imPC@ndo EN

Vulnerabilità Cisco

6639 CVE

CVE-2010-1565
Alta 7.8

Unspecified vulnerability in the SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (TCP socket exhaustion) via unknown vectors, aka Bug ID …

cisco pgw_2200_softswitch
0.02EPSS
CVE-2010-1563
Alta 7.8

The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (device crash) via a malformed header, aka Bug ID CSCsk04588.

cisco pgw_2200_softswitch
0.02EPSS
CVE-2010-1561
Alta 7.8

The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S11 and 9.7(3)P before 9.7(3)P11 allows remote attackers to cause a denial of service (device crash) via a long message, aka Bug ID CSCsk44115.

cisco pgw_2200_softswitch
0.02EPSS
CVE-2010-0604
Alta 7.8

Unspecified vulnerability in the SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows remote attackers to cause a denial of service (device crash) via unknown SIP traffic, as demonstrated by "SIP testing," aka Bug ID CSCsk3…

cisco pgw_2200_softswitch
0.02EPSS
CVE-2010-0602
Alta 7.8

The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsk32606.

cisco pgw_2200_softswitch
0.02EPSS
CVE-2010-0601
Alta 7.8

The MGCP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsl39126.

cisco pgw_2200_softswitch
0.02EPSS
CVE-2018-15383
Alta 7.5

A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, result…

cisco adaptive_security_appliance_software · cisco firepower_threat_defense · cisco secure_firewall_threat_defense
0.02EPSS
CVE-2016-1408
Alta 8.8

Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute arbitrary commands or upload files via a crafted HTTP request, aka Bug ID CSCuz01488.

cisco evolved_programmable_network_manager · cisco prime_infrastructure
0.02EPSS
CVE-2016-1384
Alta 7.5

The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, aka Bug ID CSCux46898.

cisco ios · cisco ios_xe
0.02EPSS
CVE-2018-0252
Alta 8.6

A vulnerability in the IP Version 4 (IPv4) fragment reassembly function of Cisco 3500, 5500, and 8500 Series Wireless LAN Controller Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a den…

cisco wireless_lan_controller_software
0.02EPSS
CVE-2018-0233
Alta 8.6

A vulnerability in the Secure Sockets Layer (SSL) packet reassembly functionality of the detection engine in Cisco Firepower System Software could allow an unauthenticated, remote attacker to cause the detection engine to consume excessive system memory on an …

cisco secure_firewall_management_center
0.02EPSS
CVE-2007-5134
Media 5.0

Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which network exposure was unintended.

cisco catalyst_6500 · cisco catalyst_6500_ws-svc-nam-1 · cisco catalyst_6500_ws-svc-nam-2 · cisco catalyst_6500_ws-x6380-nam · e altri 5
0.02EPSS
CVE-2017-3876
Alta 7.5

A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. The vulnerability is due to improper handling of gRPC req…

cisco ios_xr
0.02EPSS
CVE-2017-3808
Alta 7.5

A vulnerability in the Session Initiation Protocol (SIP) UDP throttling process of Cisco Unified Communications Manager (Cisco Unified CM) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The v…

cisco unified_communications_manager
0.02EPSS
CVE-2017-3859
Alta 7.5

A vulnerability in the DHCP code for the Zero Touch Provisioning feature of Cisco ASR 920 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a format string vul…

cisco ios_xe
0.02EPSS
CVE-2017-3856
Alta 7.5

A vulnerability in the web user interface of Cisco IOS XE 3.1 through 3.17 could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to insufficient resource handling by the affected software when the web u…

cisco ios_xe
0.02EPSS
CVE-2015-4223
Media 5.0

Cisco IOS XR 5.1.3 allows remote attackers to cause a denial of service (process reload) via crafted MPLS Label Distribution Protocol (LDP) packets, aka Bug ID CSCuu77478.

cisco ios_xr
0.02EPSS
CVE-2013-0149
Media 5.8

The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9.1, FWSM, NX-OS, and StarOS before 14.0.50488 does not properly validate Link State Advertisement (LSA) type 1 packets before perf…

cisco asa_5500 · cisco fwsm · cisco ios · cisco ios_xe · e altri 3
0.02EPSS
CVE-2016-6407
Alta 7.5

Cisco AsyncOS through 9.5.0-444 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (link saturation) by making many HTTP requests for overlapping byte ranges simultaneously, aka Bug ID CSCuz27219.

cisco web_security_appliance
0.02EPSS
CVE-2016-1301
Alta 8.8

The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug…

cisco asa_cx_context-aware_security_software · cisco prime_security_manager
0.02EPSS
CVE-2016-1399
Alta 7.5

The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 15.2(2)EB1 on Industrial Ethernet 5000 devices allows remote attackers to cause a denial of service (packet data…

cisco ios
0.02EPSS
CVE-2009-2863
Alta 7.1

Race condition in the Firewall Authentication Proxy feature in Cisco IOS 12.0 through 12.4 allows remote attackers to bypass authentication, or bypass the consent web page, via a crafted request, aka Bug ID CSCsy15227.

cisco ios
0.02EPSS
CVE-2015-0757
Media 5.0

The web framework in Cisco Identity Services Engine (ISE) 1.2(1.901) and 1.3(0.722) does not properly implement session handlers, which allows remote attackers to obtain sensitive information by reading web pages, as demonstrated by MnT reports, aka Bug ID CSC…

cisco identity_services_engine_software
0.02EPSS
CVE-2019-1873
Alta 8.6

A vulnerability in the cryptographic driver for Cisco Adaptive Security Appliance Software (ASA) and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reboot unexpectedly. The vulnerability is due to…

cisco asa_5506-x_firmware · cisco asa_5506h-x_firmware · cisco asa_5506w-x_firmware · cisco asa_5508-x_firmware · e altri 1
0.02EPSS
CVE-2018-0454
Alta 8.8

A vulnerability in the web-based management interface of Cisco Cloud Services Platform 2100 could allow an authenticated, remote attacker to perform command injection. The vulnerability is due to insufficient input validation of command input. An attacker coul…

cisco cloud_services_platform_2100_firmware
0.02EPSS