|
267721
|
7.5 |
HIGH
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via unspecified web requests, aka Bug ID CSCuv72584.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1322
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267722
|
6.7 |
MEDIUM
Local
|
cisco
|
prime_collaboration
|
The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges, aka Bug ID CSCux69286.
|
CWE-264 CWE-78
Permissions, Privileges, and Access Controls OS Command
|
CVE-2016-1320
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267723
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance_firmeware
|
The proxy engine in Cisco Advanced Malware Protection (AMP), when used with Email Security Appliance (ESA) 9.5.0-201, 9.6.0-051, and 9.7.0-125, allows remote attackers to bypass intended content rest…
|
CWE-284
Improper Access Control
|
CVE-2016-1315
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267724
|
9.8 |
CRITICAL
Network
|
cisco
|
adaptive_security_appliance_software
|
Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before 9.1(7), 9.2 before 9.2(4.5), 9.3 before 9.3(3.7),…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1287
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267725
|
5.3 |
MEDIUM
Network
|
sun samsung zyxel zzinc
|
opensolaris x14j_firmware gs1900-10hp_firmware keymouse_firmware
|
Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified C…
|
CWE-200
Information Exposure
|
CVE-2016-1319
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267726
|
6.1 |
MEDIUM
Network
|
cisco
|
application_policy_infrastructure_controller_enterprise_module
|
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.1 allows remote attackers to inject arbitrary web script or HTML via craft…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1318
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267727
|
4.3 |
MEDIUM
Network
|
zyxel
|
gs1900-10hp_firmware
|
Cisco Unified Communications Manager 11.5(0.98000.480) allows remote authenticated users to obtain sensitive database table-name and entity-name information via a direct request to an unspecified URL…
|
CWE-200
Information Exposure
|
CVE-2016-1317
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267728
|
5.3 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server_software
|
Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7, as used in conjunction with Jabber Guest, allows remote attackers to obtain sensitive call-statistics information via a direct r…
|
CWE-200
Information Exposure
|
CVE-2016-1316
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267729
|
6.1 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meetings Server 2.5.1.5 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuy01…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1309
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267730
|
6.5 |
MEDIUM
Network
|
samsung
|
x14j_firmware
|
SQL injection vulnerability in Cisco Unified Communications Manager 10.5(2.13900.9) allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCux99227.
|
CWE-89
SQL Injection
|
CVE-2016-1308
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|