|
248001
|
9.8 |
CRITICAL
Network
|
cisco
|
integrated_management_controller
|
A vulnerability in the web framework code of Cisco Integrated Management Controller (IMC) Supervisor could allow an unauthenticated, remote attacker to execute arbitrary SQL queries. The vulnerabilit…
|
CWE-89
SQL Injection
|
CVE-2018-15447
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248002
|
7.5 |
HIGH
Network
|
cisco
|
meeting_server
|
A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper protections on data that is retur…
|
CWE-200
Information Exposure
|
CVE-2018-15446
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248003
|
8.0 |
HIGH
Network
|
cisco
|
energy_management_suite_software
|
A vulnerability in the web-based management interface of Cisco Energy Management Suite Software could allow an authenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and…
|
CWE-352
Origin Validation Error
|
CVE-2018-15445
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248004
|
7.3 |
HIGH
Network
|
cisco
|
energy_management_suite_software
|
A vulnerability in the web-based user interface of Cisco Energy Management Suite Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on …
|
CWE-611
XXE
|
CVE-2018-15444
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248005
|
7.5 |
HIGH
Network
|
cisco
|
firepower_system_software
|
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-15443
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248006
|
5.5 |
MEDIUM
Local
|
cisco
|
advanced_malware_protection_for_endpoints immunet_for_endpoints
|
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoints running on Microsoft Windows could allow a local attacker to disable the sc…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-15437
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248007
|
9.8 |
CRITICAL
Network
|
cisco
|
stealthwatch_enterprise
|
A vulnerability in the Stealthwatch Management Console (SMC) of Cisco Stealthwatch Enterprise could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions wi…
|
NVD-CWE-noinfo
|
CVE-2018-15394
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248008
|
6.1 |
MEDIUM
Network
|
cisco
|
content_security_management_appliance
|
A vulnerability in the web-based management interface of Cisco Content Security Management Appliance (SMA) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (…
|
CWE-79
Cross-site Scripting
|
CVE-2018-15393
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248009
|
9.8 |
CRITICAL
Network
|
cisco
|
sg200-50_firmware sg200-50p_firmware sg200-50fp_firmware sg200-26_firmware sg200-26p_firmware sg200-26fp_firmware sg200-18_firmware sg200-10fp_firmware sg200-08_firmware sg…
|
A vulnerability in the Cisco Small Business Switches software could allow an unauthenticated, remote attacker to bypass the user authentication mechanism of an affected device. The vulnerability exis…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-15439
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248010
|
9.8 |
CRITICAL
Network
|
cisco
|
unity_express
|
A Java deserialization vulnerability in Cisco Unity Express (CUE) could allow an unauthenticated, remote attacker to execute arbitrary shell commands with the privileges of the root user. The vulnera…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-15381
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|