|
250321
|
6.1 |
MEDIUM
Network
|
cisco
|
jabber_guest
|
A vulnerability in the web-based management interface of Cisco Jabber Guest Server 10.6(9), 11.0(0), and 11.0(1) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6762
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250322
|
6.1 |
MEDIUM
Network
|
cisco
|
finesse
|
A vulnerability in the web-based management interface of Cisco Finesse 10.6(1) and 11.5(1) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6761
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250323
|
6.5 |
MEDIUM
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the web framework of Cisco Unified Communications Manager 11.5(1.10000.6) could allow an authenticated, remote attacker to access arbitrary files in the context of the web root dir…
|
CWE-22
Path Traversal
|
CVE-2017-6758
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250324
|
8.8 |
HIGH
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in Cisco Unified Communications Manager 10.5(2.10000.5), 11.0(1.10000.10), and 11.5(1.10000.6) could allow an authenticated, remote attacker to conduct a blind SQL injection attack. T…
|
CWE-89
SQL Injection
|
CVE-2017-6757
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250325
|
6.5 |
MEDIUM
Network
|
cisco
|
smart_net_total_care_collector_appliance
|
A vulnerability in the web-based management interface of the Cisco Smart Net Total Care (SNTC) Software Collector Appliance 3.11 could allow an authenticated, remote attacker to perform a read-only, …
|
CWE-89
SQL Injection
|
CVE-2017-6754
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250326
|
7.5 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_software
|
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) 9.3(3) and 9.6(2) could allow an unauthenticated, remote attacker to determine valid usernames. The attacker could …
|
CWE-200
Information Exposure
|
CVE-2017-6752
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250327
|
9.8 |
CRITICAL
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local authentication. The vulnerability is due to improp…
|
CWE-287
Improper Authentication
|
CVE-2017-6747
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250328
|
7.5 |
HIGH
Network
|
cisco
|
videoscape_distribution_suite_for_television
|
A vulnerability in the cache server within Cisco Videoscape Distribution Suite (VDS) for Television 3.2(5)ES1 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condit…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6745
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250329
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the Autonomic Networking feature of Cisco IOS XE Software could allow an unauthenticated, remote, autonomic node to access the Autonomic Networking infrastructure of an affected sy…
|
CWE-295
Improper Certificate Validation
|
CVE-2017-6664
|
2024-11-21 12:30 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250330
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the web portal of the Cisco Prime Collaboration Provisioning (PCP) Tool could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2017-6755
|
2024-11-21 12:30 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|