|
249591
|
6.5 |
MEDIUM
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the batch provisioning feature in Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to overwrite system files as root. The vulnerability is …
|
CWE-20
Improper Input Validation
|
CVE-2017-6792
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249592
|
6.7 |
MEDIUM
Local
|
cisco
|
meeting_server
|
A vulnerability in the CLI command-parsing code of Cisco Meeting Server could allow an authenticated, local attacker to perform command injection and escalate their privileges to root. The attacker m…
|
CWE-20 CWE-77
Improper Input Validation Command Injection
|
CVE-2017-6794
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249593
|
7.5 |
HIGH
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the Trust Verification Service (TVS) of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affe…
|
NVD-CWE-noinfo
|
CVE-2017-6791
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249594
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_intelligence_center
|
A vulnerability in the Cisco Unified Intelligence Center web interface could allow an unauthenticated, remote attacker to impact the integrity of the system by executing a Document Object Model (DOM)…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6789
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249595
|
7.5 |
HIGH
Network
|
cisco
|
iot_field_network_director connected_grid_network_management_system
|
A vulnerability in the TCP throttling process for Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote attacker to cause the system to consume additional memory, eventual…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2017-6780
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249596
|
7.5 |
HIGH
Network
|
cisco
|
yesmax_hd_firmware yesmaxtotal_firmware yesquattro_firmware
|
A vulnerability in the HTTP remote procedure call (RPC) service of set-top box (STB) receivers manufactured by Cisco for Yes could allow an unauthenticated, remote attacker to cause a denial of servi…
|
NVD-CWE-noinfo
|
CVE-2017-6631
|
2024-11-21 12:30 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249597
|
7.5 |
HIGH
Network
|
heimdal_project opensuse
|
heimdal leap
|
The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism by leveraging failure to add the previous hop realm to the transit path o…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-6594
|
2024-11-21 12:30 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249598
|
6.8 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server
|
A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) …
|
NVD-CWE-noinfo
|
CVE-2017-6790
|
2024-11-21 12:30 |
2017-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249599
|
6.1 |
MEDIUM
Network
|
cisco
|
anyconnect_secure_mobility_client
|
The WebLaunch functionality of Cisco AnyConnect Secure Mobility Client Software contains a vulnerability that could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) a…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6788
|
2024-11-21 12:30 |
2017-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249600
|
6.3 |
MEDIUM
Local
|
cisco
|
elastic_services_controller
|
A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including credentials for system accounts, on an affec…
|
CWE-200
Information Exposure
|
CVE-2017-6786
|
2024-11-21 12:30 |
2017-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|