Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2017-12282 A vulnerability in the Access Network Query Protocol (ANQP) ingress frame processing functionality of Cisco Wireless LAN Controllers could allow an u… Wireless Lan Controller Software Mitigation only Fix from $1,6002017-11-02 MEDIUM 6.1 CVE-2017-12283 A vulnerability in the handling of 802.11w Protected Management Frames (PAF) by Cisco Aironet 3800 Series Access Points could allow an unauthenticate… Aironet 3800 Firmware Mitigation only Fix from $1,6002017-11-02 MEDIUM 5.4 CVE-2017-12294 A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a… Webex Meetings Server Mitigation only Fix from $1,6002017-11-02 MEDIUM 5.3 CVE-2017-12295 A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to access sensitive data about the application. An att… Webex Meetings Server Mitigation only Fix from $1,6002017-11-02 HIGH 7.3 CVE-2014-0691 Cisco WebEx Meetings Server before 1.1 uses meeting IDs with insufficient entropy, which makes it easier for remote attackers to bypass authenticatio… Webex Meetings Server after 1.0 Fix from $1,9502017-10-24 HIGH 7.5 CVE-2017-15805 Cisco Small Business SA520 and SA540 devices with firmware 2.1.71 and 2.2.0.7 allow ../ directory traversal in scgi-bin/platform.cgi via the thispage… Small Business Sa520 Firmware Mitigation only Fix from $1,9502017-10-23 MEDIUM 6.7 CVE-2017-12317 The Cisco AMP For Endpoints application allows an authenticated, local attacker to access a static key value stored in the local application software… Advanced Malware Protection Mitigation only Fix from $1,6002017-10-22 CRITICAL 9.9 CVE-2017-12251 A vulnerability in the web console of the Cisco Cloud Services Platform (CSP) 2100 could allow an authenticated, remote attacker to interact maliciou… Cloud Services Platform 2100 Mitigation only Fix from $2,3002017-10-19 HIGH 8.8 CVE-2017-12271 A vulnerability in Cisco SPA300 and SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute unwanted actions on an affecte… Spa300 Firmware after 7.5.5 Fix from $1,9502017-10-19 HIGH 8.6 CVE-2017-12293 A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vuln… Webex Meetings Server Mitigation only Fix from $1,9502017-10-19 HIGH 8.6 CVE-2017-3883 A vulnerability in the authentication, authorization, and accounting (AAA) implementation of Cisco Firepower Extensible Operating System (FXOS) and N… Firepower Extensible Operating System after 6.0 Fix from $1,9502017-10-19 HIGH 7.5 CVE-2017-12259 A vulnerability in the implementation of Session Initiation Protocol (SIP) functionality in Cisco Small Business SPA51x Series IP Phones could allow … Small Business Ip Phone Firmware after 7.6.2 Fix from $1,9502017-10-19 HIGH 7.5 CVE-2017-12260 A vulnerability in the implementation of Session Initiation Protocol (SIP) functionality in Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP… Spa 501g Firmware after 7.6.2 Fix from $1,9502017-10-19 MEDIUM 6.7 CVE-2017-12301 A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker to escape the Python parser an… Nx Os Mitigation only Fix from $1,6002017-10-19 MEDIUM 6.1 CVE-2017-12272 A vulnerability in the web framework code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting … Ios Xe Mitigation only Fix from $1,6002017-10-19 MEDIUM 6.1 CVE-2017-12288 A vulnerability in the web-based management interface of Cisco Unified Contact Center Express could allow an unauthenticated, remote attacker to cond… Finesse Mitigation only Fix from $1,6002017-10-19 MEDIUM 6.1 CVE-2017-12296 A vulnerability in Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against… Webex Meetings Server Mitigation only Fix from $1,6002017-10-19 MEDIUM 6.1 CVE-2017-12298 A vulnerability in Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against … Webex Meeting Center Mitigation only Fix from $1,6002017-10-19 MEDIUM 5.5 CVE-2017-12284 A vulnerability in the web interface of Cisco Jabber for Windows Client could allow an authenticated, local attacker to retrieve user profile informa… Jabber Mitigation only Fix from $1,6002017-10-19 MEDIUM 5.5 CVE-2017-12286 A vulnerability in the web interface of Cisco Jabber could allow an authenticated, local attacker to retrieve user profile information from the affec… Jabber Mitigation only Fix from $1,6002017-10-19 MEDIUM 5.3 CVE-2017-12285EPSS 37% A vulnerability in the web interface of Cisco Network Analysis Module Software could allow an unauthenticated, remote attacker to delete arbitrary fi… Prime Network Analysis Module Mitigation only Fix from $1,6002017-10-19 MEDIUM 5.9 CVE-2015-6358 Multiple Cisco embedded devices use hardcoded X.509 certificates and SSH host keys embedded in the firmware, which allows remote attackers to defeat … Rv320 Firmware after 2.0.7.8 Fix from $1,6002017-10-12 HIGH 8.6 CVE-2017-12244 A vulnerability in the detection engine parsing of IPv6 packets for Cisco Firepower System Software could allow an unauthenticated, remote attacker t… Secure Firewall Management Center Mitigation only Fix from $1,9502017-10-05 HIGH 8.6 CVE-2017-12245 A vulnerability in SSL traffic decryption for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause … Secure Firewall Management Center Mitigation only Fix from $1,9502017-10-05 HIGH 8.6 CVE-2017-12246EPSS 7% A vulnerability in the implementation of the direct authentication feature in Cisco Adaptive Security Appliance (ASA) Software could allow an unauthe… Adaptive Security Appliance Software Mitigation only Fix from $1,9502017-10-05 HIGH 7.5 CVE-2017-12263EPSS 11% A vulnerability in the web interface of Cisco License Manager software could allow an unauthenticated, remote attacker to download and view files wit… License Manager Mitigation only Fix from $1,9502017-10-05 HIGH 7.5 CVE-2017-12270 A vulnerability in the gRPC code of Cisco IOS XR Software for Cisco Network Convergence System (NCS) 5500 Series Routers could allow an unauthenticat… Ios Xr Mitigation only Fix from $1,9502017-10-05 MEDIUM 6.5 CVE-2017-12256 A vulnerability in the Akamai Connect feature of Cisco Wide Area Application Services (WAAS) Appliances could allow an unauthenticated, remote attack… Wide Area Application Services Mitigation only Fix from $1,6002017-10-05 MEDIUM 6.5 CVE-2017-12268 A vulnerability in the Network Access Manager (NAM) of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker to enable… Anyconnect Secure Mobility Client Mitigation only Fix from $1,6002017-10-05 MEDIUM 6.1 CVE-2017-12257 A vulnerability in the web framework of Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site scripting… Webex Meetings Server Mitigation only Fix from $1,6002017-10-05