EN

Vulnerabilità Cisco

6642 CVE

CVE-2022-20884
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20882
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20881
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20878
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20877
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20876
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20875
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2022-20874
Media 4.7

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpe…

cisco application_extension_platform · cisco rv110w_firmware · cisco rv130_firmware · cisco rv130w_firmware · e altri 1
0.01EPSS
CVE-2016-1324
Media 5.3

The REST interface in Cisco Spark 2015-06 allows remote attackers to cause a denial of service (resource outage) by accessing an administrative page, aka Bug ID CSCuv84125.

cisco spark
0.01EPSS
CVE-2009-0623
Alta 7.8

Unspecified vulnerability in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.3) and Cisco ACE 4710 Application Control Engine Appliance before A3(2.1) allows remote attackers to cause a denial of service (dev…

cisco ace_4710 · cisco application_control_engine_module
0.01EPSS
CVE-2020-3360
Media 5.3

A vulnerability in the Web Access feature of Cisco IP Phones Series 7800 and Series 8800 could allow an unauthenticated, remote attacker to view sensitive information on an affected device. The vulnerability is due to improper access controls on the web-based …

cisco unified_ip_phone_6901_firmware · cisco unified_ip_phone_6911_firmware · cisco unified_ip_phone_6921_firmware · cisco unified_ip_phone_6941_firmware · e altri 33
0.01EPSS
CVE-2015-0654
Alta 7.1

Race condition in the TLS implementation in MainApp in the management interface in Cisco Intrusion Prevention System (IPS) Software before 7.3(3)E4 allows remote attackers to cause a denial of service (process hang) by establishing many HTTPS sessions, aka Bug…

cisco intrusion_prevention_system
0.01EPSS
CVE-2021-1311
Media 5.4

A vulnerability in the reclaim host role feature of Cisco Webex Meetings and Cisco Webex Meetings Server could allow an authenticated, remote attacker to take over the host role during a meeting. This vulnerability is due to a lack of protection against brute …

cisco webex_meetings · cisco webex_meetings_server
0.01EPSS
CVE-2023-20009
Media 6.5

A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authenticated local attacker to escalate their privilege level and gai…

cisco email_security_appliance · cisco secure_email_and_web_manager
0.01EPSS
CVE-2016-6398
Media 5.3

The PPTP server in Cisco IOS 15.5(3)M does not properly initialize packet buffers, which allows remote attackers to obtain sensitive information from earlier network communication by reading packet data, aka Bug ID CSCvb16274.

cisco ios
0.01EPSS
CVE-2015-0741
Media 6.8

Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Prime Central for Hosted Collaboration Solution (PC4HCS) 10.6(1) and earlier allow remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCut04596.

cisco hosted_collaboration_solution
0.01EPSS
CVE-2015-0740
Media 6.8

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center 10.6(1) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCus28826.

cisco unified_intelligence_center
0.01EPSS
CVE-2022-20679
Media 6.8

A vulnerability in the IPSec decryption routine of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to buffer exhaustion tha…

cisco ios_xe
0.01EPSS
CVE-2013-1155
Alta 7.8

The auth-proxy functionality in Cisco Firewall Services Module (FWSM) software 3.1 and 3.2 before 3.2(20.1), 4.0 before 4.0(15.2), and 4.1 before 4.1(5.1) allows remote attackers to cause a denial of service (device reload) via a crafted URL, aka Bug ID CSCtg0…

cisco firewall_services_module_software
0.01EPSS
CVE-2005-2280
Media 5.0

Cisco Security Agent (CSA) 4.5 allows remote attackers to cause a denial of service (system crash) via a crafted IP packet.

cisco security_agent
0.01EPSS
CVE-2005-2241
Media 5.0

Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 does not quickly time out Realtime Information Server Data Collection (RISDC) sockets, which results in a "resource leak" that allows remote attack…

cisco call_manager
0.01EPSS
CVE-2005-2243
Media 5.0

Memory leak in inetinfo.exe in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1, when Multi Level Admin (MLA) is enabled, allows remote attackers to cause a denial of service (memory consumption) …

cisco call_manager
0.01EPSS
CVE-2019-1860
Media 5.9

A vulnerability in the dashboard gadget rendering of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to obtain or manipulate sensitive information between a user’s browser and Cisco Unified Intelligence Center. The vulne…

cisco unified_intelligence_center
0.01EPSS
CVE-2016-1322
Alta 7.5

The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via unspecified web requests, aka Bug ID CSCuv72584.

cisco spark
0.01EPSS
CVE-2016-1299
Media 5.3

The web-management GUI implementation on Cisco Small Business SG300 devices 1.4.1.x allows remote attackers to cause a denial of service (HTTPS outage) via crafted HTTPS requests, aka Bug ID CSCuw87174.

cisco 300_series_managed_switch_firmware
0.01EPSS