|
246831
|
9.8 |
CRITICAL
Network
|
cisco
|
prime_collaboration prime_collaboration_provisioning
|
A vulnerability in the password reset function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The v…
|
CWE-287
Improper Authentication
|
CVE-2018-0318
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246832
|
8.8 |
HIGH
Network
|
cisco
|
prime_collaboration prime_collaboration_provisioning
|
A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalate their privileges. The vulnerability is due to insufficie…
|
CWE-862
Missing Authorization
|
CVE-2018-0317
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246833
|
7.5 |
HIGH
Network
|
cisco
|
ip_phone_firmware
|
A vulnerability in the Session Initiation Protocol (SIP) call-handling functionality of Cisco IP Phone 6800, 7800, and 8800 Series Phones with Multiplatform Firmware could allow an unauthenticated, r…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2018-0316
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246834
|
9.8 |
CRITICAL
Network
|
cisco
|
ios_xe
|
A vulnerability in the authentication, authorization, and accounting (AAA) security services of Cisco IOS XE Software could allow an unauthenticated, remote attacker to execute arbitrary code on an a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0315
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246835
|
7.5 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_software firepower_threat_defense
|
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a …
|
CWE-22
Path Traversal
|
CVE-2018-0296
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246836
|
8.8 |
HIGH
Network
|
cisco
|
network_services_orchestrator
|
A vulnerability in the CLI parser of Cisco Network Services Orchestrator (NSO) could allow an authenticated, remote attacker to execute arbitrary shell commands with the privileges of the root user. …
|
CWE-78
OS Command
|
CVE-2018-0274
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246837
|
7.4 |
HIGH
Adjacent
|
cisco
|
meeting_server
|
A vulnerability in Cisco Meeting Server (CMS) could allow an unauthenticated, adjacent attacker to access services running on internal device interfaces of an affected system. The vulnerability is du…
|
CWE-1188
Insecure Default Initialization of Resource
|
CVE-2018-0263
|
2024-11-21 12:37 |
2018-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246838
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the web framework of Cisco Unified Communications Manager and Cisco Unified Presence could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0328
|
2024-11-21 12:37 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246839
|
6.1 |
MEDIUM
Network
|
cisco
|
identity_services_engine_software
|
A vulnerability in the web framework of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web i…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0327
|
2024-11-21 12:37 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246840
|
6.1 |
MEDIUM
Network
|
cisco
|
telepresence_tx9000_firmware
|
A vulnerability in the web UI of Cisco TelePresence Server Software could allow an unauthenticated, remote attacker to conduct a cross-frame scripting (XFS) attack against a user of the web UI of the…
|
CWE-693
Protection Mechanism Failure
|
CVE-2018-0326
|
2024-11-21 12:37 |
2018-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|