|
247841
|
5.5 |
MEDIUM
Local
|
cisco
|
mobility_services_engine_3365_firmware mobility_services_engine_3355_firmware mobility_services_engine_3310_firmware
|
A vulnerability in the CLI of Cisco Policy Suite could allow an authenticated, local attacker to access files owned by another user. The vulnerability is due to insufficient access control permission…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-0392
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247842
|
6.1 |
MEDIUM
Network
|
cisco
|
webex_meetings
|
A vulnerability in the web framework of Cisco Webex could allow an unauthenticated, remote attacker to conduct a Document Object Model-based (DOM-based) cross-site scripting (XSS) attack against the …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0390
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247843
|
8.8 |
HIGH
Network
|
cisco
|
webex_teams
|
A vulnerability in Cisco Webex Teams (for Windows and macOS) could allow an unauthenticated, remote attacker to execute arbitrary code on the user's device, possibly with elevated privileges. The vul…
|
CWE-20
Improper Input Validation
|
CVE-2018-0387
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247844
|
5.5 |
MEDIUM
Local
|
cisco
|
webex_meetings_online
|
Multiple vulnerabilities exist in the Cisco Webex Network Recording Player for Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit these vulnerabilities …
|
NVD-CWE-noinfo
|
CVE-2018-0380
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247845
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings_online webex_business_suite webex_meeting_server
|
Multiple vulnerabilities exist in the Cisco Webex Network Recording Player for Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit these vulnerabilities …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0379
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247846
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Open Systems Gateway initiative (OSGi) interface of Cisco Policy Suite before 18.1.0 could allow an unauthenticated, remote attacker to directly connect to the OSGi interface. …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0377
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247847
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Policy Builder interface of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to access the Policy Builder interface. The vulnerability is due to…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0376
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247848
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Cluster Manager of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to log in to an affected system using the root account, which has default, s…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0375
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247849
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine
|
A vulnerability in the Policy Builder database of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to connect directly to the Policy Builder database. The vulnerabilit…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0374
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247850
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
A vulnerability in the DHCPv6 feature of the Cisco Nexus 9000 Series Fabric Switches in Application-Centric Infrastructure (ACI) Mode could allow an unauthenticated, remote attacker to cause the devi…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0372
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|