|
247851
|
9.8 |
CRITICAL
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local authentication. The vulnerability is due to improp…
|
CWE-287
Improper Authentication
|
CVE-2017-6747
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247852
|
7.5 |
HIGH
Network
|
cisco
|
videoscape_distribution_suite_for_television
|
A vulnerability in the cache server within Cisco Videoscape Distribution Suite (VDS) for Television 3.2(5)ES1 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condit…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6745
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247853
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the Autonomic Networking feature of Cisco IOS XE Software could allow an unauthenticated, remote, autonomic node to access the Autonomic Networking infrastructure of an affected sy…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-6664
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247854
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the web portal of the Cisco Prime Collaboration Provisioning (PCP) Tool could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6755
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247855
|
8.8 |
HIGH
Network
|
cisco
|
webex_meetings_server webex_meetings_server_2.7_mr2_patch webex_event_center webex_training_center webex_meetings_server_2.5 webex_meetings_server_2.7 webex_meeting_center webex_…
|
A vulnerability in Cisco WebEx browser extensions for Google Chrome and Mozilla Firefox could allow an unauthenticated, remote attacker to execute arbitrary code with the privileges of the affected b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6753
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247856
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance web_security_virtual_appliance
|
A vulnerability in the web proxy functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to forward traffic from the web proxy interface of an affected…
|
CWE-20
Improper Input Validation
|
CVE-2017-6751
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247857
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance web_security_virtual_appliance
|
A vulnerability in AsyncOS for the Cisco Web Security Appliance (WSA) could allow an unauthenticated, local attacker to log in to the device with the privileges of a limited user or an unauthenticate…
|
CWE-1188
Insecure Default Initialization of Resource
|
CVE-2017-6750
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247858
|
5.4 |
MEDIUM
Network
|
cisco
|
web_security_appliance web_security_virtual_appliance
|
A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6749
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247859
|
6.7 |
MEDIUM
Local
|
cisco
|
web_security_virtual_appliance web_security_appliance
|
A vulnerability in the CLI parser of the Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to perform command injection and elevate privileges to root. The attacker must…
|
CWE-74
Injection
|
CVE-2017-6748
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247860
|
7.5 |
HIGH
Network
|
cisco
|
asr_5000_series_software
|
A vulnerability in certain filtering mechanisms of access control lists (ACLs) for Cisco ASR 5000 Series Aggregation Services Routers through 21.x could allow an unauthenticated, remote attacker to b…
|
CWE-863
Incorrect Authorization
|
CVE-2017-6672
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|