|
268481
|
- |
|
cisco
|
ios ios_xe
|
The IKEv1 state machine in Cisco IOS 15.4 through 15.6 and IOS XE 3.15 through 3.17 allows remote attackers to cause a denial of service (IPsec connection termination) via a crafted IKEv1 packet to a…
|
CWE-19
Data Processing Errors
|
CVE-2015-6429
|
2024-11-21 11:34 |
2015-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268482
|
- |
|
cisco
|
dpq3925_8x4_docsis_3.0_wireless_residential_gateway_with_embedded_digital_voice_adapter
|
Cisco DPQ3925 devices with EDVA r1 Base allow remote attackers to obtain sensitive information via a crafted HTTP request, aka Bug ID CSCuv03958.
|
CWE-200
Information Exposure
|
CVE-2015-6428
|
2024-11-21 11:34 |
2015-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268483
|
- |
|
cisco
|
firesight_system_software
|
Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL session that is mishandled after decryption, aka …
|
CWE-254
7PK - Security Features
|
CVE-2015-6427
|
2024-11-21 11:34 |
2015-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268484
|
- |
|
cisco
|
prime_network_services_controller
|
Cisco Prime Network Services Controller 3.0 allows local users to bypass intended access restrictions and execute arbitrary commands via additional parameters to an unspecified command, aka Bug ID CS…
|
CWE-20
Improper Input Validation
|
CVE-2015-6426
|
2024-11-21 11:34 |
2015-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268485
|
- |
|
cisco
|
application_policy_infrastructure_controller
|
The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions and obtain single-user-mode root access via unspeci…
|
CWE-255
Credentials Management
|
CVE-2015-6424
|
2024-11-21 11:34 |
2015-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268486
|
- |
|
cisco
|
unified_communications_manager
|
The WebApplications Identity Management subsystem in Cisco Unified Communications Manager 10.5(0.98000.88) allows remote attackers to cause a denial of service (subsystem outage) via invalid session …
|
CWE-399
Resource Management Errors
|
CVE-2015-6425
|
2024-11-21 11:34 |
2015-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268487
|
- |
|
apache
|
commons_collections
|
Serialized-object interfaces in certain Cisco Collaboration and Social Media; Endpoint Clients and Client Software; Network Application, Service, and Acceleration; Network and Content Security Device…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2015-6420
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268488
|
- |
|
cisco
|
firepower_management_center
|
Cisco FirePOWER Management Center 5.4.1.3, 6.0.0, and 6.0.1 provides verbose responses to requests for help files, which allows remote attackers to obtain potentially sensitive version information by…
|
CWE-200
Information Exposure
|
CVE-2015-6411
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268489
|
- |
|
cisco
|
hosted_collaboration_solution
|
Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SO…
|
CWE-200
Information Exposure
|
CVE-2015-6404
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268490
|
- |
|
cisco
|
spa500_firmware spa300_firmware
|
The TFTP implementation on Cisco Small Business SPA30x, SPA50x, SPA51x phones 7.5.7 improperly validates firmware-image file integrity, which allows local users to load a Trojan horse image by levera…
|
CWE-20
Improper Input Validation
|
CVE-2015-6403
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|