|
264631
|
6.5 |
MEDIUM
Network
|
cisco
|
expressway
|
A vulnerability in the HTTP traffic server component of Cisco Expressway could allow an unauthenticated, remote attacker to initiate TCP connections to arbitrary hosts. This does not allow for full t…
|
CWE-20 CWE-254
Improper Input Validation 7PK - Security Features
|
CVE-2016-9207
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264632
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance
|
A vulnerability in the Decrypt for End-User Notification configuration parameter of Cisco AsyncOS Software for Cisco Web Security Appliances could allow an unauthenticated, remote attacker to connect…
|
CWE-20
Improper Input Validation
|
CVE-2016-9212
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264633
|
4.3 |
MEDIUM
Network
|
cisco
|
firepower_services_for_adaptive_security_appliance
|
A vulnerability in TCP processing in Cisco FirePOWER system software could allow an unauthenticated, remote attacker to download files that would normally be blocked. Affected Products: The following…
|
CWE-254
7PK - Security Features
|
CVE-2016-9209
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264634
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the ccmadmin page of Cisco Unified Communications Manager (CUCM) could allow an unauthenticated, remote attacker to conduct reflected cross-site scripting (XSS) attacks. More Infor…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9206
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264635
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the HTTP 2.0 request handling code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Event Management Service daemon (emsd) to crash, resulting …
|
CWE-399
Resource Management Errors
|
CVE-2016-9205
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264636
|
6.5 |
MEDIUM
Network
|
cisco
|
nexus_1000v_intercloud_firmware
|
A vulnerability in the Cisco Intercloud Fabric (ICF) Director could allow an unauthenticated, remote attacker to connect to internal services with an internal account. Affected Products: Cisco Nexus …
|
CWE-255
Credentials Management
|
CVE-2016-9204
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264637
|
7.5 |
HIGH
Network
|
cisco
|
asr_5000_series_software
|
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco ASR 5000 Series Software could allow an unauthenticated, remote attacker to cause a reload of the ipsecmgr process. Mor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9203
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264638
|
6.1 |
MEDIUM
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the web-based management interface of Cisco Email Security Appliance (ESA) Switches could allow an unauthenticated, remote attacker to conduct a persistent cross-site scripting (XS…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9202
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264639
|
7.5 |
HIGH
Network
|
cisco
|
ios
|
A vulnerability in the Zone-Based Firewall feature of Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to pass traffic that should otherwise have been dropped based…
|
CWE-200 CWE-20
Information Exposure Improper Input Validation
|
CVE-2016-9201
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264640
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_collaboration_assurance
|
A vulnerability in the web framework code of Cisco Prime Collaboration Assurance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against the user of the…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9200
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|