|
248711
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in certain attachment detection mechanisms of Cisco Email Security Appliances (ESA) could allow an unauthenticated, remote attacker to bypass the filtering functionality of an affecte…
|
CWE-20
Improper Input Validation
|
CVE-2018-0419
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248712
|
8.6 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the Local Packet Transport Services (LPTS) feature set of Cisco ASR 9000 Series Aggregation Services Router Software could allow an unauthenticated, remote attacker to cause a deni…
|
CWE-20
Improper Input Validation
|
CVE-2018-0418
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248713
|
6.8 |
MEDIUM
Adjacent
|
cisco
|
wap121_firmware wap125_firmware wap131_firmware wap150_firmware wap321_firmware wap351_firmware wap361_firmware wap371_firmware
|
A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Serie…
|
CWE-388
7PK - Errors
|
CVE-2018-0415
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248714
|
5.3 |
MEDIUM
Adjacent
|
cisco
|
wap121_firmware wap125_firmware wap131_firmware wap150_firmware wap321_firmware wap351_firmware wap361_firmware wap371_firmware
|
A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Serie…
|
NVD-CWE-noinfo
|
CVE-2018-0412
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248715
|
8.6 |
HIGH
Network
|
cisco
|
web_security_appliance
|
A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliances could allow an unauthenticated, remote attacker to exhaust system memory and cause a denial …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0410
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248716
|
7.5 |
HIGH
Network
|
cisco
|
telepresence_video_communication_server unified_communications_manager_im_and_presence_service
|
A vulnerability in the XCP Router service of the Cisco Unified Communications Manager IM & Presence Service (CUCM IM&P) and the Cisco TelePresence Video Communication Server (VCS) and Expressway coul…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-0409
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248717
|
6.1 |
MEDIUM
Network
|
cisco
|
unified_communications_domain_manager hosted_collaboration_solution
|
A vulnerability in Cisco Unified Communications Domain Manager Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack on an affected system. The vulne…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0386
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248718
|
5.4 |
MEDIUM
Network
|
cisco
|
registered_envelope_service
|
A vulnerability in the web-based management interface of the Cisco Registered Envelope Service could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a u…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0367
|
2024-11-21 12:38 |
2018-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248719
|
9.8 |
CRITICAL
Network
|
qnap
|
helpdesk
|
Command injection vulnerability in Helpdesk versions 1.1.21 and earlier in QNAP QTS 4.2.6 build 20180531, QTS 4.3.3 build 20180528, QTS 4.3.4 build 20180528 and their earlier versions could allow rem…
|
CWE-77
Command Injection
|
CVE-2018-0714
|
2024-11-21 12:38 |
2018-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248720
|
7.8 |
HIGH
Local
|
cisco
|
thor_video_codec
|
Stack-based buffer overflow in the Cisco Thor decoder before commit 18de8f9f0762c3a542b1122589edb8af859d9813 allows local users to cause a denial of service (segmentation fault) and execute arbitrary…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0429
|
2024-11-21 12:38 |
2018-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|