Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.6 CVE-2015-6322 The IPC channel in Cisco AnyConnect Secure Mobility Client 2.0.0343 through 4.1(8) allows local users to bypass intended access restrictions and move… Anyconnect Secure Mobility Client Mitigation only Fix from $1,6002015-10-12 MEDIUM 6.9 CVE-2015-6318 Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 and X8.5.2 allows local users to write to arbitrary files via an unspecified sy… Telepresence Video Communication Server Software Mitigation only Fix from $1,6002015-10-12 MEDIUM 6.9 CVE-2015-4325 The process-management implementation in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows local users to gain privileges … Telepresence Video Communication Server Software Mitigation only Fix from $1,6002015-10-12 MEDIUM 6.3 CVE-2015-6263 The RADIUS client implementation in Cisco IOS 15.4(3)M2.2, when a shared RADIUS secret is configured, allows remote RADIUS servers to cause a denial … iOS Mitigation only Fix from $1,6002015-10-12 MEDIUM 6.1 CVE-2015-6311 Cisco Wireless LAN Controller (WLC) devices with software 7.0(240.0), 7.3(101.0), and 7.4(1.19) allow remote attackers to cause a denial of service (… Wireless Lan Controller Mitigation only Fix from $1,6002015-10-08 MEDIUM 5.0 CVE-2015-6310 The REST interface in Cisco Unified Communications Manager IM and Presence Service 11.5(1) allows remote attackers to cause a denial of service (SIP … Unified Communications Manager Im And Presence Service Mitigation only Fix from $1,6002015-10-08 HIGH 7.2 CVE-2015-7600 Cisco VPN Client 5.x through 5.0.07.0440 uses weak permissions for vpnclient.ini, which allows local users to gain privileges by entering an arbitrar… Vpn Client No fix yet Fix from $1,9502015-10-06 MEDIUM 6.8 CVE-2015-6309 Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumpt… Email Security Appliance Mitigation only Fix from $1,6002015-10-02 MEDIUM 6.1 CVE-2015-6307 Cisco FirePOWER (formerly Sourcefire) 7000 and 8000 devices with software 5.4.0.1 allow remote attackers to cause a denial of service (inspection-eng… Firepower Mitigation only Fix from $1,6002015-09-28 HIGH 9.3 CVE-2015-6280 The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before… iOS Mitigation only Fix from $1,9502015-09-28 HIGH 7.8 CVE-2015-6279 The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE… iOS Mitigation only Fix from $1,9502015-09-28 HIGH 7.8 CVE-2015-6278 The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE… iOS Mitigation only Fix from $1,9502015-09-28 HIGH 7.2 CVE-2015-6306 Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to o… Anyconnect Secure Mobility Client Patch available Fix from $1,9502015-09-26 HIGH 7.2 CVE-2015-6305 Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0… Anyconnect Secure Mobility Client No fix yet Fix from $1,9502015-09-26 MEDIUM 5.0 CVE-2015-6302 The RADIUS functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.0(250.0) and 7.0(252.0) allows remote attackers to disconnect… Wireless Lan Controller Software Mitigation only Fix from $1,6002015-09-26 HIGH 7.8 CVE-2015-6282 Cisco IOS XE 2.x and 3.x before 3.10.6S, 3.11.xS through 3.13.xS before 3.13.3S, and 3.14.xS through 3.15.xS before 3.15.1S allows remote attackers t… Ios Xe Mitigation only Fix from $1,9502015-09-26 MEDIUM 6.8 CVE-2015-6304 Cross-site request forgery (CSRF) vulnerability in Cisco TelePresence Server software 3.0(2.24) allows remote attackers to hijack the authentication … Telepresence Server Software Mitigation only Fix from $1,6002015-09-24 MEDIUM 5.0 CVE-2015-6301 The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via … Ios Xr Mitigation only Fix from $1,6002015-09-20 MEDIUM 6.5 CVE-2015-6299 SQL injection vulnerability in the web interface in Cisco Unity Connection 9.1(1.2) and earlier allows remote authenticated users to execute arbitrar… Unity Connection Mitigation only Fix from $1,6002015-09-20 HIGH 7.8 CVE-2015-6284 Buffer overflow in the Conference Control Protocol API implementation in Cisco TelePresence Server software before 4.1(2.33) on 7010, MSE 8710, Multi… Telepresence Server Software Mitigation only Fix from $1,9502015-09-20 HIGH 9.0 CVE-2015-4307 The web framework in Cisco Prime Collaboration Provisioning before 11.0 allows remote authenticated users to bypass intended access restrictions and … Prime Collaboration Provisioning Mitigation only Fix from $1,9502015-09-20 HIGH 8.5 CVE-2015-4306 The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended login-session rea… Prime Collaboration Assurance Mitigation only Fix from $1,9502015-09-20 HIGH 9.0 CVE-2015-4304 The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended access restrictio… Prime Collaboration Assurance Mitigation only Fix from $1,9502015-09-20 MEDIUM 5.0 CVE-2015-6297 The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via … Ios Xr Mitigation only Fix from $1,6002015-09-18 HIGH 7.2 CVE-2015-6296 Cisco Prime Network Registrar (CPNR) 8.1(3.3), 8.2(3), and 8.3(2) has a default account, which allows local users to obtain root access by leveraging… Prime Network Registrar Mitigation only Fix from $1,9502015-09-18 MEDIUM 6.1 CVE-2015-6294 Cisco IOS 15.2(3)E and earlier and IOS XE 3.6(2)E and earlier allow remote attackers to cause a denial of service (functionality loss) via crafted Ci… iOS Mitigation only Fix from $1,6002015-09-18 MEDIUM 5.0 CVE-2015-6288 Cisco Content Security Management Appliance (SMA) 7.8.0-000 does not properly validate credentials, which allows remote attackers to cause a denial o… Content Security Management Appliance Mitigation only Fix from $1,6002015-09-14 MEDIUM 5.0 CVE-2015-6287 Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows remote attackers to cause a denial of service (service outage) via a flood of TCP t… Web Security Virtual Appliance Mitigation only Fix from $1,6002015-09-14 MEDIUM 5.7 CVE-2015-6286 Cisco Application Visibility and Control (AVC) 15.3(3)JA, when FlexConnect is enabled, allows remote attackers to cause a denial of service (access-p… Application Visibility And Control Mitigation only Fix from $1,6002015-09-14 MEDIUM 6.4 CVE-2015-6285 Format string vulnerability in Cisco Email Security Appliance (ESA) 7.6.0 and 8.0.0 allows remote attackers to cause a denial of service (memory over… Email Security Appliance Mitigation only Fix from $1,6002015-09-14