|
266281
|
9.8 |
CRITICAL
Network
|
cisco
|
small_business_220_series_smart_plus_switches
|
Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP objects by leveraging knowledge of this community, …
|
CWE-200
Information Exposure
|
CVE-2016-1473
|
2024-11-21 11:46 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266282
|
7.5 |
HIGH
Network
|
cisco
|
small_business_220_series_smart_plus_switches
|
The web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to cause a denial of service (interface outage) via a crafted HTTP request,…
|
CWE-20
Improper Input Validation
|
CVE-2016-1472
|
2024-11-21 11:46 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266283
|
6.1 |
MEDIUM
Network
|
cisco
|
small_business_220_series_smart_plus_switches
|
Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1471
|
2024-11-21 11:46 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266284
|
8.8 |
HIGH
Network
|
cisco
|
small_business_220_series_smart_plus_switches
|
Cross-site request forgery (CSRF) vulnerability in the web-based management interface on Cisco Small Business 220 devices with firmware before 1.0.1.1 allows remote attackers to hijack the authentica…
|
CWE-352
Origin Validation Error
|
CVE-2016-1470
|
2024-11-21 11:46 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266285
|
4.9 |
MEDIUM
Network
|
f5
|
big-ip_webaccelerator big-ip_link_controller big-ip_access_policy_manager big-ip_application_security_manager big-ip_domain_name_system big-ip_global_traffic_manager big-ip_local_tr…
|
The Configuration utility in F5 BIG-IP systems 11.0.x, 11.1.x, 11.2.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4 HF2, 1.6.x before 11.6.1, and 12.0.0 before HF1 allow…
|
CWE-200
Information Exposure
|
CVE-2016-1497
|
2024-11-21 11:46 |
2016-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266286
|
7.5 |
HIGH
Network
|
cisco
|
webex_meetings_server
|
Cisco WebEx Meetings Server 2.6 allows remote attackers to bypass intended access restrictions and obtain sensitive application information via unspecified vectors, aka Bug ID CSCuy92724.
|
CWE-200 CWE-20
Information Exposure Improper Input Validation
|
CVE-2016-1484
|
2024-11-21 11:46 |
2016-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266287
|
6.5 |
MEDIUM
Network
|
cisco
|
connected_streaming_analytics
|
Cisco Connected Streaming Analytics 1.1.1 allows remote authenticated users to discover a notification service password by reading administrative pages, aka Bug ID CSCuz92891.
|
CWE-200
Information Exposure
|
CVE-2016-1477
|
2024-11-21 11:46 |
2016-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266288
|
6.1 |
MEDIUM
Network
|
cisco
|
identity_services_engine_software
|
Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva46497.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1485
|
2024-11-21 11:46 |
2016-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266289
|
7.5 |
HIGH
Network
|
cisco
|
ip_phone_8800_series_firmware
|
Cisco IP Phone 8800 devices with software 11.0(1) allow remote attackers to cause a denial of service (memory corruption) via a crafted HTTP request, aka Bug ID CSCuz03038.
|
CWE-20
Improper Input Validation
|
CVE-2016-1479
|
2024-11-21 11:46 |
2016-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266290
|
5.4 |
MEDIUM
Network
|
cisco
|
ip_phone_8800_series_firmware
|
Cross-site scripting (XSS) vulnerability on Cisco IP Phone 8800 devices with software 11.0 allows remote authenticated users to inject arbitrary web script or HTML via crafted parameters, aka Bug ID …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1476
|
2024-11-21 11:46 |
2016-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|