Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.1
CVE-2014-0710
Race condition in the cut-through proxy feature in Cisco Firewall Services Module (FWSM) Software 3.x before 3.2(28) and 4.x before 4.1(15) allows re…
Firewall Services Module Software
Mitigation only
HIGH 7.1
CVE-2014-0718
The produce-verbose-alert feature in Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of serv…
Ips Sensor Software
Mitigation only
HIGH 7.1
CVE-2014-0720
Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (Analysis Engine process outage) …
Ips Sensor Software
after 7.1
MEDIUM 6.8
CVE-2014-0730
Cisco Unified Computing System (UCS) Central Software 1.1 and earlier allows local users to gain privileges via a CLI copy command in a local-mgmt co…
Unified Computing System Central Software
after 1.1
MEDIUM 5.0
CVE-2014-0731
The administration interface in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to bypass authenticatio…
Unified Communications Manager
after 10.0
MEDIUM 5.0
CVE-2014-0733
The Enterprise License Manager (ELM) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier does not properly enforce aut…
Unified Communications Manager
after 10.0
HIGH 7.5
CVE-2014-0734
SQL injection vulnerability in the Certificate Authority Proxy Function (CAPF) implementation in Cisco Unified Communications Manager (Unified CM) 10…
Unified Communications Manager
after 10.0
MEDIUM 6.8
CVE-2014-0736
Cross-site request forgery (CSRF) vulnerability in the Call Detail Records Analysis and Reporting (CAR) page in Cisco Unified Communications Manager …
Unified Communications Manager
after 10.0
MEDIUM 5.0
CVE-2014-0732
The Real Time Monitoring Tool (RTMT) web application in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier does not properly enfor…
Unified Communications Manager
after 10.0
HIGH 7.5
CVE-2014-0726
SQL injection vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows rem…
Unified Communications Manager
after 10.0
HIGH 7.5
CVE-2014-0727
SQL injection vulnerability in the CallManager Interactive Voice Response (CMIVR) interface in Cisco Unified Communications Manager (UCM) allows remo…
Unified Communications Manager
Mitigation only
HIGH 7.5
CVE-2014-0728
SQL injection vulnerability in the Java database interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers …
Unified Communications Manager
after 10.0
HIGH 7.5
CVE-2014-0729
SQL injection vulnerability in the Enterprise Mobility Application (EMApp) interface in Cisco Unified Communications Manager (UCM) allows remote atta…
Unified Communications Manager
Mitigation only
MEDIUM 5.0
CVE-2014-0722
The log4jinit web application in Cisco Unified Communications Manager (UCM) does not properly validate authentication, which allows remote attackers …
Unified Communications Manager
Mitigation only
MEDIUM 5.0
CVE-2014-0725
Cisco Unified Communications Manager (UCM) does not require authentication for reading WAR files, which allows remote attackers to obtain sensitive i…
Unified Communications Manager
Mitigation only
MEDIUM 6.0
CVE-2014-0686
Cisco Unified Communications Manager (aka Unified CM) 9.1 (2.10000.28) and earlier allows local users to gain privileges by leveraging incorrect file…
Unified Communications Manager
after 9.1
MEDIUM 5.5
CVE-2014-0678
The portal interface in Cisco Secure Access Control System (ACS) does not properly manage sessions, which allows remote authenticated users to hijack…
Secure Access Control System
Mitigation only
MEDIUM 6.8
CVE-2014-0674
Cisco Video Surveillance Operations Manager (VSOM) does not require authentication for MySQL database connections, which allows remote attackers to o…
Video Surveillance Operations Manager
Mitigation only
MEDIUM 6.4
CVE-2014-0675
The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' i…
Telepresence Video Communication Server
Mitigation only
HIGH 8.3
CVE-2014-0661
The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX131…
Telepresence System Software
after 1.10.1
HIGH 7.1
CVE-2014-0662
The SIP module in Cisco TelePresence Video Communication Server (VCS) before 8.1 allows remote attackers to cause a denial of service (process failur…
Telepresence Video Communication Server Software
Mitigation only
MEDIUM 6.8
CVE-2014-0676
Cisco NX-OS allows local users to bypass intended TACACS+ command restrictions via a series of multiple commands, aka Bug ID CSCum47367.
Nx Os
Mitigation only
MEDIUM 5.0
CVE-2014-0677
The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage…
Nx Os
Mitigation only
HIGH 7.1
CVE-2014-0660
Cisco TelePresence ISDN Gateway with software before 2.2(1.92) allows remote attackers to cause a denial of service (D-channel call outage) via a cra…
Telepresence Isdn Gateway Software
after 2.1
MEDIUM 5.8
CVE-2014-0671
Open redirect vulnerability in Cisco MediaSense allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an …
Mediasense
Mitigation only
MEDIUM 5.0
CVE-2014-0669
The Wireless Session Protocol (WSP) feature in the Gateway GPRS Support Node (GGSN) component on Cisco ASR 5000 series devices allows remote attacker…
Asr 5000 Series Software
Mitigation only
HIGH 10.0
CVE-2014-0648EPSS 6%
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication and authorization requirements,…
Secure Access Control System
after 5.4.0.46.6
HIGH 10.0
CVE-2014-0650
The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute arbitrary operating-system co…
Secure Access Control System
after 5.4.0.46.2
HIGH 9.0
CVE-2014-0649
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization requirements, which allows remot…
Secure Access Control System
after 5.4.0.46.6
MEDIUM 6.3
CVE-2014-0667
The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, which allows remote authenticated…
Secure Access Control System
Mitigation only