|
246961
|
6.1 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0212
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246962
|
4.4 |
MEDIUM
Local
|
cisco
|
identity_services_engine
|
A vulnerability in specific CLI commands for the Cisco Identity Services Engine could allow an authenticated, local attacker to cause a denial of service (DoS) condition. The device may need to be ma…
|
CWE-20
Improper Input Validation
|
CVE-2018-0211
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246963
|
8.8 |
HIGH
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the web-based management interface of Cisco Data Center Network Manager could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and pe…
|
CWE-352
Origin Validation Error
|
CVE-2018-0210
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246964
|
7.7 |
HIGH
Network
|
cisco
|
small_business_500_series_stackable_managed_switches_firmware
|
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem communication channel through the Cisco 550X Series Stackable Managed Switches could allow an authenticated, remote attacker…
|
NVD-CWE-Other
|
CVE-2018-0209
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246965
|
5.4 |
MEDIUM
Network
|
cisco
|
email_encryption
|
A vulnerability in the web-based management interface of the (cloud based) Cisco Registered Envelope Service could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) atta…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0208
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246966
|
3.3 |
LOW
Local
|
cisco
|
secure_access_control_server_solution_engine
|
A vulnerability in the web-based user interface of the Cisco Secure Access Control Server prior to 5.8 patch 9 could allow an unauthenticated, remote attacker to gain read access to certain informati…
|
CWE-611
XXE
|
CVE-2018-0207
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246967
|
9.8 |
CRITICAL
Network
|
cisco
|
secure_access_control_system
|
A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to release 5.8 patch 9 could allow an unauthenticated, remote attacker to execute arbitrary commands on …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-0147
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246968
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_data_center_network_manager
|
A vulnerability in the web-based management interface of Cisco Prime Data Center Network Manager could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0144
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246969
|
8.4 |
HIGH
Local
|
cisco
|
prime_collaboration_assurance prime_collaboration_provisioning prime_collaboration
|
A vulnerability in Cisco Prime Collaboration Provisioning (PCP) Software 11.6 could allow an unauthenticated, local attacker to log in to the underlying Linux operating system. The vulnerability is d…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0141
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246970
|
5.6 |
MEDIUM
Network
|
cisco
|
asyncos
|
A vulnerability in the FTP server of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to log in to the FTP server of the device without a valid password. The att…
|
CWE-287
Improper Authentication
|
CVE-2018-0087
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|