Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.3 CVE-2016-6401 Cisco Carrier Routing System (CRS) 5.1 and 5.1.4, as used in CRS Carrier Grade Services for CRS-1 and CRS-3 devices, allows remote attackers to cause… Carrier Routing System Mitigation only Fix from $1,6002016-09-17 HIGH 7.5 CVE-2016-6399 Cisco ACE30 Application Control Engine Module through A5 3.3 and ACE 4700 Application Control Engine appliances through A5 3.3 allow remote attackers… Ace Application Control Engine Module A1 Mitigation only Fix from $1,9502016-09-12 MEDIUM 5.3 CVE-2016-6398 The PPTP server in Cisco IOS 15.5(3)M does not properly initialize packet buffers, which allows remote attackers to obtain sensitive information from… iOS Mitigation only Fix from $1,6002016-09-12 MEDIUM 5.3 CVE-2016-6396 Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking options are enabled, allow remot… Firesight System Software Mitigation only Fix from $1,6002016-09-12 MEDIUM 5.4 CVE-2016-6395 Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Management Center before 6.1 and FireSIGHT System S… Firesight System Software Mitigation only Fix from $1,6002016-09-12 CRITICAL 9.1 CVE-2016-6394 Session fixation vulnerability in Cisco Firepower Management Center and Cisco FireSIGHT System Software through 6.1.0 allows remote attackers to hija… Firesight System Software Mitigation only Fix from $2,3002016-09-12 HIGH 7.5 CVE-2016-6371 Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote … Hosted Collaboration Mediation Fulfillment Mitigation only Fix from $1,9502016-09-12 MEDIUM 5.3 CVE-2016-6375 Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow remote attackers to … Wireless Lan Controller Software Mitigation only Fix from $1,6002016-09-12 HIGH 7.5 CVE-2016-1469 The HTTP framework on Cisco SPA300, SPA500, and SPA51x devices allows remote attackers to cause a denial of service (device outage) via a series of m… Spa300 Firmware after 7.5.7 Fix from $1,9502016-09-12 HIGH 8.1 CVE-2016-6377 Media Origination System Suite Software 2.6 and earlier in Cisco Virtual Media Packager (VMP) allows remote attackers to bypass authentication and ma… Media Origination System Suite Mitigation only Fix from $1,9502016-09-03 HIGH 7.8 CVE-2016-1464EPSS 10% Cisco WebEx Meetings Player T29.10, when WRF file support is enabled, allows remote attackers to execute arbitrary code via a crafted file, aka Bug I… Webex Wrf Player T29 No fix yet Fix from $1,9502016-09-03 MEDIUM 5.5 CVE-2016-1415EPSS 6% Cisco WebEx Meetings Player T29.10, when WRF file support is enabled, allows remote attackers to cause a denial of service (application crash) via a … Webex Wrf Player T29 No fix yet Fix from $1,6002016-09-03 MEDIUM 6.5 CVE-2016-6376 The Adaptive Wireless Intrusion Prevention System (wIPS) feature on Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x bef… Wireless Lan Controller Mitigation only Fix from $1,6002016-09-02 CRITICAL 9.8 CVE-2016-1473 Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP o… Small Business 220 Series Smart Plus Switches Mitigation only Fix from $2,3002016-09-02 HIGH 7.5 CVE-2016-1472 The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to cause a denial of serv… Small Business 220 Series Smart Plus Switches Mitigation only Fix from $1,9502016-09-02 MEDIUM 6.1 CVE-2016-1471 Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allow… Small Business 220 Series Smart Plus Switches No fix yet Fix from $1,6002016-09-02 HIGH 8.8 CVE-2016-1470 Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.… Small Business 220 Series Smart Plus Switches No fix yet Fix from $1,9502016-09-02 HIGH 7.8 CVE-2016-6369 Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges… Anyconnect Secure Mobility Client Mitigation only Fix from $1,9502016-08-25 MEDIUM 6.1 CVE-2016-6365 Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.0.2, 5.3.1, and 5.4.0 allows remote attackers… Secure Firewall Management Center Mitigation only Fix from $1,6002016-08-23 HIGH 7.5 CVE-2016-6355 Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a … Ios Xr Mitigation only Fix from $1,9502016-08-23 HIGH 7.5 CVE-2016-6364 The User Data Services (UDS) API implementation in Cisco Unified Communications Manager 11.5 allows remote attackers to bypass intended access restri… Unified Communications Manager Mitigation only Fix from $1,9502016-08-23 HIGH 7.5 CVE-2016-1484 Cisco WebEx Meetings Server 2.6 allows remote attackers to bypass intended access restrictions and obtain sensitive application information via unspe… Webex Meetings Server Mitigation only Fix from $1,9502016-08-23 MEDIUM 6.5 CVE-2016-1477 Cisco Connected Streaming Analytics 1.1.1 allows remote authenticated users to discover a notification service password by reading administrative pag… Connected Streaming Analytics Mitigation only Fix from $1,6002016-08-23 MEDIUM 6.5 CVE-2016-6363 The rate-limit feature in the 802.11 protocol implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x b… Aironet Access Point Software Mitigation only Fix from $1,6002016-08-22 HIGH 7.8 CVE-2016-6362 Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.110.0, 8.2.12x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow local users to … Aironet Access Point Software Mitigation only Fix from $1,9502016-08-22 MEDIUM 6.5 CVE-2016-6361 The Aggregated MAC Protocol Data Unit (AMPDU) implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x b… Aironet Access Point Software Mitigation only Fix from $1,6002016-08-22 MEDIUM 6.1 CVE-2016-6359 Cross-site scripting (XSS) vulnerability in Cisco Transport Gateway Installation Software 4.1(4.0) on Smart Call Home Transport Gateway devices allow… Transport Gateway Installation Software Mitigation only Fix from $1,6002016-08-22 MEDIUM 6.1 CVE-2016-1485 Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML … Identity Services Engine Software Mitigation only Fix from $1,6002016-08-22 HIGH 7.5 CVE-2016-1479 Cisco IP Phone 8800 devices with software 11.0(1) allow remote attackers to cause a denial of service (memory corruption) via a crafted HTTP request,… Ip Phone 8800 Series Firmware Mitigation only Fix from $1,9502016-08-22 MEDIUM 5.4 CVE-2016-1476 Cross-site scripting (XSS) vulnerability on Cisco IP Phone 8800 devices with software 11.0 allows remote authenticated users to inject arbitrary web … Ip Phone 8800 Series Firmware Mitigation only Fix from $1,6002016-08-22