EN

Vulnerabilità Cisco

6647 CVE

CVE-2013-5521
Media 5.0

Cisco Identity Services Engine does not properly restrict the creation of guest accounts, which allows remote attackers to cause a denial of service (exhaustion of the account supply) via a series of requests within one session, aka Bug ID CSCue94287.

cisco identity_services_engine_software
0.01EPSS
CVE-2013-3393
Media 5.0

The Precision Video Engine component in Cisco Jabber for Windows and Cisco Virtualization Experience Media Engine allows remote attackers to cause a denial of service (process crash and call disconnection) via crafted RTP packets, aka Bug IDs CSCuh60706 and CS…

cisco jabber · cisco virtualization_experience_media_engine
0.01EPSS
CVE-2013-3381
Media 5.0

Cisco Hosted Collaboration Mediation allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets on port 162, aka Bug ID CSCug85756.

cisco hosted_collaboration_solution
0.01EPSS
CVE-2013-1204
Media 5.0

Memory leak in the SNMP process in Cisco IOS XR allows remote attackers to cause a denial of service (memory consumption or process reload) by sending many port-162 UDP packets, aka Bug ID CSCug80345.

cisco ios_xr
0.01EPSS
CVE-2013-1242
Media 5.0

Memory leak in the web framework in the server in Cisco Unified Presence (CUP) allows remote attackers to cause a denial of service (memory consumption) via malformed TCP packets, aka Bug ID CSCug38080.

cisco unified_presence_server
0.01EPSS
CVE-2013-1235
Media 5.0

Cisco Wireless LAN Controller (WLC) devices do not properly address the resource consumption of terminated TELNET sessions, which allows remote attackers to cause a denial of service (TELNET outage) by making many TELNET connections and improperly ending these…

cisco 2000_wireless_lan_controller · cisco 2100_wireless_lan_controller · cisco 2106_wireless_lan_controller · cisco 2112_wireless_lan_controller · e altri 12
0.01EPSS
CVE-2013-1230
Media 5.0

Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets, aka Bug ID CSCug47057.

cisco unified_communications_domain_manager
0.01EPSS
CVE-2013-1229
Media 5.0

TMSSNMPService.exe in TelePresence Manager in Cisco TelePresence Management Suite (TMS) on 64-bit platforms allows remote attackers to cause a denial of service (process crash) via SNMP traps, aka Bug ID CSCue00028.

cisco telepresence_management_suite
0.01EPSS
CVE-2013-1187
Media 5.0

The Connection Manager in Cisco Jabber Extensible Communications Platform (aka Jabber XCP) does not properly validate login data, which allows remote attackers to cause a denial of service (service crash) by sending a series of malformed login packets, aka Bug…

cisco jabber_extensible_communications_platform
0.01EPSS
CVE-2013-1174
Media 5.0

Cisco Tivoli Business Service Manager (TBSM) in Hosted Collaboration Mediation (HCM) in Cisco Hosted Collaboration Solution allows remote attackers to cause a denial of service (temporary service hang) by sending many TCP packets to certain ports, aka Bug ID C…

cisco hosted_collaboration_solution
0.01EPSS
CVE-2013-1162
Media 5.0

The traffic engineering (TE) processing subsystem in Cisco IOS XR allows remote attackers to cause a denial of service (process restart) via crafted TE packets, aka Bug ID CSCue04000.

cisco ios_xr
0.01EPSS
CVE-2013-1129
Media 5.0

Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736.

cisco unity_connection
0.01EPSS
CVE-2012-3899
Media 5.0

sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and process crash, and traffic-inspection outage) via network traffic, aka Bug ID CSCt…

cisco intrusion_prevention_system · cisco ips_4240 · cisco ips_4250_sx · cisco ips_4255 · e altri 2
0.01EPSS
CVE-2012-1357
Media 5.0

The igmp_snoop_orib_fill_source_update function in the IGMP process in NX-OS 5.0 and 5.1 on Cisco Nexus 5000 series switches allows remote attackers to cause a denial of service (device reload) via IGMP packets, aka Bug ID CSCts46521.

cisco nexus_5000 · cisco nx-os
0.01EPSS
CVE-2012-1346
Media 5.0

Cisco Emergency Responder 8.6 and 9.2 allows remote attackers to cause a denial of service (CPU consumption) by sending malformed UDP packets to the CERPT port, aka Bug ID CSCtx38369.

cisco emergency_responder
0.01EPSS
CVE-2012-0376
Media 5.0

The voice-sipstack component in Cisco Unified Communications Manager (CUCM) 8.5 allows remote attackers to cause a denial of service (core dump) via vectors involving SIP messages that arrive after an upgrade, aka Bug ID CSCtj87367.

cisco unified_communications_manager
0.01EPSS
CVE-2002-2316
Media 5.0

Cisco Catalyst 4000 series switches running CatOS 5.5.5, 6.3.5, and 7.1.2 do not always learn MAC addresses from a single initial packet, which causes unicast traffic to be broadcast across the switch and allows remote attackers to obtain sensitive network inf…

cisco catos
0.01EPSS
CVE-2018-0439
Alta 8.8

A vulnerability in the web-based management interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to…

cisco meeting_server
0.01EPSS
CVE-2018-0413
Alta 8.8

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnera…

cisco identity_services_engine_software
0.01EPSS
CVE-2018-0363
Alta 8.8

A vulnerability in the web-based management interface of Cisco Unified Communications Manager IM & Presence Service (formerly CUPS) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary acti…

cisco unified_communications_manager_im_and_presence_service
0.01EPSS
CVE-2013-1222
Alta 7.8

The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly configure Tomcat components, which allows remote attackers to launch arbitrary custom web applications via a crafted (1) HTTP or (2) HT…

cisco unified_customer_voice_portal
0.01EPSS
CVE-2018-0297
Media 5.8

A vulnerability in the detection engine of Cisco Firepower Threat Defense software could allow an unauthenticated, remote attacker to bypass a configured Secure Sockets Layer (SSL) Access Control (AC) policy to block SSL traffic. The vulnerability is due to th…

cisco secure_firewall_threat_defense
0.01EPSS
CVE-2018-0254
Media 5.3

A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass configured file action policies if an Intelligent Application Bypass (IAB) with a drop percentage threshold is also configured.…

cisco secure_firewall_threat_defense
0.01EPSS
CVE-2018-0244
Media 5.8

A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy to drop the Server Message Block (SMB) protocol if a malware file is detected. The vulnerabilit…

cisco secure_firewall_threat_defense
0.01EPSS
CVE-2018-0243
Media 5.8

A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured file action policy that is intended to drop the Server Message Block Version 2 (SMB2) and SMB Version 3 (SMB3) pro…

cisco secure_firewall_threat_defense
0.01EPSS