|
265711
|
6.7 |
MEDIUM
Local
|
cisco
|
prime_collaboration
|
The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges, aka Bug ID CSCux69286.
|
CWE-264 CWE-78
Permissions, Privileges, and Access Controls OS Command
|
CVE-2016-1320
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265712
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance_firmeware
|
The proxy engine in Cisco Advanced Malware Protection (AMP), when used with Email Security Appliance (ESA) 9.5.0-201, 9.6.0-051, and 9.7.0-125, allows remote attackers to bypass intended content rest…
|
CWE-284
Improper Access Control
|
CVE-2016-1315
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265713
|
9.8 |
CRITICAL
Network
|
cisco
|
adaptive_security_appliance_software
|
Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before 9.1(7), 9.2 before 9.2(4.5), 9.3 before 9.3(3.7),…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1287
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265714
|
5.3 |
MEDIUM
Network
|
sun samsung zyxel zzinc
|
opensolaris x14j_firmware gs1900-10hp_firmware keymouse_firmware
|
Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified C…
|
CWE-200
Information Exposure
|
CVE-2016-1319
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265715
|
6.1 |
MEDIUM
Network
|
cisco
|
application_policy_infrastructure_controller_enterprise_module
|
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.1 allows remote attackers to inject arbitrary web script or HTML via craft…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1318
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265716
|
4.3 |
MEDIUM
Network
|
zyxel
|
gs1900-10hp_firmware
|
Cisco Unified Communications Manager 11.5(0.98000.480) allows remote authenticated users to obtain sensitive database table-name and entity-name information via a direct request to an unspecified URL…
|
CWE-200
Information Exposure
|
CVE-2016-1317
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265717
|
5.3 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server_software
|
Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7, as used in conjunction with Jabber Guest, allows remote attackers to obtain sensitive call-statistics information via a direct r…
|
CWE-200
Information Exposure
|
CVE-2016-1316
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265718
|
6.1 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meetings Server 2.5.1.5 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuy01…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1309
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265719
|
6.5 |
MEDIUM
Network
|
samsung
|
x14j_firmware
|
SQL injection vulnerability in Cisco Unified Communications Manager 10.5(2.13900.9) allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCux99227.
|
CWE-89
SQL Injection
|
CVE-2016-1308
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265720
|
5.4 |
MEDIUM
Network
|
zyxel zzinc
|
gs1900-10hp_firmware keymouse_firmware
|
The Openfire server in Cisco Finesse Desktop 10.5(1) and 11.0(1) and Unified Contact Center Express 10.6(1) has a hardcoded account, which makes it easier for remote attackers to obtain access via an…
|
CWE-287 CWE-255
Improper Authentication Credentials Management
|
CVE-2016-1307
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|