imPC@ndo IT

Cisco vulnerabilities

6639 CVE

CVE-2021-1317
High 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. Thes…

cisco rv016_multi-wan_vpn_router_firmware · cisco rv042_dual_wan_vpn_router_firmware · cisco rv042g_dual_gigabit_wan_vpn_router_firmware · cisco rv082_dual_wan_vpn_router_firmware · and 2 more
0.03EPSS
CVE-2021-1316
High 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. Thes…

cisco rv016_multi-wan_vpn_router_firmware · cisco rv042_dual_wan_vpn_router_firmware · cisco rv042g_dual_gigabit_wan_vpn_router_firmware · cisco rv082_dual_wan_vpn_router_firmware · and 2 more
0.03EPSS
CVE-2021-1315
High 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. Thes…

cisco rv016_multi-wan_vpn_router_firmware · cisco rv042_dual_wan_vpn_router_firmware · cisco rv042g_dual_gigabit_wan_vpn_router_firmware · cisco rv082_dual_wan_vpn_router_firmware · and 2 more
0.03EPSS
CVE-2021-1314
High 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. Thes…

cisco rv016_multi-wan_vpn_router_firmware · cisco rv042_dual_wan_vpn_router_firmware · cisco rv042g_dual_gigabit_wan_vpn_router_firmware · cisco rv082_dual_wan_vpn_router_firmware · and 2 more
0.03EPSS
CVE-2016-6443
High 8.8

A vulnerability in the Cisco Prime Infrastructure and Evolved Programmable Network Manager SQL database interface could allow an authenticated, remote attacker to impact system confidentiality by executing a subset of arbitrary SQL queries that can cause produ…

cisco evolved_programmable_network_manager · cisco prime_infrastructure
0.03EPSS
CVE-2010-0148
High 7.8

Unspecified vulnerability in Cisco Security Agent 5.2 before 5.2.0.285, when running on Linux, allows remote attackers to cause a denial of service (kernel panic) via "a series of TCP packets."

cisco security_agent
0.03EPSS
CVE-2014-3328
Medium 5.0

The Intercluster Sync Agent Service in Cisco Unified Presence Server allows remote attackers to cause a denial of service via a TCP SYN flood, aka Bug ID CSCun34125.

cisco unified_presence_server
0.03EPSS
CVE-2014-3285
Medium 5.0

Cisco Wide Area Application Services (WAAS) 5.3(.5a) and earlier, when SharePoint acceleration is enabled, does not properly parse SharePoint responses, which allows remote attackers to cause a denial of service (application-optimization handler reload) via a …

cisco wide_area_application_services
0.03EPSS
CVE-2014-2122
Medium 5.0

Memory leak in the GUI in the Impact server in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors, aka Bug ID CSCub58999.

cisco hosted_collaboration_solution
0.03EPSS
CVE-2010-0578
High 7.8

The IKE implementation in Cisco IOS 12.2 through 12.4 on Cisco 7200 and 7301 routers with VAM2+ allows remote attackers to cause a denial of service (device reload) via a malformed IKE packet, aka Bug ID CSCtb13491.

cisco ios
0.03EPSS
CVE-2010-0576
High 7.8

Unspecified vulnerability in Cisco IOS 12.0 through 12.4, IOS XE 2.1.x through 2.3.x before 2.3.2, and IOS XR 3.2.x through 3.4.3, when Multiprotocol Label Switching (MPLS) and Label Distribution Protocol (LDP) are enabled, allows remote attackers to cause a d…

cisco ios · cisco ios_xe · cisco ios_xr
0.03EPSS
CVE-2010-0569
High 7.8

Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.2), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.16); and Cisco PIX 500 Series Security Appliance; allows remote attackers…

cisco asa_5500 · cisco pix_500
0.03EPSS
CVE-2010-0565
High 7.8

Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.45), 8.0 before 8.0(4.44), 8.1 before 8.1(2.35), and 8.2 before 8.2(1.10), allows remote attackers to cause a denial of service (page fault and device reload) via a…

cisco asa_5500 · cisco pix_500
0.03EPSS
CVE-2010-0150
High 7.8

Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.2), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.16); and Cisco PIX 500 Series Security Appliance; allows remote attackers…

cisco asa_5500 · cisco pix_500
0.03EPSS
CVE-2019-12686
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12685
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12684
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12683
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12682
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12681
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12680
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2019-12679
High 8.8

Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary SQL injections on an affected device. These vulnerabilities exist due to impro…

cisco secure_firewall_management_center
0.03EPSS
CVE-2021-34770
Critical 10.0

A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unauthenticated, remote attacker to execute arbitrary code with a…

cisco ios_xe
0.03EPSS
CVE-2014-2121
Medium 5.0

The Java-based software in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (closing of TCP ports) via unspecified vectors, aka Bug IDs CSCug77633, CSCug77667, CSCug78266, CSCug82795, and CSCuh58643.

cisco hosted_collaboration_solution
0.03EPSS
CVE-2012-0385
High 7.8

The Smart Install feature in Cisco IOS 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (device reload) by sending a malformed Smart Install message over TCP, aka Bug ID CSCtt16051.

cisco ios
0.03EPSS