Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 10.0 CVE-2014-0659EPSS 74% The Cisco WAP4410N access point with firmware through 2.0.6.1, WRVS4400N router with firmware 1.x through 1.1.13 and 2.x through 2.0.2.1, and RVS4000… Rvs4000 Firmware after 2.0.6.1 Fix from $1,9502014-01-12 MEDIUM 6.8 CVE-2014-0664 The server in Cisco Unity Connection allows remote authenticated users to cause a denial of service (CPU consumption) via unspecified IMAP commands, … Unity Connection Mitigation only Fix from $1,6002014-01-10 MEDIUM 5.4 CVE-2014-0658 Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898. Unified Ip Phones 9900 Series Firmware Mitigation only Fix from $1,6002014-01-10 MEDIUM 6.5 CVE-2013-6983 SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to execute arbitrary SQL commands… Unified Presence Server Mitigation only Fix from $1,6002013-12-31 MEDIUM 5.4 CVE-2013-6981 Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka B… Ios Xe after 3.7s Fix from $1,6002013-12-28 MEDIUM 5.4 CVE-2013-6979 The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies on the Linux-IOS internal-network configuration, w… Ios Xe Mitigation only Fix from $1,6002013-12-23 MEDIUM 6.8 CVE-2013-6976 Cross-site request forgery (CSRF) vulnerability in goform/Quick_setup on Cisco EPC3925 devices allows remote attackers to hijack the authentication o… Epc3925 No fix yet Fix from $1,6002013-12-19 MEDIUM 5.0 CVE-2013-6701 The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritiz… Cisco Ons 15454 System Software Mitigation only Fix from $1,6002013-12-18 MEDIUM 5.8 CVE-2013-6966 Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta… Webex Training Center Mitigation only Fix from $1,6002013-12-17 MEDIUM 6.8 CVE-2013-6710 Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Training Center allows remote attackers to hijack the authentication of unspecified vi… Webex Training Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.8 CVE-2013-6959 Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks… Webex Sales Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.8 CVE-2013-6967 Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web si… Webex Sales Center No fix yet Fix from $1,6002013-12-14 MEDIUM 5.8 CVE-2013-6971 Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta… Webex Training Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.0 CVE-2013-6965 The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation is completed, which allows rem… Webex Training Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.0 CVE-2013-6968 Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail address exists, which allows … Webex Training Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.0 CVE-2013-6970 Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages within server responses, aka Bug… Webex Meeting Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.0 CVE-2013-6972 Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conference attendance, by reading… Webex Training Center Mitigation only Fix from $1,6002013-12-14 MEDIUM 5.0 CVE-2013-6709 The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed, which allows remote attacker… Webex Training Center Mitigation only Fix from $1,6002013-12-14 HIGH 7.3 CVE-2013-7030EPSS 5% The TFTP service in Cisco Unified Communications Manager (aka CUCM or Unified CM) allows remote attackers to obtain sensitive information from a phon… Unified Communications Manager No fix yet Fix from $1,9502013-12-12 HIGH 8.3 CVE-2013-7043 Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Scientific Atlanta DPR2320R2 routers with software 2.0.2r1262-090417 allow remote… Scientific Atlanta Dpr\/epr2320 Firmware No fix yet Fix from $1,9502013-12-10 MEDIUM 5.0 CVE-2013-6708 Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889. Cloud Portal Mitigation only Fix from $1,6002013-12-10 HIGH 7.1 CVE-2013-6703 The TLS/SSLv3 module on Cisco ONS 15454 controller cards allows remote attackers to cause a denial of service (card reset) via crafted (1) TLS or (2)… Ons 15454 Mitigation only Fix from $1,9502013-12-03 HIGH 7.1 CVE-2013-6704 Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to cause a denial of service (memory consumption) via … Ios Xe Mitigation only Fix from $1,9502013-12-03 MEDIUM 6.1 CVE-2013-6705 The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (IPDT AVL corruption and device re… iOS Mitigation only Fix from $1,6002013-12-03 HIGH 7.1 CVE-2013-6696 Cisco Adaptive Security Appliance (ASA) Software does not properly handle errors during the processing of DNS responses, which allows remote attacker… Adaptive Security Appliance Software Mitigation only Fix from $1,9502013-12-02 MEDIUM 5.4 CVE-2013-6706 The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS … Ios Xe Mitigation only Fix from $1,6002013-11-29 MEDIUM 5.0 CVE-2013-6700 The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload) via a request for an unspecified MIB, aka Bug I… Ios Xr Mitigation only Fix from $1,6002013-11-29 MEDIUM 5.0 CVE-2013-6699 The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller (WLC) devices allows remote … Wireless Lan Controller Mitigation only Fix from $1,6002013-11-22 MEDIUM 6.3 CVE-2013-6692 Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP address, which allows remote authenticated users to ca… Ios Xe after 3.8s Fix from $1,6002013-11-22 MEDIUM 5.4 CVE-2013-6693 The MLDP implementation in Cisco IOS 15.3(3)S and earlier on 7600 routers, when many VRFs are configured, allows remote attackers to cause a denial o… iOS after 15.3 Fix from $1,6002013-11-22