Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Catalyst 6500 MEDIUM 5.0
CVE-2003-1002

Cisco Firewall Services Module (FWSM) in Cisco Catalyst 6500 and 7600 series devices allows remote attackers to cause a denial of service (crash and …

Patch available
Fix from $1,600 2004-01-05
Pix Firewall MEDIUM 5.0
CVE-2003-1004

Cisco PIX firewall 6.2.x through 6.2.3, when configured as a VPN Client, allows remote attackers to cause a denial of service (dropped IPSec tunnel c…

Patch available
Fix from $1,600 2004-01-05
Leap HIGH 10.0
CVE-2003-1096EPSS 10%

The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary attacks, which makes it easier f…

No fix yet
Fix from $1,950 2003-12-31
iOS HIGH 9.3
CVE-2003-1398

Cisco IOS 12.0 through 12.2, when IP routing is disabled, accepts false ICMP redirect messages, which allows remote attackers to cause a denial of se…

Mitigation only
Fix from $1,950 2003-12-31
iOS HIGH 7.5
CVE-2003-1109EPSS 7%

The Session Initiation Protocol (SIP) implementation in multiple Cisco products including IP Phone models 7940 and 7960, IOS versions in the 12.2 tra…

Patch available
Fix from $1,950 2003-12-31
Content Services Switch 11000 MEDIUM 5.0
CVE-2003-1132

The DNS server for Cisco Content Service Switch (CSS) 11000 and 11500, when prompted for a nonexistent AAAA record, responds with response code 3 (NX…

Mitigation only
Fix from $1,600 2003-12-31
iOS MEDIUM 5.0
CVE-2003-0851EPSS 5%

OpenSSL 0.9.6k allows remote attackers to cause a denial of service (crash via large recursion) via malformed ASN.1 sequences.

Patch available
Fix from $1,600 2003-12-01
Resource Manager HIGH 10.0
CVE-2003-0731

CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to c…

Patch available
Fix from $1,950 2003-10-20
Resource Manager HIGH 10.0
CVE-2003-0732

CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to obtain restricted information and possibly gain administrative…

Patch available
Fix from $1,950 2003-10-20
iOS HIGH 7.5
CVE-2003-0647EPSS 6%

Buffer overflow in the HTTP server for Cisco IOS 12.2 and earlier allows remote attackers to execute arbitrary code via an extremely long (2GB) HTTP …

Fix: after 12.2
Fix from $1,950 2003-08-27
iOS MEDIUM 5.0
CVE-2003-0511EPSS 9%

The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2003-08-27
iOS MEDIUM 5.0
CVE-2003-0512

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allo…

Mitigation only
Fix from $1,600 2003-08-27
Webns MEDIUM 5.0
CVE-2003-0677

Cisco CSS 11000 routers on the CS800 chassis allow remote attackers to cause a denial of service (CPU consumption or reboot) via a large number of TC…

Patch available
Fix from $1,600 2003-08-27
iOS HIGH 7.8
CVE-2003-0567EPSS 17%

Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 pa…

Patch available
Fix from $1,950 2003-08-18
iOS MEDIUM 5.0
CVE-2003-0305

The Service Assurance Agent (SAA) in Cisco IOS 12.0 through 12.2, aka Response Time Reporter (RTR), allows remote attackers to cause a denial of serv…

Patch available
Fix from $1,600 2003-06-09
Vpn 3015 Concentrator HIGH 7.5
CVE-2003-0258

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 3.5.x through 4.0.REL, when enabling IPSec over TCP for a port on the concentr…

Patch available
Fix from $1,950 2003-05-27
Vpn 3015 Concentrator MEDIUM 5.0
CVE-2003-0259

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7 allows remote attackers to cause a denial of service (relo…

Patch available
Fix from $1,600 2003-05-27
Vpn 3015 Concentrator MEDIUM 5.0
CVE-2003-0260

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7A allow remote attackers to cause a denial of service (slow…

Patch available
Fix from $1,600 2003-05-27
Catos HIGH 9.3
CVE-2003-0216

Unknown vulnerability in Cisco Catalyst 7.5(1) allows local users to bypass authentication and gain access to the enable mode without a password.

Mitigation only
Fix from $1,950 2003-05-12
Secure Access Control Server HIGH 7.5
CVE-2003-0210EPSS 6%

Buffer overflow in the administration service (CSAdmin) for Cisco Secure ACS before 3.1.2 allows remote attackers to cause a denial of service and po…

Patch available
Fix from $1,950 2003-05-12
Vpn 5000 Client HIGH 7.2
CVE-2002-1492

Buffer overflows in the Cisco VPN 5000 Client before 5.2.7 for Linux, and VPN 5000 Client before 5.2.8 for Solaris, allow local users to gain root pr…

Patch available
Fix from $1,950 2003-04-02
Vpn 5000 Client MEDIUM 5.0
CVE-2002-1491

The Cisco VPN 5000 Client for MacOS before 5.2.2 records the most recently used login password in plaintext when saving "Default Connection" settings…

Patch available
Fix from $1,600 2003-04-02
Optical Networking Systems Software HIGH 10.0
CVE-2002-1558

Cisco ONS15454 and ONS15327 running ONS before 3.4 have an account for the VxWorks Operating System in the TCC, TCC+ and XTC that cannot be changed o…

Patch available
Fix from $1,950 2003-03-31
Optical Networking Systems Software HIGH 7.5
CVE-2002-1553

Cisco ONS15454 and ONS15327 running ONS before 3.4 allows remote attackers to modify the system configuration and delete files by establishing an FTP…

Patch available
Fix from $1,950 2003-03-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2002-1555

Cisco ONS15454 and ONS15327 running ONS before 3.4 uses a "public" SNMP community string that cannot be changed, which allows remote attackers to obt…

Patch available
Fix from $1,600 2003-03-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2002-1556

Cisco ONS15454 and ONS15327 running ONS before 3.4 allows attackers to cause a denial of service (reset) via an HTTP request to the TCC, TCC+ or XTC,…

Patch available
Fix from $1,600 2003-03-31
Optical Networking Systems Software MEDIUM 5.0
CVE-2002-1557

Cisco ONS15454 and ONS15327 running ONS before 3.4 allows attackers to cause a denial of service (reset to TCC, TCC+, TCCi or XTC) via a malformed HT…

Patch available
Fix from $1,600 2003-03-31
iOS HIGH 7.5
CVE-2003-0100EPSS 10%

Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number o…

Mitigation only
Fix from $1,950 2003-03-03
iOS HIGH 7.8
CVE-2002-2208

Extended Interior Gateway Routing Protocol (EIGRP), as implemented in Cisco IOS 11.3 through 12.2 and other products, allows remote attackers to caus…

Patch available
Fix from $1,950 2002-12-31
iOS HIGH 7.8
CVE-2002-2239

The Cisco Optical Service Module (OSM) for the Catalyst 6500 and 7600 series running Cisco IOS 12.1(8)E through 12.1(13.4)E allows remote attackers t…

Patch available
Fix from $1,950 2002-12-31