|
248301
|
9.8 |
CRITICAL
Network
|
cisco
|
secure_access_control_system
|
A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to release 5.8 patch 9 could allow an unauthenticated, remote attacker to execute arbitrary commands on …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2018-0147
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248302
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_data_center_network_manager
|
A vulnerability in the web-based management interface of Cisco Prime Data Center Network Manager could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0144
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248303
|
8.4 |
HIGH
Local
|
cisco
|
prime_collaboration_assurance prime_collaboration_provisioning prime_collaboration
|
A vulnerability in Cisco Prime Collaboration Provisioning (PCP) Software 11.6 could allow an unauthenticated, local attacker to log in to the underlying Linux operating system. The vulnerability is d…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0141
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248304
|
5.6 |
MEDIUM
Network
|
cisco
|
asyncos
|
A vulnerability in the FTP server of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to log in to the FTP server of the device without a valid password. The att…
|
CWE-287
Improper Authentication
|
CVE-2018-0087
|
2024-11-21 12:37 |
2018-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248305
|
7.5 |
HIGH
Network
|
juniper
|
appformix
|
A malicious user with unrestricted access to the AppFormix application management platform may be able to access a Python debug console and execute system commands with root privilege. The AppFormix …
|
CWE-862
Missing Authorization
|
CVE-2018-0015
|
2024-11-21 12:37 |
2018-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248306
|
5.4 |
MEDIUM
Network
|
cisco
|
jabber
|
A vulnerability in Cisco Jabber Client Framework (JCF) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected device. The vulnerabi…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0201
|
2024-11-21 12:37 |
2018-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248307
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0206
|
2024-11-21 12:37 |
2018-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248308
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the User Provisioning tab in the Cisco Prime Collaboration Provisioning Tool could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. The vul…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0205
|
2024-11-21 12:37 |
2018-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248309
|
7.5 |
HIGH
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the web portal of the Cisco Prime Collaboration Provisioning Tool could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition for individual users…
|
CWE-521
Weak Password Requirements
|
CVE-2018-0204
|
2024-11-21 12:37 |
2018-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248310
|
5.3 |
MEDIUM
Network
|
cisco
|
unity_connection
|
A vulnerability in the SMTP relay of Cisco Unity Connection could allow an unauthenticated, remote attacker to send unsolicited email messages, aka a Mail Relay Vulnerability. The vulnerability is du…
|
NVD-CWE-noinfo
|
CVE-2018-0203
|
2024-11-21 12:37 |
2018-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|