|
248541
|
9.8 |
CRITICAL
Network
|
cisco
|
digital_network_architecture_center
|
A vulnerability in the identity management service of Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass authentication and take complete contro…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2018-0448
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248542
|
5.3 |
MEDIUM
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the anti-spam protection mechanisms of Cisco AsyncOS Software for the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass certain content…
|
CWE-20
Improper Input Validation
|
CVE-2018-0447
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248543
|
8.8 |
HIGH
Network
|
cisco
|
network_level_service
|
A vulnerability in the web-based management interface of Cisco Industrial Network Director could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and pe…
|
CWE-352
Origin Validation Error
|
CVE-2018-0446
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248544
|
8.8 |
HIGH
Network
|
cisco
|
packaged_contact_center_enterprise
|
A vulnerability in the web-based management interface of Cisco Packaged Contact Center Enterprise could allow an unauthenticated, remote attacker to conduct a CSRF attack and perform arbitrary action…
|
CWE-352
Origin Validation Error
|
CVE-2018-0445
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248545
|
6.1 |
MEDIUM
Network
|
cisco
|
packaged_contact_center_enterprise
|
A vulnerability in the web-based management interface of Cisco Packaged Contact Center Enterprise could allow an unauthenticated, remote attacker to conduct a stored XSS attack against a user of the …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0444
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248546
|
7.2 |
HIGH
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the web interface of Cisco Data Center Network Manager could allow an authenticated application administrator to execute commands on the underlying operating system with root-level…
|
CWE-20
Improper Input Validation
|
CVE-2018-0440
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248547
|
8.8 |
HIGH
Network
|
cisco
|
meeting_server
|
A vulnerability in the web-based management interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitra…
|
CWE-352
Origin Validation Error
|
CVE-2018-0439
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248548
|
7.8 |
HIGH
Local
|
cisco
|
umbrella_enterprise_roaming_client
|
A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administrator. To exploit the vulnerability, the attacker m…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0438
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248549
|
7.8 |
HIGH
Local
|
cisco
|
umbrella_enterprise_roaming_client umbrella_roaming_module
|
A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administrator. To exploit the vulnerability, the attacker m…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0437
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248550
|
8.7 |
HIGH
Network
|
cisco
|
webex_teams
|
A vulnerability in Cisco Webex Teams, formerly Cisco Spark, could allow an authenticated, remote attacker to view and modify data for an organization other than their own organization. The vulnerabil…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0436
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|