cisco

6,787 tracked vulnerabilities.

CVE-2017-6681 HIGH
Cisco Ultra Services Framework 21.0.0.0 - Unauthenticated Relative Path Traversal and Sensitive File Read
Jun 13, 2017
CVSS 7.5
EPSS 0.03
CVE-2017-6680 HIGH
Cisco Ultra Services Framework 21.0.0 - Unauthenticated Arbitrary Directory Creation via AutoVNF Logging Function
Jun 13, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6675 MEDIUM
Cisco Industrial Network Director 1.1(0.176) - Unauthenticated Reflected Cross-Site Scripting
Jun 13, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-6674 HIGH
Cisco Firepower System Software 6.0.1-6.2.1 - Unauthenticated URL Filter Bypass via Feature-License Management
Jun 13, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-6673 MEDIUM
Cisco Firepower Management Center 6.1.0.2 6.2.0 - Authenticated Exposure of Sensitive Information
Jun 13, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-6671 HIGH
Cisco Email Security Appliance - Unauthenticated Filter Bypass via Email Message Scanning
Jun 13, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6670 MEDIUM
Cisco Unified Communications Domain Manager 8.1(7)ER1 - Unauthenticated Open Redirect
Jun 13, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-6668 MEDIUM
Cisco Unified Communications Domain Manager 8.1(7)ER1 - Authenticated SQL Injection
Jun 13, 2017
CVSS 4.9
EPSS 0.01
CVE-2017-6667 CRITICAL
Cisco Context Service SDK - Unauthenticated Remote Code Execution via Dynamic JAR File Update
Jun 13, 2017
CVSS 9.8
EPSS 0.05
CVE-2017-6666 MEDIUM
Cisco IOS XR 6.2.11.BASE - Authenticated Denial of Service via Traffic Engineering Tunnel Forwarding
Jun 13, 2017
CVSS 6.0
EPSS 0.00
CVE-2017-6661 MEDIUM
Cisco Email Security Appliance - Unauthenticated Stored XSS in Message Tracking
Jun 13, 2017
CVSS 6.1
EPSS 0.01
CVE-2017-6659 HIGH
Cisco Prime Collaboration Assurance - Unauthenticated Cross-Site Request Forgery
Jun 13, 2017
CVSS 8.8
EPSS 0.01
CVE-2017-6656 MEDIUM
Cisco IP Phone 8800 Series - Unauthenticated Denial of Service via SIP Call Handling
Jun 13, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-6655 MEDIUM
Cisco NX-OS Software - Denial of Service via FCoE Protocol Implementation
Jun 13, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-6648 HIGH
Cisco TelePresence TC and CE Software - Denial of Service via SIP INVITE Flood
Jun 08, 2017
CVSS 7.5
EPSS 0.04
CVE-2017-6640 CRITICAL
Cisco Prime Data Center Network Manager < 10.2(1) - Unauthenticated Default Static Credential
Jun 08, 2017
CVSS 9.8
EPSS 0.11
CVE-2017-6639 CRITICAL
Cisco Prime Data Center Network Manager 10.1(1)-10.1(2) - Unauthenticated Remote Code Execution via Debugging Tool
Jun 08, 2017
CVSS 9.8
EPSS 0.35
CVE-2017-6638 HIGH
Cisco AnyConnect Secure Mobility Client < 4.4.02034 - Authenticated Local Privilege Escalation via DLL Hijacking
Jun 08, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-6654 MEDIUM
Cisco Unified Communications Manager 10.5-11.5 - Unauthenticated Stored Cross-Site Scripting
May 22, 2017
CVSS 6.1
EPSS 0.02
CVE-2017-6653 HIGH
Cisco Identity Services Engine 2.1(0.474) - Unauthenticated Denial of Service via TCP Connection Flood
May 22, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-6650 HIGH
Cisco NX-OS 7.1-7.3 - Authenticated Command Injection via Telnet CLI
May 22, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-6649 HIGH
Cisco NX-OS 7.1-7.3 - Authenticated Command Injection via CLI Arguments
May 22, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-6647 MEDIUM
Cisco Remote Expert Manager 11.0.0 - Unauthenticated Sensitive Information Exposure via HTTP Requests
May 22, 2017
CVSS 5.3
EPSS 0.03
CVE-2017-6646 MEDIUM
Cisco Remote Expert Manager 11.0.0 - Unauthenticated Exposure of Sensitive Order Information via HTTP Request
May 22, 2017
CVSS 5.3
EPSS 0.03
CVE-2017-6645 MEDIUM
Cisco Remote Expert Manager 11.0.0 - Unauthenticated Sensitive Information Exposure via HTTP Request
May 22, 2017
CVSS 5.3
EPSS 0.03