Vulnerability index

Browse CVEs

5,759 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 9.3 CVE-2012-3088 Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495, and 3.2.x, does not check whether an HTTP request originally contains ScanSafe header… Anyconnect Secure Mobility Client Mitigation only Fix from $1,9502012-09-16 HIGH 7.8 CVE-2012-3060 Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka B… Unity Connection Mitigation only Fix from $1,9502012-09-16 HIGH 7.8 CVE-2012-3079 Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957. iOS Mitigation only Fix from $1,9502012-09-16 MEDIUM 6.9 CVE-2012-3052 Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working direc… Vpn Client Mitigation only Fix from $1,6002012-09-16 MEDIUM 6.3 CVE-2012-3893 The FlexVPN implementation in Cisco IOS 15.2 and 15.3 allows remote authenticated users to cause a denial of service (spoke crash) via spoke-to-spoke… iOS Mitigation only Fix from $1,6002012-09-16 MEDIUM 6.3 CVE-2012-3895 Cisco IOS 15.0 through 15.3 allows remote authenticated users to cause a denial of service (device crash) via an MVPNv6 update, aka Bug ID CSCty89224. iOS Mitigation only Fix from $1,6002012-09-16 MEDIUM 6.1 CVE-2012-3051 Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process crash or packet loss) via a large… Nx Os Mitigation only Fix from $1,6002012-09-16 MEDIUM 5.0 CVE-2012-3094 The VPN downloader in the download_install component in Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495 on Linux accepts arbitrary X.5… Anyconnect Secure Mobility Client Mitigation only Fix from $1,6002012-09-16 MEDIUM 5.0 CVE-2012-3899 sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of se… Intrusion Prevention System Mitigation only Fix from $1,6002012-09-16 MEDIUM 5.0 CVE-2012-3901 The updateTime function in sensorApp on Cisco IPS 4200 series sensors 7.0 and 7.1 allows remote attackers to cause a denial of service (process crash… Intrusion Prevention System Mitigation only Fix from $1,6002012-09-16 HIGH 7.8 CVE-2012-3935 Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) before 5.3 allow remote attackers to cause … Unified Presence after 8.6 Fix from $1,9502012-09-12 HIGH 7.8 CVE-2012-4629 The Cisco ASA-CX Context-Aware Security module before 9.0.2-103 for Adaptive Security Appliances (ASA) devices, and Prime Security Manager (aka PRSM)… Asa Cx Context Aware Security after 9.0 Fix from $1,9502012-09-12 MEDIUM 5.0 CVE-2012-1357 The igmp_snoop_orib_fill_source_update function in the IGMP process in NX-OS 5.0 and 5.1 on Cisco Nexus 5000 series switches allows remote attackers … Nx Os Mitigation only Fix from $1,6002012-08-06 HIGH 7.8 CVE-2012-1350 Cisco IOS 12.3 and 12.4 on Aironet access points allows remote attackers to cause a denial of service (radio-interface input-queue hang) via IAPP 0x3… iOS Mitigation only Fix from $1,9502012-08-06 MEDIUM 5.0 CVE-2012-1346 Cisco Emergency Responder 8.6 and 9.2 allows remote attackers to cause a denial of service (CPU consumption) by sending malformed UDP packets to the … Emergency Responder Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.0 CVE-2012-1348 Cisco Wide Area Application Services (WAAS) appliances with software 4.4, 5.0, and 5.1 include a one-way hash of a password within output text, which… Wide Area Application Services Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.8 CVE-2012-2499 The IPsec implementation in Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate… Anyconnect Secure Mobility Client Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.0 CVE-2012-2490 Cisco IP Communicator 8.6 allows man-in-the-middle attackers to modify the Certificate Trust List via unspecified vectors, aka Bug ID CSCtz01471. Ip Communicator No fix yet Fix from $1,6002012-08-06 HIGH 7.8 CVE-2012-2469 Cisco NX-OS 4.2, 5.0, 5.1, and 5.2 on Nexus 7000 series switches, when the High Availability (HA) policy is configured for Reset, allows remote attac… Nx Os Mitigation only Fix from $1,9502012-08-06 HIGH 7.8 CVE-2012-2472 Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-all… Adaptive Security Appliance Software Mitigation only Fix from $1,9502012-08-06 MEDIUM 6.3 CVE-2012-1338 Cisco IOS 15.0 and 15.1 on Catalyst 3560 and 3750 series switches allows remote authenticated users to cause a denial of service (device reload) by c… iOS Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.8 CVE-2012-1342 Cisco Carrier Routing System (CRS) 3.9, 4.0, and 4.1 allows remote attackers to bypass ACL entries via fragmented packets, aka Bug ID CSCtj10975. Carrier Routing System Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.0 CVE-2012-1339 The Fabric Interconnect component in Cisco Unified Computing System (UCS) 2.0 allows remote attackers to cause a denial of service (process crash) vi… Unified Computing System Infrastructure And Unified Computing System Software Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.0 CVE-2012-1340 The Fibre Channel over IP (FCIP) implementation in Cisco MDS NX-OS 4.2 and 5.2 on MDS 9000 series switches allows remote attackers to cause a denial … Mds 9000 Nx Os Mitigation only Fix from $1,6002012-08-06 MEDIUM 5.0 CVE-2012-1367 The MallocLite implementation in Cisco IOS 12.0, 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (Route Processor cra… iOS No fix yet Fix from $1,6002012-08-06 HIGH 9.3 CVE-2012-0284EPSS 36% Stack-based buffer overflow in the SetSource method in the Cisco Linksys PlayerPT ActiveX control 1.0.0.15 in PlayerPT.ocx on the Cisco WVC200 Wirele… Linksys Playerpt Activex Control Mitigation only Fix from $1,9502012-07-19 HIGH 9.0 CVE-2012-3075 The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary… Telepresence System Software after 1.7.2 Fix from $1,9502012-07-12 HIGH 9.0 CVE-2012-3076 The administrative web interface on Cisco TelePresence Recording Server before 1.8.0 allows remote authenticated users to execute arbitrary commands … Telepresence Recording Server after 1.7.3 Fix from $1,9502012-07-12 HIGH 8.3 CVE-2012-2486 The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices… Telepresence Multipoint Switch Software after 1.9.0.1 Fix from $1,9502012-07-12 HIGH 8.3 CVE-2012-3074 An unspecified API on Cisco TelePresence Immersive Endpoint Devices before 1.9.1 allows remote attackers to execute arbitrary commands by leveraging … Telepresence System Software after 1.9.0.1 Fix from $1,9502012-07-12