imPC@ndo EN

Vulnerabilità Cisco

6641 CVE

CVE-2012-4629
Alta 7.8

The Cisco ASA-CX Context-Aware Security module before 9.0.2-103 for Adaptive Security Appliances (ASA) devices, and Prime Security Manager (aka PRSM) before 9.0.2-103, allows remote attackers to cause a denial of service (disk consumption and application hang)…

cisco asa_cx_context-aware_security · cisco prime_security_manager
0.02EPSS
CVE-2021-1274
Alta 8.6

Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, see the Details section of this advisory.…

cisco catalyst_sd-wan_manager · cisco ios_xe_sd-wan · cisco sd-wan_firmware · cisco sd-wan_vbond_orchestrator · e altri 1
0.02EPSS
CVE-2020-3172
Alta 8.8

A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code as root or cause a denial of service (DoS) condition on an affected device. The …

cisco firepower_extensible_operating_system · cisco nx-os · cisco ucs_manager
0.02EPSS
CVE-2008-1150
Alta 7.1

The virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (resource exhaustion) via a series of PPTP sessions, related to the persistence of interface descriptor block (IDB) data structur…

cisco ios
0.02EPSS
CVE-2008-1151
Alta 7.1

Memory leak in the virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (memory consumption) via a series of PPTP sessions, related to "dead memory" that remains allocated after process …

cisco ios
0.02EPSS
CVE-2008-0537
Alta 7.1

Unspecified vulnerability in the Supervisor Engine 32 (Sup32), Supervisor Engine 720 (Sup720), and Route Switch Processor 720 (RSP720) for multiple Cisco products, when using Multi Protocol Label Switching (MPLS) VPN and OSPF sham-link, allows remote attackers…

cisco route_switch_processor · cisco supervisor_engine
0.02EPSS
CVE-2019-1961
Media 4.9

A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system (OS) of an affected device. The vulnerability is due to the improper input validati…

cisco enterprise_network_function_virtualization_infrastructure
0.02EPSS
CVE-2018-0130
Critica 9.8

A vulnerability in the use of JSON web tokens by the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticated, remote attacker to gain administrative access to an affected system. The vulnerability is due to the pre…

cisco virtual_managed_services
0.02EPSS
CVE-2019-1626
Alta 8.8

A vulnerability in the vManage web-based UI (Web UI) of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to gain elevated privileges on an affected vManage device. The vulnerability is due to a failure to properly authorize certain user …

cisco sd-wan_firmware
0.02EPSS
CVE-2018-0251
Media 6.1

A vulnerability in the Web Server Authentication Required screen of the Clientless Secure Sockets Layer (SSL) VPN portal of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS)…

cisco adaptive_security_appliance_software
0.02EPSS
CVE-2015-6324
Alta 7.1

The DHCPv6 relay implementation in Cisco Adaptive Security Appliance (ASA) software 9.0 before 9.0(4.37), 9.1 before 9.1(6.6), 9.2 before 9.2(4), 9.3 before 9.3(3.5), and 9.4 before 9.4(2) allows remote attackers to cause a denial of service (device reload) vi…

cisco adaptive_security_appliance_software
0.02EPSS
CVE-2013-5546
Alta 7.8

The TCP reassembly feature in Cisco IOS XE 3.7 before 3.7.3S and 3.8 before 3.8.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via large TCP packets that are processed by the (1) NAT or (2) ALG component, aka Bug ID…

cisco asr_1001 · cisco asr_1002 · cisco asr_1002-x · cisco asr_1004 · e altri 3
0.02EPSS
CVE-2013-5545
Alta 7.8

The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending many PPTP packets over NAT, aka Bug ID CSCuh19936.

cisco asr_1001 · cisco asr_1002 · cisco asr_1002-x · cisco asr_1004 · e altri 3
0.02EPSS
CVE-2013-5543
Alta 7.8

Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Bas…

cisco asr_1001 · cisco asr_1002 · cisco asr_1002-x · cisco asr_1004 · e altri 3
0.02EPSS
CVE-2013-1181
Alta 7.8

Cisco NX-OS on Nexus 5500 devices 4.x and 5.x before 5.0(3)N2(2), Nexus 3000 devices 5.x before 5.0(3)U3(2), and Unified Computing System (UCS) 6200 devices before 2.0(1w) allows remote attackers to cause a denial of service (device reload) by sending a jumbo …

cisco nexus_3016q · cisco nexus_3048 · cisco nexus_3064t · cisco nexus_3064x · e altri 8
0.02EPSS
CVE-2013-1166
Alta 7.8

Cisco IOS XE 3.2 through 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR), when VRF-aware NAT and SIP ALG are enabled, allows remote attackers to cause a denial of service (card reload) by sending many SIP…

cisco asr_1001 · cisco asr_1002 · cisco asr_1002-x · cisco asr_1002_fixed_router · e altri 4
0.02EPSS
CVE-2013-1165
Alta 7.8

Cisco IOS XE 2.x and 3.x before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) allows remote attackers to cause a denial of service (card reload) by sending many crafted L2TP packets, aka Bug ID CSCtz23293.

cisco asr_1001 · cisco asr_1002 · cisco asr_1002-x · cisco asr_1002_fixed_router · e altri 4
0.02EPSS
CVE-2018-0399
Critica 9.8

Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to retrieve a cleartext password from an affected system. Cisco Bug IDs: CSCvg71044.

cisco finesse
0.02EPSS
CVE-2015-4316
Media 5.5

The Mobile and Remote Access (MRA) endpoint-validation feature in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 improperly validates the phone line used for registration, which allows remote authenticated users to conduct impersonation …

cisco telepresence_video_communication_server_software
0.02EPSS
CVE-2014-3386
Alta 7.8

The GPRS Tunneling Protocol (GTP) inspection engine in Cisco ASA Software 8.2 before 8.2(5.51), 8.4 before 8.4(7.15), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to cause a denial of service (device reload) via a …

cisco asa
0.02EPSS
CVE-2013-5479
Alta 7.8

The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 through 15.3, when NAT is used, allows remote attackers to cause a denial of service (device reload) via a crafted IPv4 DNS TCP stream, aka Bug ID CSCtn53730.

cisco ios
0.02EPSS
CVE-2013-5478
Alta 7.8

Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via crafted UDP RSVP packets, aka Bug ID CSCuf17023.

cisco ios · cisco ios_xe
0.02EPSS
CVE-2013-5477
Alta 7.8

The T1/E1 driver-queue functionality in Cisco IOS 12.2 and 15.0 through 15.3, when an HDLC32 driver is used, allows remote attackers to cause a denial of service (interface queue wedge) via bursty network traffic, aka Bug ID CSCub67465.

cisco ios
0.02EPSS
CVE-2013-5476
Alta 7.8

The Zone-Based Firewall (ZFW) feature in Cisco IOS 15.1 through 15.2, when content filtering or HTTP ALG inspection is enabled, allows remote attackers to cause a denial of service (device reload or hang) via crafted IPv4 HTTP traffic, aka Bug ID CSCtx56174.

cisco ios
0.02EPSS
CVE-2013-5475
Alta 7.8

Cisco IOS 12.2 through 12.4 and 15.0 through 15.3, and IOS XE 2.1 through 3.9, allows remote attackers to cause a denial of service (device reload) via crafted DHCP packets that are processed locally by a (1) server or (2) relay agent, aka Bug ID CSCug31561.

cisco ios · cisco ios_xe
0.02EPSS