imPC@ndo EN

Vulnerabilità Cisco

6639 CVE

CVE-2012-1315
Alta 7.8

Memory leak in the SIP inspection feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit SIP traffic, aka Bug ID CSCti46171.

cisco ios
0.02EPSS
CVE-2012-1314
Alta 7.8

The WAAS Express feature in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit traffic, aka Bug ID CSCtt45381.

cisco ios
0.02EPSS
CVE-2012-1311
Alta 7.8

The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a VRF interface is configured, allows remote attackers to cause a denial of service (interface queue wedge and service outage) via crafted RSVP packets, aka Bug ID…

cisco ios · cisco ios_xe
0.02EPSS
CVE-2012-0387
Alta 7.8

Memory leak in the HTTP Inspection Engine feature in the Zone-Based Firewall in Cisco IOS 12.4, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted transit HTTP traffic, aka Bug ID CSCtq36…

cisco ios
0.02EPSS
CVE-2012-0383
Alta 7.8

Memory leak in the NAT feature in Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (memory consumption, and device hang or reload) via SIP packets that require translation, related to a "memory starvation vulnerability," aka …

cisco ios
0.02EPSS
CVE-2022-20723
Media 5.5

Multiple vulnerabilities in the Cisco IOx application hosting environment on multiple Cisco platforms could allow an attacker to inject arbitrary commands into the underlying host operating system, execute arbitrary code on the underlying host operating system…

cisco ios_xe
0.02EPSS
CVE-2019-1967
Alta 7.5

A vulnerability in the Network Time Protocol (NTP) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to excessive use of system resources…

cisco nx-os
0.02EPSS
CVE-2019-1964
Alta 8.6

A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device. The vulnerability is due to improper validation of IPv6 traffic…

cisco nx-os
0.02EPSS
CVE-2017-6613
Media 5.8

A vulnerability in the DNS input packet processor for Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause the DNS process to momentarily restart, which could lead to a partial denial of service (DoS) condition on the affected…

cisco prime_network_registrar
0.02EPSS
CVE-2014-2113
Alta 7.8

Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, and 3.10 before 3.10.2S allow remote attackers to cause a denial of service (I/O memory consumption and device reload) via a malformed IPv6 packet, aka Bug ID CS…

cisco ios · cisco ios_xe
0.02EPSS
CVE-2006-4909
Bassa 2.6

Cross-site scripting (XSS) vulnerability in Cisco Guard DDoS Mitigation Appliance before 5.1(6), when anti-spoofing is enabled, allows remote attackers to inject arbitrary web script or HTML via certain character sequences in a URL that are not properly handle…

cisco guard_ddos_mitigation_appliance
0.02EPSS
CVE-2021-1223
Alta 7.5

Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of an HTTP range header. An a…

cisco ios_xe · cisco secure_firewall_management_center · cisco secure_firewall_threat_defense · snort snort
0.02EPSS
CVE-2016-1349
Alta 7.5

The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410.

cisco ios_xe · intel core_i5-9400f_firmware · netgear jr6150_firmware · samsung x14j_firmware · e altri 3
0.02EPSS
CVE-2008-0028
Alta 7.1

Unspecified vulnerability in Cisco PIX 500 Series Security Appliance and 5500 Series Adaptive Security Appliance (ASA) before 7.2(3)6 and 8.0(3), when the Time-to-Live (TTL) decrement feature is enabled, allows remote attackers to cause a denial of service (de…

cisco adaptive_security_appliance_software · cisco pix_firewall_software
0.02EPSS
CVE-2019-12654
Alta 7.5

A vulnerability in the common Session Initiation Protocol (SIP) library of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerabil…

cisco ios_xe
0.02EPSS
CVE-2019-12653
Alta 7.5

A vulnerability in the Raw Socket Transport feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper parsi…

cisco ios_xe
0.02EPSS
CVE-2019-12647
Alta 7.5

A vulnerability in the Ident protocol handler of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability exists because the affected software incorrectly handles memory structures, …

cisco ios_xe
0.02EPSS
CVE-2017-6779
Alta 7.5

Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial of service …

cisco emergency_responder · cisco finesse · cisco hosted_collaboration_mediation_fulfillment · cisco mediasense · e altri 9
0.02EPSS
CVE-2009-1202
Media 4.3

WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 allows remote attackers to bypass certain protection mechanisms involving URL rewriting and HTML rewriting, and conduct cross-site scripting (XSS) attacks, by …

cisco adaptive_security_appliance
0.02EPSS
CVE-2019-12657
Alta 7.5

A vulnerability in Unified Threat Defense (UTD) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to improper validation of IPv6 packets through the UTD feature. An attacker…

cisco ios_xe
0.02EPSS
CVE-2019-1962
Alta 8.6

A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which can result in a denial of service (DoS) condition on an affected system. The vulnerability is due to …

cisco nx-os
0.02EPSS
CVE-2015-4328
Media 4.0

Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 improperly checks for a user account's read-only attribute, which allows remote authenticated users to execute arbitrary OS commands via crafted HTTP requests, as demonstrated by read or wri…

cisco telepresence_video_communication_server_software
0.02EPSS
CVE-2011-0355
Alta 7.8

Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(1) through SV1(3b), as used in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, does not properly handle dropped packets, which allows guest OS users to cause a denial of service (ESX or ESXi host OS crash…

cisco 1000v_virtual_ethernet_module_\(vem\) · vmware esx · vmware esxi
0.02EPSS
CVE-2020-3241
Media 6.5

A vulnerability in the orchestration tasks of Cisco UCS Director could allow an authenticated, remote attacker to perform a path traversal attack on an affected device. The vulnerability is due to insufficient validation of user-supplied input on the web-based…

cisco ucs_director
0.02EPSS
CVE-2015-4291
Alta 7.8

Cisco IOS XE 2.x before 2.4.3 and 2.5.x before 2.5.1 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted series of fragmented (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCtd72617.

cisco ios_xe
0.02EPSS