Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2016-1301
The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9…
Prime Security Manager
Mitigation only
HIGH 8.8
CVE-2016-1302
Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switche…
Nx Os
2.50+
MEDIUM 6.1
CVE-2016-1311
Cross-site scripting (XSS) vulnerability in the management interface in Cisco Jabber Guest Server 10.6(8) allows remote attackers to inject arbitrary…
Jabber Guest
Mitigation only
MEDIUM 6.1
CVE-2016-1304
Cross-site scripting (XSS) vulnerability in Cisco Unity Connection 10.5(2.3009) allows remote attackers to inject arbitrary web script or HTML via a …
Unity Connection
Mitigation only
HIGH 7.5
CVE-2016-1303
The web GUI on Cisco Small Business 500 devices 1.2.0.92 allows remote attackers to cause a denial of service via a crafted HTTP request, aka Bug ID …
500 Series Switch Firmware
Mitigation only
MEDIUM 6.1
CVE-2016-1300
Cross-site scripting (XSS) vulnerability in Cisco Unity Connection (UC) 10.5(2.3009) allows remote attackers to inject arbitrary web script or HTML v…
Unity Connection
Mitigation only
MEDIUM 5.3
CVE-2016-1299
The web-management GUI implementation on Cisco Small Business SG300 devices 1.4.1.x allows remote attackers to cause a denial of service (HTTPS outag…
300 Series Managed Switch Firmware
Mitigation only
HIGH 7.5
CVE-2015-6421
cifs-ao in the CIFS optimization functionality on Cisco Wide Area Application Service (WAAS) and Virtual WAAS (vWAAS) devices 5.x before 5.3.5d and 5…
Wide Area Application Services
Mitigation only
CRITICAL 9.8
CVE-2015-6319
SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows remote attackers to execute arbitrary SQL commands v…
Rv Series Router Firmware
Mitigation only
MEDIUM 6.1
CVE-2016-1298
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Contact Center Express 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote attac…
Unified Contact Center Express
Mitigation only
MEDIUM 6.1
CVE-2015-6337
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0.10 allows remote attac…
Application Policy Infrastructure Controller Enterprise Module
Mitigation only
MEDIUM 6.5
CVE-2015-6317
Cisco Identity Services Engine (ISE) before 2.0 allows remote authenticated users to bypass intended web-resource access restrictions via a direct re…
Identity Services Engine Software
Mitigation only
CRITICAL 9.8
CVE-2015-6435EPSS 9%
An unspecified CGI script in Cisco FX-OS before 1.1.2 on Firepower 9000 devices and Cisco Unified Computing System (UCS) Manager before 2.2(4b), 2.2(…
Firepower Extensible Operating System
No fix yet
CRITICAL 9.8
CVE-2015-6412
Cisco Modular Encoding Platform D9036 Software before 02.04.70 has hardcoded (1) root and (2) guest passwords, which makes it easier for remote attac…
Modular Encoding Platform D9036 Software
Mitigation only
HIGH 7.5
CVE-2016-1296
The proxy engine on Cisco Web Security Appliance (WSA) devices with software 8.5.3-055, 9.1.0-000, and 9.5.0-235 allows remote attackers to bypass in…
Web Security Appliance
Mitigation only
MEDIUM 5.3
CVE-2016-1295
Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote attackers to obtain sensitive information via an AnyConnect authentication attempt…
Adaptive Security Appliance Software
Mitigation only
MEDIUM 6.1
CVE-2016-1294
Cross-site scripting (XSS) vulnerability in the Management Center in Cisco FireSIGHT System Software 6.0.1 allows remote attackers to inject arbitrar…
Firesight System Software
Mitigation only
MEDIUM 6.1
CVE-2016-1293
Multiple cross-site scripting (XSS) vulnerabilities in the Management Center in Cisco FireSIGHT System Software 6.0.0 and 6.0.1 allow remote attacker…
Firesight System Software
Mitigation only
HIGH 7.3
CVE-2015-6336
Cisco Aironet 1800 devices with software 7.2, 7.3, 7.4, 8.1(112.3), 8.1(112.4), and 8.1(15.14) have a default account, which makes it easier for remo…
Aironet Access Point Software
Mitigation only
CRITICAL 9.8
CVE-2015-6323
The Admin portal in Cisco Identity Services Engine (ISE) 1.1.x, 1.2.0 before patch 17, 1.2.1 before patch 8, 1.3 before patch 5, and 1.4 before patch…
Identity Services Engine Software
Mitigation only
HIGH 7.5
CVE-2015-6320
The IP ingress packet handler on Cisco Aironet 1800 devices with software 8.1(112.3) and 8.1(112.4) allows remote attackers to cause a denial of serv…
Aironet Access Point Software
Mitigation only
CRITICAL 9.8
CVE-2015-6314
Cisco Wireless LAN Controller (WLC) devices with software 7.6.x, 8.0 before 8.0.121.0, and 8.1 before 8.1.131.0 allow remote attackers to change conf…
Wireless Lan Controller Software
Mitigation only
MEDIUM 6.1
CVE-2015-6434
Cisco Prime Infrastructure does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking atta…
Prime Infrastructure
Mitigation only
MEDIUM 6.5
CVE-2015-6433
SQL injection vulnerability in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL comm…
Unified Communications Manager
Mitigation only
HIGH 7.5
CVE-2015-6432
Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of Path Computation Elements (PC…
Ios Xr
Mitigation only
MEDIUM 5.9
CVE-2015-6409
Cisco Jabber 10.6.x, 11.0.x, and 11.1.x on Windows allows man-in-the-middle attackers to conduct STARTTLS downgrade attacks and trigger cleartext XMP…
Jabber
Mitigation only
MEDIUM 6.5
CVE-2015-6431
Cisco IOS XE 16.1.1 allows remote attackers to cause a denial of service (device reload) via a packet with the 00-00-00-00-00-00 source MAC address, …
Ios Xe
Mitigation only
MEDIUM 5.0
CVE-2015-6429
The IKEv1 state machine in Cisco IOS 15.4 through 15.6 and IOS XE 3.15 through 3.17 allows remote attackers to cause a denial of service (IPsec conne…
iOS
Mitigation only
MEDIUM 5.0
CVE-2015-6428
Cisco DPQ3925 devices with EDVA r1 Base allow remote attackers to obtain sensitive information via a crafted HTTP request, aka Bug ID CSCuv03958.
Dpq3925 8x4 Docsis 3.0 Wireless Residential Gateway With Embedded Digital Voice Adapter
Mitigation only
MEDIUM 5.0
CVE-2015-6427
Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL…
Firesight System Software
Mitigation only