imPC@ndo IT

Cisco vulnerabilities

6639 CVE

CVE-2020-3604
High 7.8

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities are due to insufficient validation of certain elements …

cisco webex_meetings
0.03EPSS
CVE-2022-20719
Medium 5.5

Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary commands into the underlying host operating system, execute arbitrary code on the underlying host operating system…

cisco ios_xe
0.03EPSS
CVE-2017-9482
Critical 9.8

The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to obtain root access to the Network Processor (NP) Linux system by enabling a TELNET daemon (through CVE-2017-9479 exploitation…

cisco dpc3939_firmware
0.03EPSS
CVE-2017-3852
High 8.1

A vulnerability in the Cisco application-hosting framework (CAF) component of the Cisco IOx application environment could allow an authenticated, remote attacker to write or modify arbitrary files in the virtual instance running on the affected device. The vul…

cisco iox
0.03EPSS
CVE-2010-0577
High 7.1

Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite loop, and device reload or hang) via a TCP segment with crafted options, aka Bug ID CSCsz75186.

cisco ios
0.03EPSS
CVE-2010-0566
High 7.1

Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(4.44), 8.1 before 8.1(2.35), and 8.2 before 8.2(1.10) allows remote attackers to cause a denial of service (device reload)…

cisco asa_5500 · cisco pix_500
0.03EPSS
CVE-2008-2058
High 7.8

Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 7.2.x before 7.2(3)2 and 8.0.x before 8.0(2)17 allows remote attackers to cause a denial of service (device reload) via a port scan against TCP port 443 on the device.

cisco adaptive_security_appliance_software · cisco pix_security_appliance
0.03EPSS
CVE-2009-2867
High 7.8

Unspecified vulnerability in Cisco IOS 12.2XNA, 12.2XNB, 12.2XNC, 12.2XND, 12.4T, 12.4XZ, and 12.4YA, when Zone-Based Policy Firewall SIP Inspection is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted SIP transit pack…

cisco ios
0.03EPSS
CVE-2021-1312
Medium 5.3

A vulnerability in the system resource management of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) to the health monitor API on an affected device. The vulnerability is due to inadequ…

cisco elastic_services_controller
0.03EPSS
CVE-2010-1570
High 7.8

The computer telephony integration (CTI) server component in Cisco Unified Contact Center Express (UCCX) 7.0 before 7.0(1)SR4 and 7.0(2), 6.0 before 6.0(1)SR1, and 5.0 before 5.0(2)SR3 allows remote attackers to cause a denial of service (CTI server and Node M…

cisco customer_response_solution · cisco unified_contact_center_express · cisco unified_ip_interactive_voice_response
0.03EPSS
CVE-2009-2871
High 7.8

Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE encrypted nonces are enabled, allows remote attackers to cause a denial of service (device reload) via a crafted encrypted packet, aka Bug ID CSCsq24002.

cisco ios
0.03EPSS
CVE-2009-2870
High 7.8

Unspecified vulnerability in Cisco IOS 12.2 through 12.4, when the Cisco Unified Border Element feature is enabled, allows remote attackers to cause a denial of service (device reload) via crafted SIP messages, aka Bug ID CSCsx25880.

cisco ios
0.03EPSS
CVE-2010-2817
High 7.8

Unspecified vulnerability in the IKE implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 before 7.0(8.11), 7.1 and 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8.1 before 8.1(2.44), 8.2 before 8.2(2.10), and 8.3 before …

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software · cisco asa_5500 · cisco asa_5505 · and 13 more
0.03EPSS
CVE-2010-2816
High 7.8

Unspecified vulnerability in the SIP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 before 8.0(5.17), 8.1 before 8.1(2.45), and 8.2 before 8.2(2.13) allows remote attackers to cause a denial of service (dev…

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software · cisco asa_5500 · cisco asa_5505 · and 13 more
0.03EPSS
CVE-2010-2815
High 7.8

Unspecified vulnerability in the Transport Layer Security (TLS) implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8.1 before 8.1(2.44), 8.2 before 8.2(2.17), and 8.3 before 8.3…

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software · cisco asa_5500 · cisco asa_5505 · and 13 more
0.03EPSS
CVE-2010-2814
High 7.8

Unspecified vulnerability in the Transport Layer Security (TLS) implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8.1 before 8.1(2.44), 8.2 before 8.2(2.17), and 8.3 before 8.3…

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software · cisco asa_5500 · cisco asa_5505 · and 13 more
0.03EPSS
CVE-2010-1581
High 7.8

Unspecified vulnerability in the Transport Layer Security (TLS) implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8.1 before 8.1(2.44), 8.2 before 8.2(2.17), and 8.3 before 8.3…

cisco adaptive_security_appliance · cisco adaptive_security_appliance_software
0.03EPSS
CVE-2001-0427
High 7.1

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed logi…

cisco vpn_3000_concentrator · cisco vpn_3005_concentrator · cisco vpn_3015_concentrator · cisco vpn_3030_concentator · and 2 more
0.03EPSS
CVE-2016-9199
Medium 6.5

A vulnerability in the Cisco application-hosting framework (CAF) of Cisco IOx could allow an authenticated, remote attacker to read arbitrary files on a targeted system. Affected Products: This vulnerability affects specific releases of the Cisco IOx subsystem…

cisco iox
0.03EPSS
CVE-2019-1694
High 8.6

A vulnerability in the TCP processing engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of s…

cisco adaptive_security_appliance_software · cisco secure_firewall_threat_defense
0.03EPSS
CVE-2019-1718
High 7.5

A vulnerability in the web interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to trigger high CPU usage, resulting in a denial of service (DoS) condition. The vulnerability is due to improper handling of Secure So…

cisco identity_services_engine
0.03EPSS
CVE-2019-1752
High 7.5

A vulnerability in the ISDN functions of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is due to incorrect processing of specific values in the Q.931 information el…

cisco ios · cisco ios_xe
0.03EPSS
CVE-2019-1751
High 8.6

A vulnerability in the Network Address Translation 64 (NAT64) functions of Cisco IOS Software could allow an unauthenticated, remote attacker to cause either an interface queue wedge or a device reload. The vulnerability is due to the incorrect handling of cer…

cisco ios
0.03EPSS
CVE-2019-1739
High 7.5

A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a parsing issue on D…

cisco ios · cisco ios_xe
0.03EPSS
CVE-2019-1738
High 7.5

A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a parsing issue on D…

cisco ios · cisco ios_xe
0.03EPSS