cisco

6,787 tracked vulnerabilities.

CVE-2018-0128 MEDIUM
Cisco Data Center Analytics Framework - Unauthenticated Stored Cross-Site Scripting
Feb 08, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-0127 CRITICAL NUCLEI
Cisco RV132W and RV134W - Unauthenticated Information Disclosure via Web Interface
Feb 08, 2018
CVSS 9.8
EPSS 0.77
CVE-2018-0125 CRITICAL KEV
Cisco RV132W and RV134W Firmware - Unauthenticated Remote Code Execution and Denial of Service via HTTP Request
Feb 08, 2018
CVSS 9.8
EPSS 0.55
CVE-2018-0123 MEDIUM
Cisco IOS and IOS XE - Authenticated Path Traversal via Diagnostic Shell Commands
Feb 08, 2018
CVSS 5.5
EPSS 0.00
CVE-2018-0122 MEDIUM
Cisco StarOS - Authenticated Arbitrary File Write via CLI Command Injection
Feb 08, 2018
CVSS 4.4
EPSS 0.00
CVE-2018-0120 MEDIUM
Cisco Unified Communications Manager - Authenticated SQL Injection via Bypassed Protection Filters
Feb 08, 2018
CVSS 4.3
EPSS 0.01
CVE-2018-0119 MEDIUM
Cisco Conference Director - Authenticated Improper Access Control via Token Reuse
Feb 08, 2018
CVSS 4.7
EPSS 0.01
CVE-2018-0117 HIGH
Cisco ASR 5000 and 5500 Firmware N4.0-N5.5 - Unauthenticated Denial of Service via Malicious Ingress Traffic
Feb 08, 2018
CVSS 8.6
EPSS 0.02
CVE-2018-0116 HIGH
Cisco Mobility Services Engine - Unauthenticated RADIUS Authentication Bypass via Invalid Password
Feb 08, 2018
CVSS 7.2
EPSS 0.01
CVE-2018-0113 HIGH
Cisco UCS Central Software < 2.0(1c) - Authenticated Remote Code Execution via Crafted UI Request
Feb 08, 2018
CVSS 8.8
EPSS 0.02
CVE-2018-0136 HIGH
Cisco IOS XR 5.3.4 - Unauthenticated Denial of Service via IPv6 Fragment Header Extension
Jan 31, 2018
CVSS 8.6
EPSS 0.03
CVE-2018-0101 CRITICAL
Cisco ASA <9.1.7.23/9.2.0-9.2.4.27 RCE via SSL VPN XML Packet Handling
Jan 29, 2018
CVSS 10.0
EPSS 0.87
CVE-2018-0115 MEDIUM
Cisco StarOS - Authenticated OS Command Injection via CLI Command Arguments
Jan 18, 2018
CVSS 6.7
EPSS 0.00
CVE-2018-0111 MEDIUM
Cisco WebEx Meetings Server - Unauthenticated Exposure of Sensitive Information
Jan 18, 2018
CVSS 5.3
EPSS 0.02
CVE-2018-0110 HIGH
Cisco WebEx Meetings Server - Authenticated Remote Support Account Access Bypass
Jan 18, 2018
CVSS 8.1
EPSS 0.01
CVE-2018-0109 LOW
Cisco WebEx Meetings Server - Authenticated Exposure of Sensitive Information via Root Account Access
Jan 18, 2018
CVSS 2.7
EPSS 0.01
CVE-2018-0108 MEDIUM
Cisco WebEx Meetings Server - XML External Entity Injection
Jan 18, 2018
CVSS 5.3
EPSS 0.02
CVE-2018-0107 HIGH
Cisco Prime Service Catalog - Cross-Site Request Forgery
Jan 18, 2018
CVSS 8.8
EPSS 0.01
CVE-2018-0106 LOW
Cisco Elastic Services Controller - Unauthenticated Sensitive Information Exposure via ConfD Directory Access
Jan 18, 2018
CVSS 3.3
EPSS 0.00
CVE-2018-0105 MEDIUM
Cisco Unified Communications Manager - Unauthenticated Exposure of Sensitive Information via Database Table Access
Jan 18, 2018
CVSS 5.3
EPSS 0.02
CVE-2018-0102 HIGH
Cisco NX-OS 7.2(1)D(1), 7.2(2)D1(1), 7.2(2)D1(2) - Unauthenticated Denial of Service via Pong Tool Double Free
Jan 18, 2018
CVSS 7.4
EPSS 0.01
CVE-2018-0100 MEDIUM
Cisco AnyConnect Secure Mobility Client - XML External Entity Injection via Profile Editor
Jan 18, 2018
CVSS 4.4
EPSS 0.00
CVE-2018-0099 HIGH
Cisco D9800 Network Transport Receiver Firmware - Authenticated OS Command Injection via Web Management GUI
Jan 18, 2018
CVSS 8.8
EPSS 0.03
CVE-2018-0098 MEDIUM
Cisco WAP150 and WAP361 - Unauthenticated Stored Cross-Site Scripting
Jan 18, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-0097 MEDIUM
Cisco Prime Infrastructure - Unauthenticated Open Redirect via HTTP Request Parameter
Jan 18, 2018
CVSS 6.1
EPSS 0.01