imPC@ndo IT

Cisco vulnerabilities

6639 CVE

CVE-2021-1141
Critical 9.8

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system. For more information about these vulnerabilities, see the Details…

cisco smart_software_manager_satellite
0.04EPSS
CVE-2021-1139
Critical 9.8

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system. For more information about these vulnerabilities, see the Details…

cisco smart_software_manager_satellite
0.04EPSS
CVE-2018-0418
High 8.6

A vulnerability in the Local Packet Transport Services (LPTS) feature set of Cisco ASR 9000 Series Aggregation Services Router Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vuln…

cisco ios_xr
0.04EPSS
CVE-2018-0424
High 8.8

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary comma…

cisco rv110w_firmware · cisco rv130w_firmware · cisco rv215w_firmware
0.04EPSS
CVE-2014-3368
High 7.8

Cisco TelePresence Video Communication Server (VCS) and Expressway Software before X8.2 allow remote attackers to cause a denial of service (device reload) via a high rate of crafted packets, aka Bug ID CSCui06507.

cisco expressway_software · cisco telepresence_video_communication_server_software
0.04EPSS
CVE-2015-0718
High 7.5

Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted TCP packets to a device that has a TIME_…

cisco nx-os · cisco unified_computing_system · netgear jr6150_firmware · samsung x14j_firmware · and 3 more
0.04EPSS
CVE-2019-12691
Medium 4.9

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to perform a directory traversal attack on an affected device. The vulnerability is due to insufficient inpu…

cisco secure_firewall_management_center
0.04EPSS
CVE-2012-3054
High 9.3

Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11, T27 LD before SP32 CP2, and T28 L10N before SP1 allows remote attackers to execute arbitrary code via a craf…

cisco webex_recording_format_player
0.04EPSS
CVE-2008-2054
High 9.3

Unspecified vulnerability in Cisco CiscoWorks Common Services 3.0.3 through 3.1.1 allows remote attackers to execute arbitrary code on a client machine via unknown vectors.

cisco ciscoworks_common_services
0.04EPSS
CVE-2018-0274
High 8.8

A vulnerability in the CLI parser of Cisco Network Services Orchestrator (NSO) could allow an authenticated, remote attacker to execute arbitrary shell commands with the privileges of the root user. The vulnerability is due to insufficient input validation. An…

cisco network_services_orchestrator
0.04EPSS
CVE-2018-0234
High 8.6

A vulnerability in the implementation of Point-to-Point Tunneling Protocol (PPTP) functionality in Cisco Aironet 1810, 1830, and 1850 Series Access Points could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a den…

cisco aironet_access_point_software
0.04EPSS
CVE-2019-1642
Medium 6.1

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the…

cisco secure_firewall_management_center
0.04EPSS
CVE-2020-3430
High 8.8

A vulnerability in the application protocol handling features of Cisco Jabber for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands. The vulnerability is due to improper handling of input to the application protocol handlers…

cisco jabber
0.04EPSS
CVE-2020-3375
Critical 9.8

A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sendi…

cisco ios_xe_sd-wan · cisco sd-wan
0.04EPSS
CVE-2016-1409
High 7.5

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 through 5.3.2, and NX-OS allows remote attackers to cause a denial of service (packet-processing outage) via crafted ND messages, aka Bug ID C…

cisco ios · cisco ios_xe · cisco ios_xr · cisco nx-os
0.04EPSS
CVE-2012-2493
High 9.3

The VPN downloader implementation in the WebLaunch feature in Cisco AnyConnect Secure Mobility Client 2.x before 2.5 MR6 on Windows, and 2.x before 2.5 MR6 and 3.x before 3.0 MR8 on Mac OS X and Linux, does not properly validate binaries that are received by t…

cisco anyconnect_secure_mobility_client
0.04EPSS
CVE-2012-0384
High 7.2

Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.1.xSG and 3.2.xSG before 3.2.2SG, when AAA authorization is enabled, allow remote authen…

cisco ios · cisco ios_xe
0.04EPSS
CVE-2018-0240
High 8.6

Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affect…

cisco adaptive_security_appliance_software · cisco secure_firewall_threat_defense
0.04EPSS
CVE-2020-3304
High 8.6

A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of se…

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software · cisco secure_firewall_threat_defense
0.04EPSS
CVE-2018-0353
High 7.5

A vulnerability in traffic-monitoring functions in Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to circumvent Layer 4 Traffic Monitor (L4TM) functionality and bypass security protections. The vulnerability is due to a chan…

cisco web_security_appliance
0.04EPSS
CVE-2018-0287
High 8.8

A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. The vulnerability is due to a design flaw in the affected sof…

cisco webex_meetings_online
0.04EPSS
CVE-2014-2134
High 9.3

Heap-based buffer overflow in Cisco WebEx Recording Format (WRF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) vi…

cisco webex_advanced_recording_format_player · cisco webex_recording_format_player
0.04EPSS
CVE-2001-1183
Medium 5.0

PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.

cisco ios
0.04EPSS
CVE-2019-1854
Medium 4.1

A vulnerability in the management web interface of Cisco Expressway Series could allow an authenticated, remote attacker to perform a directory traversal attack against an affected device. The vulnerability is due to insufficient input validation on the web in…

cisco telepresence_video_communication_server
0.04EPSS
CVE-2018-0177
High 7.5

A vulnerability in the IP Version 4 (IPv4) processing code of Cisco IOS XE Software running on Cisco Catalyst 3850 and Cisco Catalyst 3650 Series Switches could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a r…

cisco ios_xe
0.04EPSS