imPC@ndo EN

Vulnerabilità Cisco

6639 CVE

CVE-2015-6279
Alta 7.8

The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE, 3.3XO, 3.4SG, 3.5E, and 3.6E before 3.6.3E; 3.7E before 3.7.2E; 3.9S and 3.10S before 3.10.6S; 3.11S before 3…

cisco ios · cisco ios_xe
0.03EPSS
CVE-2015-6278
Alta 7.8

The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE, 3.3XO, 3.4SG, 3.5E, and 3.6E before 3.6.3E; 3.7E before 3.7.2E; 3.9S and 3.10S before 3.10.6S; 3.11S before 3…

cisco ios · cisco ios_xe
0.03EPSS
CVE-2008-3801
Alta 7.1

Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or proces…

cisco ios · cisco unified_callmanager · cisco unified_communications_manager
0.03EPSS
CVE-2010-0599
Alta 9.3

Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt XML RPC sessions from operator wo…

cisco mediator_framework
0.03EPSS
CVE-2010-0598
Alta 9.3

Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt HTTP sessions from operator works…

cisco mediator_framework
0.03EPSS
CVE-2007-5570
Alta 7.8

Cisco Firewall Services Module (FWSM) 3.2(1), and 3.1(5) and earlier, allows remote attackers to cause a denial of service (device reload) via a crafted HTTPS request, aka CSCsi77844.

cisco firewall_services_module
0.03EPSS
CVE-2017-6752
Alta 7.5

A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) 9.3(3) and 9.6(2) could allow an unauthenticated, remote attacker to determine valid usernames. The attacker could use this information to conduct additional reconnaissance att…

cisco adaptive_security_appliance_software
0.03EPSS
CVE-2016-6381
Alta 7.5

Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of service (memory consumption or device reload) via fragmented IKEv1 packets, aka Bug ID CSCuy47382.

cisco ios · cisco ios_xe · cisco ios_xe_16.1 · cisco ios_xe_3.3sg · e altri 2
0.03EPSS
CVE-2021-1451
Alta 8.1

A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code on the under…

cisco ios_xe
0.03EPSS
CVE-2012-0329
Alta 9.0

Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows remote authenticated users to execute arbitrary code via vectors involving a URL and an administrative resource, aka Bug ID CSCts63878.

cisco digital_media_manager
0.03EPSS
CVE-2005-0598
Media 5.0

The RealServer RealSubscriber on Cisco devices running Application and Content Networking System (ACNS) 5.1 allow remote attackers to cause a denial of service (CPU consumption) via malformed packets.

cisco application_and_content_networking_software · cisco content_delivery_manager · cisco content_distribution_manager_4630 · cisco content_distribution_manager_4650 · e altri 6
0.03EPSS
CVE-2022-20829
Critica 9.1

A vulnerability in the packaging of Cisco Adaptive Security Device Manager (ASDM) images and the validation of those images by Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker with administrative privileges to uplo…

cisco adaptive_security_device_manager · cisco asa_5512-x_firmware · cisco asa_5515-x_firmware · cisco asa_5585-x_firmware · e altri 1
0.03EPSS
CVE-2018-0264
Critica 9.6

A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an unauthenticated, remote attacker to execute arbitrary code on the system of a targeted user. An attacker could exploit this vulnerability by se…

cisco webex_business_suite_31 · cisco webex_business_suite_32 · cisco webex_meeting_server · cisco webex_meetings
0.03EPSS
CVE-2016-1442
Alta 8.8

The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via crafted field values, aka Bug ID CSCuy96280.

cisco prime_infrastructure
0.03EPSS
CVE-2012-3949
Alta 7.8

The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1; Cisco IOS 12.2 through 12.4 and 15.0 through 15.2; and Cisco IOS XE 3.3.xSG before 3.3.1SG, 3.4.xS, and 3.5.xS…

cisco ios · cisco ios_xe · cisco unified_communications_manager
0.03EPSS
CVE-2003-0512
Media 5.0

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as rep…

cisco ios
0.03EPSS
CVE-2001-0711
Media 5.0

Cisco IOS 11.x and 12.0 with ATM support allows attackers to cause a denial of service via the undocumented Interim Local Management Interface (ILMI) SNMP community string.

cisco ios
0.03EPSS
CVE-2014-3356
Alta 7.8

The metadata flow feature in Cisco IOS 15.1 through 15.3 and IOS XE 3.3.xXO before 3.3.1XO, 3.6.xS and 3.7.xS before 3.7.6S, and 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S allows remote attackers to cause a denial of service (device reload) via malformed RSVP …

cisco ios_xe
0.03EPSS
CVE-2006-0483
Alta 7.8

Cisco VPN 3000 series concentrators running software 4.7.0 through 4.7.2.A allow remote attackers to cause a denial of service (device reload or user disconnect) via a crafted HTTP packet.

cisco vpn_3000_concentrator_series_software · cisco vpn_3030_concentator
0.03EPSS
CVE-2008-2733
Alta 7.1

Cisco PIX and Adaptive Security Appliance (ASA) 5500 devices 7.2 before 7.2(4)2, 8.0 before 8.0(3)14, and 8.1 before 8.1(1)4, when configured as a client VPN endpoint, do not properly process IPSec client authentication, which allows remote attackers to cause …

cisco adaptive_security_appliance_5500 · cisco pix
0.03EPSS
CVE-2020-3296
Alta 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Series Routers and Cisco Small Business RV016, RV042, and RV082 Routers could allow an authenticated, remote attacker with administrative privileges to execu…

cisco rv016_firmware · cisco rv042_firmware · cisco rv042g_firmware · cisco rv082_firmware · e altri 2
0.03EPSS
CVE-2020-3295
Alta 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Series Routers and Cisco Small Business RV016, RV042, and RV082 Routers could allow an authenticated, remote attacker with administrative privileges to execu…

cisco rv016_firmware · cisco rv042_firmware · cisco rv042g_firmware · cisco rv082_firmware · e altri 2
0.03EPSS
CVE-2020-3294
Alta 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Series Routers and Cisco Small Business RV016, RV042, and RV082 Routers could allow an authenticated, remote attacker with administrative privileges to execu…

cisco rv016_firmware · cisco rv042_firmware · cisco rv042g_firmware · cisco rv082_firmware · e altri 2
0.03EPSS
CVE-2020-3293
Alta 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Series Routers and Cisco Small Business RV016, RV042, and RV082 Routers could allow an authenticated, remote attacker with administrative privileges to execu…

cisco rv016_firmware · cisco rv042_firmware · cisco rv042g_firmware · cisco rv082_firmware · e altri 2
0.03EPSS
CVE-2020-3292
Alta 7.2

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Series Routers and Cisco Small Business RV016, RV042, and RV082 Routers could allow an authenticated, remote attacker with administrative privileges to execu…

cisco rv016_firmware · cisco rv042_firmware · cisco rv042g_firmware · cisco rv082_firmware · e altri 2
0.03EPSS