Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2016-6401
Cisco Carrier Routing System (CRS) 5.1 and 5.1.4, as used in CRS Carrier Grade Services for CRS-1 and CRS-3 devices, allows remote attackers to cause…
Carrier Routing System
Mitigation only
HIGH 7.5
CVE-2016-6399
Cisco ACE30 Application Control Engine Module through A5 3.3 and ACE 4700 Application Control Engine appliances through A5 3.3 allow remote attackers…
Ace Application Control Engine Module A1
Mitigation only
MEDIUM 5.3
CVE-2016-6398
The PPTP server in Cisco IOS 15.5(3)M does not properly initialize packet buffers, which allows remote attackers to obtain sensitive information from…
iOS
Mitigation only
MEDIUM 5.3
CVE-2016-6396
Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking options are enabled, allow remot…
Firesight System Software
Mitigation only
MEDIUM 5.4
CVE-2016-6395
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Management Center before 6.1 and FireSIGHT System S…
Firesight System Software
Mitigation only
CRITICAL 9.1
CVE-2016-6394
Session fixation vulnerability in Cisco Firepower Management Center and Cisco FireSIGHT System Software through 6.1.0 allows remote attackers to hija…
Firesight System Software
Mitigation only
HIGH 7.5
CVE-2016-6371
Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote …
Hosted Collaboration Mediation Fulfillment
Mitigation only
MEDIUM 5.3
CVE-2016-6375
Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow remote attackers to …
Wireless Lan Controller Software
Mitigation only
HIGH 7.5
CVE-2016-1469
The HTTP framework on Cisco SPA300, SPA500, and SPA51x devices allows remote attackers to cause a denial of service (device outage) via a series of m…
Spa300 Firmware
after 7.5.7
HIGH 8.1
CVE-2016-6377
Media Origination System Suite Software 2.6 and earlier in Cisco Virtual Media Packager (VMP) allows remote attackers to bypass authentication and ma…
Media Origination System Suite
Mitigation only
HIGH 7.8
CVE-2016-1464EPSS 10%
Cisco WebEx Meetings Player T29.10, when WRF file support is enabled, allows remote attackers to execute arbitrary code via a crafted file, aka Bug I…
Webex Wrf Player T29
No fix yet
MEDIUM 5.5
CVE-2016-1415EPSS 6%
Cisco WebEx Meetings Player T29.10, when WRF file support is enabled, allows remote attackers to cause a denial of service (application crash) via a …
Webex Wrf Player T29
No fix yet
MEDIUM 6.5
CVE-2016-6376
The Adaptive Wireless Intrusion Prevention System (wIPS) feature on Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x bef…
Wireless Lan Controller
Mitigation only
CRITICAL 9.8
CVE-2016-1473
Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP o…
Small Business 220 Series Smart Plus Switches
Mitigation only
HIGH 7.5
CVE-2016-1472
The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to cause a denial of serv…
Small Business 220 Series Smart Plus Switches
Mitigation only
MEDIUM 6.1
CVE-2016-1471
Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allow…
Small Business 220 Series Smart Plus Switches
No fix yet
HIGH 8.8
CVE-2016-1470
Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.…
Small Business 220 Series Smart Plus Switches
No fix yet
HIGH 7.8
CVE-2016-6369
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges…
Anyconnect Secure Mobility Client
Mitigation only
MEDIUM 6.1
CVE-2016-6365
Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.0.2, 5.3.1, and 5.4.0 allows remote attackers…
Secure Firewall Management Center
Mitigation only
HIGH 7.5
CVE-2016-6355
Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a …
Ios Xr
Mitigation only
HIGH 7.5
CVE-2016-6364
The User Data Services (UDS) API implementation in Cisco Unified Communications Manager 11.5 allows remote attackers to bypass intended access restri…
Unified Communications Manager
Mitigation only
HIGH 7.5
CVE-2016-1484
Cisco WebEx Meetings Server 2.6 allows remote attackers to bypass intended access restrictions and obtain sensitive application information via unspe…
Webex Meetings Server
Mitigation only
MEDIUM 6.5
CVE-2016-1477
Cisco Connected Streaming Analytics 1.1.1 allows remote authenticated users to discover a notification service password by reading administrative pag…
Connected Streaming Analytics
Mitigation only
MEDIUM 6.5
CVE-2016-6363
The rate-limit feature in the 802.11 protocol implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x b…
Aironet Access Point Software
Mitigation only
HIGH 7.8
CVE-2016-6362
Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.110.0, 8.2.12x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow local users to …
Aironet Access Point Software
Mitigation only
MEDIUM 6.5
CVE-2016-6361
The Aggregated MAC Protocol Data Unit (AMPDU) implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x b…
Aironet Access Point Software
Mitigation only
MEDIUM 6.1
CVE-2016-6359
Cross-site scripting (XSS) vulnerability in Cisco Transport Gateway Installation Software 4.1(4.0) on Smart Call Home Transport Gateway devices allow…
Transport Gateway Installation Software
Mitigation only
MEDIUM 6.1
CVE-2016-1485
Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML …
Identity Services Engine Software
Mitigation only
HIGH 7.5
CVE-2016-1479
Cisco IP Phone 8800 devices with software 11.0(1) allow remote attackers to cause a denial of service (memory corruption) via a crafted HTTP request,…
Ip Phone 8800 Series Firmware
Mitigation only
MEDIUM 5.4
CVE-2016-1476
Cross-site scripting (XSS) vulnerability on Cisco IP Phone 8800 devices with software 11.0 allows remote authenticated users to inject arbitrary web …
Ip Phone 8800 Series Firmware
Mitigation only