Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Prime Collaboration HIGH 7.8
CVE-2018-0335

A vulnerability in the web portal authentication process of Cisco Prime Collaboration Provisioning could allow an unauthenticated, local attacker to …

Mitigation only
Fix from $1,950 2018-06-07
Unified Computing System HIGH 7.8
CVE-2018-0338

A vulnerability in the role-based access-checking mechanisms of Cisco Unified Computing System (UCS) Software could allow an authenticated, local att…

Mitigation only
Fix from $1,950 2018-06-07
Unified Ip Phone Firmware HIGH 7.5
CVE-2018-0332

A vulnerability in the Session Initiation Protocol (SIP) ingress packet processing of Cisco Unified IP Phone software could allow an unauthenticated,…

Mitigation only
Fix from $1,950 2018-06-07
Wide Area Application Services MEDIUM 6.7
CVE-2018-0352

A vulnerability in the Disk Check Tool (disk-check.sh) for Cisco Wide Area Application Services (WAAS) Software could allow an authenticated, local a…

Mitigation only
Fix from $1,600 2018-06-07
Identity Services Engine Software MEDIUM 6.1
CVE-2018-0339

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cond…

Mitigation only
Fix from $1,600 2018-06-07
Unity Connection MEDIUM 6.1
CVE-2018-0354

A vulnerability in the web framework of Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…

Mitigation only
Fix from $1,600 2018-06-07
Unified Communications Manager MEDIUM 6.1
CVE-2018-0355

A vulnerability in the web UI of Cisco Unified Communications Manager (Unified CM) could allow an unauthenticated, remote attacker to conduct a cross…

Mitigation only
Fix from $1,600 2018-06-07
Webex Meetings MEDIUM 6.1
CVE-2018-0356

A vulnerability in the web framework of Cisco WebEx could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack ag…

Mitigation only
Fix from $1,600 2018-06-07
Webex Meetings MEDIUM 6.1
CVE-2018-0357

A vulnerability in the web framework of Cisco WebEx could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack ag…

Mitigation only
Fix from $1,600 2018-06-07
Secure Firewall Management Center MEDIUM 5.8
CVE-2018-0333

A vulnerability in the VPN configuration management of Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypass VPN …

Mitigation only
Fix from $1,600 2018-06-07
Unified Communications Manager MEDIUM 5.4
CVE-2018-0340

A vulnerability in the web framework of the Cisco Unified Communications Manager (Unified CM) software could allow an authenticated, remote attacker …

Mitigation only
Fix from $1,600 2018-06-07
Wide Area Application Services MEDIUM 5.3
CVE-2018-0329

A vulnerability in the default configuration of the Simple Network Management Protocol (SNMP) feature of Cisco Wide Area Application Services (WAAS) …

Mitigation only
Fix from $1,600 2018-06-07
Ios Xe CRITICAL 9.8
CVE-2018-0315EPSS 8%

A vulnerability in the authentication, authorization, and accounting (AAA) security services of Cisco IOS XE Software could allow an unauthenticated,…

Mitigation only
Fix from $2,300 2018-06-07
Prime Collaboration CRITICAL 9.8
CVE-2018-0318

A vulnerability in the password reset function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to gai…

Fix: after 12.1
Fix from $2,300 2018-06-07
Prime Collaboration CRITICAL 9.8
CVE-2018-0319

A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to …

Fix: after 12.1
Fix from $2,300 2018-06-07
Prime Collaboration CRITICAL 9.8
CVE-2018-0320

A vulnerability in the web framework code of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to execute …

Fix: after 12.1
Fix from $2,300 2018-06-07
Prime Collaboration CRITICAL 9.8
CVE-2018-0321

A vulnerability in Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to access the Java Remote Method Invo…

Fix: after 11.6
Fix from $2,300 2018-06-07
Network Services Orchestrator HIGH 8.8
CVE-2018-0274

A vulnerability in the CLI parser of Cisco Network Services Orchestrator (NSO) could allow an authenticated, remote attacker to execute arbitrary she…

Fix: after 4.4.2.0
Fix from $1,950 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0317

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalate their …

Fix: after 12.2
Fix from $1,950 2018-06-07
Prime Collaboration HIGH 8.8
CVE-2018-0322

A vulnerability in the web management interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to modi…

Fix: after 12.1
Fix from $1,950 2018-06-07
Emergency Responder HIGH 7.5
CVE-2017-6779

Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that co…

Fix: 10.5 / 10.5.2+
Fix from $1,950 2018-06-07
Adaptive Security Appliance Software HIGH 7.5
CVE-2018-0296 KEVEPSS 100%

A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affec…

Fix: 6.1.0 / 6.2.2.3+
Fix from $1,950 2018-06-07
Ip Phone Firmware HIGH 7.5
CVE-2018-0316

A vulnerability in the Session Initiation Protocol (SIP) call-handling functionality of Cisco IP Phone 6800, 7800, and 8800 Series Phones with Multip…

Mitigation only
Fix from $1,950 2018-06-07
Web Security Appliance HIGH 7.5
CVE-2018-0353

A vulnerability in traffic-monitoring functions in Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to circumvent L…

Mitigation only
Fix from $1,950 2018-06-07
Meeting Server HIGH 7.4
CVE-2018-0263

A vulnerability in Cisco Meeting Server (CMS) could allow an unauthenticated, adjacent attacker to access services running on internal device interfa…

Fix: 2.2.13 / 2.3.4+
Fix from $1,950 2018-06-07
Node Jose MEDIUM 5.9
CVE-2017-16007

node-jose is a JavaScript implementation of the JSON Object Signing and Encryption (JOSE) for current web browsers and node.js-based servers. node-jo…

Fix: 0.9.3+
Fix from $1,600 2018-06-04
Digital Network Architecture Center CRITICAL 10.0
CVE-2018-0222

A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to log in to an affected system by…

Fix: 1.1.3+
Fix from $2,300 2018-05-17
Digital Network Architecture Center CRITICAL 10.0
CVE-2018-0268EPSS 5%

A vulnerability in the container management subsystem of Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attac…

Fix: after 1.1.3
Fix from $2,300 2018-05-17
Digital Network Architecture Center CRITICAL 9.8
CVE-2018-0271

A vulnerability in the API gateway of the Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass a…

Fix: 1.1.2+
Fix from $2,300 2018-05-17
Iot Field Network Director HIGH 8.8
CVE-2018-0270

A vulnerability in the web-based management interface of Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker t…

No fix yet
Fix from $1,950 2018-05-17