Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2015-6426 Cisco Prime Network Services Controller 3.0 allows local users to bypass intended access restrictions and execute arbitrary commands via additional p… Prime Network Services Controller Mitigation only Fix from $1,9502015-12-18 HIGH 7.2 CVE-2015-6424 The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions a… Application Policy Infrastructure Controller Mitigation only Fix from $1,9502015-12-18 MEDIUM 5.0 CVE-2015-6425 The WebApplications Identity Management subsystem in Cisco Unified Communications Manager 10.5(0.98000.88) allows remote attackers to cause a denial … Unified Communications Manager Mitigation only Fix from $1,6002015-12-16 MEDIUM 5.0 CVE-2015-6411 Cisco FirePOWER Management Center 5.4.1.3, 6.0.0, and 6.0.1 provides verbose responses to requests for help files, which allows remote attackers to o… Secure Firewall Management Center Mitigation only Fix from $1,6002015-12-15 HIGH 7.2 CVE-2015-6403 The TFTP implementation on Cisco Small Business SPA30x, SPA50x, SPA51x phones 7.5.7 improperly validates firmware-image file integrity, which allows … Spa500 Firmware Mitigation only Fix from $1,9502015-12-15 MEDIUM 6.8 CVE-2015-6399 The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) before 2.0(9) allows remote authenticated users to cause a denial … Integrated Management Controller Supervisor Mitigation only Fix from $1,6002015-12-15 MEDIUM 6.1 CVE-2015-6359 The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS 15.3(3)S0.1 on ASR devices mishandles internal tables, which allow… iOS Mitigation only Fix from $1,6002015-12-15 HIGH 7.5 CVE-2015-6401EPSS 8% Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspeci… Epc3928 Docsis 3.0 8x4 Wireless Residential Gateway With Embedded Digital Voice Adapter No fix yet Fix from $1,9502015-12-14 MEDIUM 6.8 CVE-2015-6378 Cross-site request forgery (CSRF) vulnerability on Cisco DPQ3925 devices with EDVA 5.5.2 allows remote attackers to hijack the authentication of arbi… Dpq3925 8x4 Docsis 3.0 Wireless Residential Gateway With Embedded Digital Voice Adapter Mitigation only Fix from $1,6002015-12-14 MEDIUM 6.8 CVE-2015-6405 Cross-site request forgery (CSRF) vulnerability in Cisco Emergency Responder 10.5(1) and 10.5(1a) allows remote attackers to hijack the authenticatio… Emergency Responder Mitigation only Fix from $1,6002015-12-13 HIGH 9.0 CVE-2015-6389 Cisco Prime Collaboration Assurance before 11.0 has a hardcoded cmuser account, which allows remote attackers to obtain access by establishing an SSH… Prime Collaboration Assurance Mitigation only Fix from $1,9502015-12-13 MEDIUM 6.5 CVE-2015-6361 The administrative web interface on Cisco DPC3939 (XB3) devices with firmware 121109aCMCST allows remote authenticated users to execute arbitrary com… Dpc3939 Wireless Residential Voice Gateway Firmware Mitigation only Fix from $1,6002015-12-13 MEDIUM 6.8 CVE-2015-6419 Cisco FireSIGHT Management Center with software 4.10.3, 5.2.0, 5.3.0, 5.3.1, and 5.4.0 allows remote authenticated users to read arbitrary files via … Firesight System Software Mitigation only Fix from $1,6002015-12-12 HIGH 7.1 CVE-2015-6415 Cisco Unified Computing System (UCS) 2.2(3f)A on Fabric Interconnect 6200 devices allows remote attackers to cause a denial of service (CPU consumpti… Unified Computing System Mitigation only Fix from $1,9502015-12-12 MEDIUM 6.8 CVE-2015-6408 Cross-site request forgery (CSRF) vulnerability in Cisco Unity Connection 11.5(0.98) allows remote attackers to hijack the authentication of arbitrar… Unity Connection Mitigation only Fix from $1,6002015-12-12 MEDIUM 6.5 CVE-2015-6417 Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.4.0 and earlier does not always use RBAC for backend database access, which allows rem… Videoscape Distribution Suite Service Manager Mitigation only Fix from $1,6002015-12-12 MEDIUM 6.5 CVE-2015-6395 Cisco Prime Service Catalog 10.0, 10.0(R2), 10.1, and 11.0 does not properly restrict access to web pages, which allows remote attackers to modify th… Prime Service Catalog Mitigation only Fix from $1,6002015-12-12 HIGH 7.8 CVE-2015-6391 Cisco Unified SIP 3905 phones allow remote attackers to cause a denial of service (resource consumption and functionality loss) via a large amount of… Unified Sip Phone 3900 Firmware Mitigation only Fix from $1,9502015-12-05 MEDIUM 5.0 CVE-2015-6388 Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a cr… Unified Computing System Central Software Mitigation only Fix from $1,6002015-12-05 HIGH 7.2 CVE-2015-6383 Cisco IOS XE 15.4(3)S on ASR 1000 devices improperly loads software packages, which allows local users to bypass license restrictions and obtain cert… Ios Xe Mitigation only Fix from $1,9502015-12-03 MEDIUM 5.0 CVE-2015-6386 The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8.0.7-142 and 8.5.1-021 allows remote attackers to cause a de… Web Security Appliance Mitigation only Fix from $1,6002015-12-01 HIGH 7.2 CVE-2015-6385 The publish-event event-manager feature in Cisco IOS 15.5(2)S and 15.5(3)S on Cloud Services Router 1000V devices allows local users to execute arbit… iOS Mitigation only Fix from $1,9502015-12-01 MEDIUM 5.0 CVE-2015-6382 Cisco ASR 5000 devices with software 16.0(900) allow remote attackers to cause a denial of service (telnetd process restart) via a TELNET connection,… Asr 5000 Series Software Mitigation only Fix from $1,6002015-11-26 MEDIUM 6.8 CVE-2015-6379 The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denia… Adaptive Security Appliance Software Mitigation only Fix from $1,6002015-11-25 MEDIUM 6.5 CVE-2015-6380 An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenti… Firepower Extensible Operating System Mitigation only Fix from $1,6002015-11-24 HIGH 7.8 CVE-2015-6377 Cisco Virtual Topology System (VTS) 2.0(0) and 2.0(1) allows remote attackers to cause a denial of service (CPU and memory consumption, and TCP port … Virtual Topology System Mitigation only Fix from $1,9502015-11-24 MEDIUM 6.8 CVE-2015-6376 Cross-site request forgery (CSRF) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to hijack the a… Telepresence Video Communication Server Software Mitigation only Fix from $1,6002015-11-21 HIGH 7.2 CVE-2015-6370 The Management I/O (MIO) component in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows local users to execute … Firepower Extensible Operating System Mitigation only Fix from $1,9502015-11-19 MEDIUM 5.0 CVE-2015-6368 Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to read files via a crafted HTTP request, ak… Firepower Extensible Operating System Mitigation only Fix from $1,6002015-11-19 MEDIUM 6.8 CVE-2015-6373 Cross-site request forgery (CSRF) vulnerability in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote att… Firepower Extensible Operating System Mitigation only Fix from $1,6002015-11-18