 5.1 before 5.1.0.79 does not properly handle certain LDAP error messages, which allows remote attacker…

Patch available
Fix from $1,950 2006-11-03
Security Agent HIGH 7.8
CVE-2006-5553

Cisco Security Agent (CSA) for Linux 4.5 before 4.5.1.657 and 5.0 before 5.0.0.193, as used by Unified CallManager (CUCM) and Unified Presence Server…

Patch available
Fix from $1,950 2006-10-26
Secure Desktop MEDIUM 5.5
CVE-2006-5393

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local u…

Mitigation only
Fix from $1,600 2006-10-18
2700 Wireless Location Appliance HIGH 10.0
CVE-2006-5288

Cisco 2700 Series Wireless Location Appliances before 2.1.34.0 have a default administrator username "root" and password "password," which allows rem…

Patch available
Fix from $1,950 2006-10-13
Network Access Control HIGH 7.5
CVE-2006-4983

Cisco NAC allows quarantined devices to communicate over the network with (1) DNS, (2) DHCP, and (3) EAPoUDP, which allows attackers to bypass contro…

Mitigation only
Fix from $1,950 2006-09-26
iOS HIGH 10.0
CVE-2006-4950EPSS 6%

Cisco IOS 12.2 through 12.4 before 20060920, as used by Cisco IAD2430, IAD2431, and IAD2432 Integrated Access Devices, the VG224 Analog Phone Gateway…

Fix: after 12.3
Fix from $1,950 2006-09-23
Ips Sensor Software HIGH 7.5
CVE-2006-4911

Unspecified vulnerability in Cisco IPS 5.0 before 5.0(6p2) and 5.1 before 5.1(2), when running in inline or promiscuous mode, allows remote attackers…

Fix: 5.0 / 5.1+
Fix from $1,950 2006-09-21
Ids Sensor Software MEDIUM 5.0
CVE-2006-4910

The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to …

Mitigation only
Fix from $1,600 2006-09-21
iOS HIGH 7.8
CVE-2006-4774EPSS 5%

The VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) allows remote attackers to cause a denial of service by sending a VTP version 1 summar…

Patch available
Fix from $1,950 2006-09-14
iOS HIGH 7.8
CVE-2006-4775EPSS 5%

The VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) and CatOS allows remote attackers to cause a denial of service by sending a VTP update…

Patch available
Fix from $1,950 2006-09-14
iOS HIGH 7.5
CVE-2006-4776EPSS 8%

Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) allows remote attackers to execute arbitrary code via a …

Patch available
Fix from $1,950 2006-09-14