imPC@ndo EN

Vulnerabilità Cisco

6639 CVE

CVE-2014-0673
Media 4.3

Multiple cross-site scripting (XSS) vulnerabilities in the web interface on Cisco Video Surveillance 5000 HD IP Dome cameras allow remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug IDs CSCud10943 and CSCud10950.

cisco video_surveillance_indoor_fixed_dome_ip_hd_camera
0.02EPSS
CVE-2014-0670
Media 4.3

Cross-site scripting (XSS) vulnerability in the Search and Play interface in Cisco MediaSense allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCum16686.

cisco mediasense
0.02EPSS
CVE-2014-0652
Media 4.3

Cross-site scripting (XSS) vulnerability in the Mappings page in Cisco Context Directory Agent (CDA) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuj45358.

cisco context_directory_agent
0.02EPSS
CVE-2012-0335
Media 5.0

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 through 8.4 do not properly perform proxy authentication during attempts to cut through a firewall, which allows remote attackers to obtain sensitive information via a connection at…

cisco 5500_series_adaptive_security_appliance · cisco adaptive_security_appliance_software
0.02EPSS
CVE-2018-0113
Alta 8.8

A vulnerability in an operations script of Cisco UCS Central could allow an authenticated, remote attacker to execute arbitrary shell commands with the privileges of the daemon user. The vulnerability is due to insufficient input validation. An attacker could …

cisco unified_computing_system_central_software
0.02EPSS
CVE-2020-3426
Alta 7.5

A vulnerability in the implementation of the Low Power, Wide Area (LPWA) subsystem of Cisco IOS Software for Cisco 800 Series Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an unauthe…

cisco ios
0.02EPSS
CVE-2015-4203
Media 5.4

Race condition in Cisco IOS 12.2SCH in the Performance Routing Engine (PRE) module on uBR10000 devices, when NetFlow and an MPLS IPv6 VPN are configured, allows remote attackers to cause a denial of service (PXF process crash) by sending malformed MPLS 6VPE pa…

cisco ios
0.02EPSS
CVE-2006-4194
Media 5.0

Unspecified vulnerability in Cisco PIX 500 Series Security Appliances allows remote attackers to send arbitrary UDP packets to intranet devices via unspecified vectors involving Session Initiation Protocol (SIP) fixup commands, a different issue than CVE-2006-…

cisco pix_firewall_501 · cisco pix_firewall_506 · cisco pix_firewall_515 · cisco pix_firewall_515e · e altri 4
0.02EPSS
CVE-2019-1742
Media 5.3

A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to access sensitive configuration information. The vulnerability is due to improper access control to files within the web UI. An attacker could exploit this…

cisco ios_xe
0.02EPSS
CVE-2020-3411
Alta 7.5

A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive information on an affected system. The vulnerability is due to improper handling of authentication tokens by the affected software. An attacker coul…

cisco catalyst_center
0.02EPSS
CVE-2018-15448
Alta 7.5

A vulnerability in the user management functions of Cisco Registered Envelope Service could allow an unauthenticated, remote attacker to discover sensitive user information. The attacker could use this information to conduct additional reconnaissance attacks. …

cisco registered_envelope_service
0.02EPSS
CVE-2018-0226
Alta 7.5

A vulnerability in the assignment and management of default user accounts for Secure Shell (SSH) access to Cisco Aironet 1800, 2800, and 3800 Series Access Points that are running Cisco Mobility Express Software could allow an authenticated, remote attacker to…

cisco mobility_express_software
0.02EPSS
CVE-2015-6310
Media 5.0

The REST interface in Cisco Unified Communications Manager IM and Presence Service 11.5(1) allows remote attackers to cause a denial of service (SIP proxy service restart) via a crafted HTTP request, aka Bug ID CSCuw31632.

cisco unified_communications_manager_im_and_presence_service
0.02EPSS
CVE-2015-6288
Media 5.0

Cisco Content Security Management Appliance (SMA) 7.8.0-000 does not properly validate credentials, which allows remote attackers to cause a denial of service (rapid log-file rollover and application fault) via crafted HTTP requests, aka Bug ID CSCuw09620.

cisco content_security_management_appliance
0.02EPSS
CVE-2012-2488
Alta 7.8

Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.

cisco asr_9000_rsp440_router · cisco crs_performance_route_processor · cisco ios_xr
0.02EPSS
CVE-2019-1666
Media 5.3

A vulnerability in the Graphite service of Cisco HyperFlex software could allow an unauthenticated, remote attacker to retrieve data from the Graphite service. The vulnerability is due to insufficient authentication controls. An attacker could exploit this vul…

cisco hyperflex_hx_data_platform
0.02EPSS
CVE-2019-1660
Media 5.3

A vulnerability in the Simple Object Access Protocol (SOAP) of Cisco TelePresence Management Suite (TMS) software could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to a lack of proper ac…

cisco telepresence_management_suite
0.02EPSS
CVE-2017-6682
Alta 8.8

A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to run arbitrary commands as the Linux tomcat user on an affected system. More Information: CSCvc76620. Known Affected Releases: 2.2(9.76).

cisco elastic_services_controller
0.02EPSS
CVE-2016-6458
Alta 7.5

A vulnerability in the content filtering functionality of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to bypass content filters configured on an affected device. Email that should have been filtere…

cisco email_security_appliance_firmware
0.02EPSS
CVE-2014-3320
Media 5.8

Multiple open redirect vulnerabilities in the admin web interface in the web framework in Cisco Unified Communications Domain Manager (CDM) 8.1(.4) and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via cra…

cisco unified_communications_domain_manager
0.02EPSS
CVE-2014-3283
Media 5.8

Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing atta…

cisco unified_communications_domain_manager
0.02EPSS
CVE-2020-3550
Alta 8.1

A vulnerability in the sfmgr daemon of Cisco Firepower Management Center (FMC) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to perform directory traversal and access directories outside the restricted…

cisco secure_firewall_management_center · cisco secure_firewall_threat_defense
0.02EPSS
CVE-2014-2108
Alta 7.8

Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.2 through 3.7 before 3.7.5S and 3.8 through 3.10 before 3.10.1S allow remote attackers to cause a denial of service (device reload) via a malformed IKEv2 packet, aka Bug ID CSCui88426.

cisco ios · cisco ios_xe
0.02EPSS
CVE-2022-20718
Media 5.5

Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary commands into the underlying host operating system, execute arbitrary code on the underlying host operating system…

cisco ios_xe
0.02EPSS
CVE-2000-0150
Alta 7.5

Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.

checkpoint firewall-1 · cisco pix_firewall_software
0.02EPSS