|
247761
|
7.8 |
HIGH
Local
|
cisco
|
vedge_100_firmware vedge_1000_firmware vedge_2000_firmware vedge_5000_firmware vbond_orchestrator vsmart_controller vmanage_network_management_system vedge_cloud_router_platform
|
A vulnerability in the command-line interface (CLI) in the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The …
|
CWE-78
OS Command
|
CVE-2018-0433
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247762
|
8.8 |
HIGH
Network
|
cisco
|
vedge_100_firmware vedge_1000_firmware vedge_2000_firmware vedge_5000_firmware vmanage_network_management_system
|
A vulnerability in the error reporting feature of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to gain elevated privileges on an affected device. The vulnerability is due t…
|
CWE-78
OS Command
|
CVE-2018-0432
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247763
|
8.8 |
HIGH
Network
|
cisco
|
unified_computing_system
|
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an authenticated, remote attacker to inject and execute arbitrary commands w…
|
CWE-77
Command Injection
|
CVE-2018-0431
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247764
|
8.8 |
HIGH
Network
|
cisco
|
unified_computing_system
|
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an authenticated, remote attacker to inject and execute arbitrary commands w…
|
CWE-77
Command Injection
|
CVE-2018-0430
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247765
|
9.8 |
CRITICAL
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow…
|
CWE-22
Path Traversal
|
CVE-2018-0426
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247766
|
9.8 |
CRITICAL
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0425
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247767
|
8.8 |
HIGH
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow…
|
CWE-78
OS Command
|
CVE-2018-0424
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247768
|
8.1 |
HIGH
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0423
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247769
|
7.3 |
HIGH
Local
|
cisco
|
webex_meetings_online webex_meetings_server webex_business_suite_32 webex_business_suite_33 webex_business_suite_31
|
A vulnerability in the folder permissions of Cisco Webex Meetings client for Windows could allow an authenticated, local attacker to modify locally stored files and execute code on a targeted device …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-0422
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247770
|
8.6 |
HIGH
Network
|
cisco
|
prime_access_registrar prime_access_registrar_jumpstart
|
A vulnerability in TCP connection management in Cisco Prime Access Registrar could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the application unexpect…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2018-0421
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|