Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1093

HTML interface for Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.0.3(B) allows remote attackers to cause a denial of service (CPU consumption)…

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1094

Information leaks in Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.5.4 allow remote attackers to obtain potentially sensitive information via …

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1095

Cisco VPN 3000 Concentrator before 2.5.2(F), with encryption enabled, allows remote attackers to cause a denial of service (reload) via a Windows-bas…

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1099

Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, allows remote attackers to obtain potentially sensitive information without authentication b…

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1100

Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, allows remote attackers to cause a denial of service (crash) via a long (1) username or (2) …

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1101

Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via a long user name.

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1102

The LAN-to-LAN IPSEC capability for Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.4, allows remote attackers to cause a denial of service via…

Mitigation only
Fix from $1,600 2002-10-04
Vpn 3000 Concentrator Series Software MEDIUM 5.0
CVE-2002-1103

Cisco VPN 3000 Concentrator 2.2.x, 3.6(Rel), and 3.x before 3.5.5, allows remote attackers to cause a denial of service via (1) malformed or (2) larg…

Patch available
Fix from $1,600 2002-10-04
Vpn Client MEDIUM 5.0
CVE-2002-1104

Cisco Virtual Private Network (VPN) Client software 2.x.x and 3.x before 3.0.5 allows remote attackers to cause a denial of service (crash) via TCP p…

Mitigation only
Fix from $1,600 2002-10-04
Vpn Client MEDIUM 5.0
CVE-2002-1108

Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.6(Rel), when configured with all tunnel mode, can be forced into acknowle…

Mitigation only
Fix from $1,600 2002-10-04
Webns HIGH 7.5
CVE-2002-0870

The original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still …

Mitigation only
Fix from $1,950 2002-09-05
Vpn Client MEDIUM 5.0
CVE-2002-0852

Buffer overflows in Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service via (1) an Inte…

Patch available
Fix from $1,600 2002-09-05
Vpn Client MEDIUM 5.0
CVE-2002-0853

Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a packet with…

Patch available
Fix from $1,600 2002-09-05
Content Distribution Manager 4630 HIGH 7.5
CVE-2002-0778

The default configuration of the proxy for Cisco Cache Engine and Content Engine allows remote attackers to use HTTPS to make TCP connections to allo…

Patch available
Fix from $1,950 2002-08-12
iOS HIGH 7.1
CVE-2002-0813EPSS 9%

Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (rese…

Patch available
Fix from $1,950 2002-08-12
Ata 186 MEDIUM 6.4
CVE-2002-0769EPSS 8%

The web-based configuration interface for the Cisco ATA 186 Analog Telephone Adaptor allows remote attackers to bypass authentication via an HTTP POS…

Patch available
Fix from $1,600 2002-08-12
Call Manager MEDIUM 5.0
CVE-2002-0505

Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers …

Patch available
Fix from $1,600 2002-08-12
Webns MEDIUM 5.0
CVE-2002-0792

The web management interface for Cisco Content Service Switch (CSS) 11000 switches allows remote attackers to cause a denial of service (soft reset) …

Patch available
Fix from $1,600 2002-08-12
Vpn 5000 Concentrator Series Software MEDIUM 5.0
CVE-2002-0848

Cisco VPN 5000 series concentrator hardware 6.0.21.0002 and earlier, and 5.2.23.0003 and earlier, when using RADIUS with a challenge type of Password…

Fix: after 6.0.21.0002
Fix from $1,600 2002-08-12
Aironet Ap340 MEDIUM 5.0
CVE-2002-0545

Cisco Aironet before 11.21 with Telnet enabled allows remote attackers to cause a denial of service (reboot) via a series of login attempts with inva…

Fix: after 11.21
Fix from $1,600 2002-07-03
iOS MEDIUM 5.0
CVE-2002-0339

Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet …

Patch available
Fix from $1,600 2002-06-25
Secure Access Control Server HIGH 7.5
CVE-2002-0241

NDSAuth.DLL in Cisco Secure Authentication Control Server (ACS) 3.0.1 does not check the Expired or Disabled state of users in the Novell Directory S…

Patch available
Fix from $1,950 2002-05-29
Vpn Client HIGH 7.2
CVE-2002-1447

Buffer overflow in the vpnclient program for UNIX VPN Client before 3.5.2 allows local users to gain administrative privileges via a long profile nam…

Fix: after 3.5.1
Fix from $1,950 2002-05-28
Secure Access Control Server HIGH 7.5
CVE-2002-0159EPSS 5%

Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through…

Patch available
Fix from $1,950 2002-04-22
Secure Access Control Server MEDIUM 5.0
CVE-2002-0160

The administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote…

Patch available
Fix from $1,600 2002-04-22
Sn 5420 Storage Router Firmware MEDIUM 5.0
CVE-2002-1595

Cisco SN 5420 Storage Router 1.1(5) and earlier allows attackers to read configuration files without authorization.

Patch available
Fix from $1,600 2002-01-09
Sn 5420 Storage Router Firmware MEDIUM 5.0
CVE-2002-1596

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (router crash) via an HTTP request with large he…

Patch available
Fix from $1,600 2002-01-09
Sn 5420 Storage Router Firmware MEDIUM 5.0
CVE-2002-1597

Cisco SN 5420 Storage Router 1.1(5) and earlier allows remote attackers to cause a denial of service (halt) via a fragmented packet to the Gigabit in…

Patch available
Fix from $1,600 2002-01-09
Ubr920 MEDIUM 6.4
CVE-2001-1210

Cisco ubr900 series routers that conform to the Data-over-Cable Service Interface Specifications (DOCSIS) standard must ship without SNMP access rest…

Mitigation only
Fix from $1,600 2001-12-30
12000 Router HIGH 7.5
CVE-2001-0862

Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not block non-initial packet fragments, which allows remote attackers to bypass the A…

Mitigation only
Fix from $1,950 2001-12-06