|
267571
|
7.5 |
HIGH
Network
|
cisco
|
asr_5000_software
|
The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) implementation on Cisco ASR 5000 Packet Data Network Gateway devices before 19.4 allows remote attackers to cause a denial of servi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1436
|
2024-11-21 11:46 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267572
|
7.0 |
HIGH
Local
|
cisco
|
ip_phone_8800_series_firmware
|
Cisco 8800 phones with software 11.0(1) do not properly enforce mounted-filesystem permissions, which allows local users to write to arbitrary files by leveraging shell access, aka Bug ID CSCuz03014.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1435
|
2024-11-21 11:46 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267573
|
6.5 |
MEDIUM
Network
|
cisco
|
ip_phone_8800_series_firmware
|
The license-certificate upload functionality on Cisco 8800 phones with software 11.0(1) allows remote authenticated users to delete arbitrary files via an invalid file, aka Bug ID CSCuz03010.
|
CWE-22 CWE-20
Path Traversal Improper Input Validation
|
CVE-2016-1434
|
2024-11-21 11:46 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267574
|
6.5 |
MEDIUM
Network
|
cisco
|
ios_xe
|
Double free vulnerability in Cisco IOS XE 3.15S, 3.16S, and 3.17S allows remote authenticated users to cause a denial of service (device restart) via a sequence of crafted SNMP read requests, aka Bug…
|
CWE-399 NVD-CWE-Other
Resource Management Errors
|
CVE-2016-1428
|
2024-11-21 11:46 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267575
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
ios
|
Cisco IOS 15.2(1)T1.11 and 15.2(2)TST allows remote attackers to cause a denial of service (device crash) via a crafted LLDP packet, aka Bug ID CSCun63132.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1424
|
2024-11-21 11:46 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267576
|
6.5 |
MEDIUM
Network
|
cisco
|
rv215w_wireless-n_vpn_router_firmware rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware
|
Buffer overflow in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W devices with firmware before 1.3.0…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1397
|
2024-11-21 11:46 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267577
|
6.1 |
MEDIUM
Network
|
cisco
|
rv130w_wireless-n_multifunction_vpn_router_firmware rv110w_wireless-n_vpn_firewall_firmware rv215w_wireless-n_vpn_router_firmware
|
Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W devices w…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1396
|
2024-11-21 11:46 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267578
|
9.8 |
CRITICAL
Network
|
cisco
|
rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware rv110w_wireless-n_vpn_firewall_firmware
|
The web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W devices with firmware before 1.3.0.8 allows remote at…
|
CWE-20
Improper Input Validation
|
CVE-2016-1395
|
2024-11-21 11:46 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267579
|
6.5 |
MEDIUM
Network
|
cisco
|
ios_xe
|
Cisco IOS XE 3.15S and 3.16S on cBR-8 Converged Broadband Router devices allows remote authenticated users to cause a denial of service (NULL pointer dereference and card restart) via a crafted SNMP …
|
CWE-399
Resource Management Errors
|
CVE-2016-1432
|
2024-11-21 11:46 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267580
|
6.1 |
MEDIUM
Network
|
cisco
|
firepower_management_center
|
Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.1, and 5.4.0 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1431
|
2024-11-21 11:46 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|