|
248701
|
6.1 |
MEDIUM
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the web-based management interface of Cisco Data Center Network Manager could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a use…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0450
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248702
|
9.8 |
CRITICAL
Network
|
cisco
|
digital_network_architecture_center
|
A vulnerability in the identity management service of Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, remote attacker to bypass authentication and take complete contro…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2018-0448
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248703
|
5.3 |
MEDIUM
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the anti-spam protection mechanisms of Cisco AsyncOS Software for the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass certain content…
|
CWE-20
Improper Input Validation
|
CVE-2018-0447
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248704
|
8.8 |
HIGH
Network
|
cisco
|
network_level_service
|
A vulnerability in the web-based management interface of Cisco Industrial Network Director could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and pe…
|
CWE-352
Origin Validation Error
|
CVE-2018-0446
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248705
|
8.8 |
HIGH
Network
|
cisco
|
packaged_contact_center_enterprise
|
A vulnerability in the web-based management interface of Cisco Packaged Contact Center Enterprise could allow an unauthenticated, remote attacker to conduct a CSRF attack and perform arbitrary action…
|
CWE-352
Origin Validation Error
|
CVE-2018-0445
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248706
|
6.1 |
MEDIUM
Network
|
cisco
|
packaged_contact_center_enterprise
|
A vulnerability in the web-based management interface of Cisco Packaged Contact Center Enterprise could allow an unauthenticated, remote attacker to conduct a stored XSS attack against a user of the …
|
CWE-79
Cross-site Scripting
|
CVE-2018-0444
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248707
|
7.2 |
HIGH
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the web interface of Cisco Data Center Network Manager could allow an authenticated application administrator to execute commands on the underlying operating system with root-level…
|
CWE-20
Improper Input Validation
|
CVE-2018-0440
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248708
|
8.8 |
HIGH
Network
|
cisco
|
meeting_server
|
A vulnerability in the web-based management interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitra…
|
CWE-352
Origin Validation Error
|
CVE-2018-0439
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248709
|
7.8 |
HIGH
Local
|
cisco
|
umbrella_enterprise_roaming_client
|
A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administrator. To exploit the vulnerability, the attacker m…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0438
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248710
|
7.8 |
HIGH
Local
|
cisco
|
umbrella_enterprise_roaming_client umbrella_roaming_module
|
A vulnerability in the Cisco Umbrella Enterprise Roaming Client (ERC) could allow an authenticated, local attacker to elevate privileges to Administrator. To exploit the vulnerability, the attacker m…
|
CWE-269
Improper Privilege Management
|
CVE-2018-0437
|
2024-11-21 12:38 |
2018-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|