|
249531
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Open Systems Gateway initiative (OSGi) interface of Cisco Policy Suite before 18.1.0 could allow an unauthenticated, remote attacker to directly connect to the OSGi interface. …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0377
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249532
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Policy Builder interface of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to access the Policy Builder interface. The vulnerability is due to…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0376
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249533
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine policy_suite
|
A vulnerability in the Cluster Manager of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to log in to an affected system using the root account, which has default, s…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0375
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249534
|
9.8 |
CRITICAL
Network
|
cisco
|
mobility_services_engine
|
A vulnerability in the Policy Builder database of Cisco Policy Suite before 18.2.0 could allow an unauthenticated, remote attacker to connect directly to the Policy Builder database. The vulnerabilit…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2018-0374
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249535
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
A vulnerability in the DHCPv6 feature of the Cisco Nexus 9000 Series Fabric Switches in Application-Centric Infrastructure (ACI) Mode could allow an unauthenticated, remote attacker to cause the devi…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-0372
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249536
|
7.8 |
HIGH
Local
|
cisco
|
vbond_orchestrator vedge-plus vedge-pro vsmart_controller vmanage_network_management vedge-100_firmware vedge_100b_firmware vedge_100m_firmware vedge_100wm_firmware vedge-1…
|
A vulnerability in the command-line tcpdump utility in the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The …
|
CWE-77
Command Injection
|
CVE-2018-0351
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249537
|
8.8 |
HIGH
Network
|
cisco
|
vbond_orchestrator vedge-plus vedge-pro vsmart_controller vmanage_network_management vedge-100_firmware vedge_100b_firmware vedge_100m_firmware vedge_100wm_firmware vedge-1…
|
A vulnerability in the VPN subsystem configuration in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. The …
|
CWE-77
Command Injection
|
CVE-2018-0350
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249538
|
9.8 |
CRITICAL
Network
|
cisco
|
vbond_orchestrator vedge-plus vedge-pro vsmart_controller vmanage_network_management vedge-100_firmware vedge_100b_firmware vedge_100m_firmware vedge_100wm_firmware vedge-1…
|
A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is …
|
CWE-78
OS Command
|
CVE-2018-0349
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249539
|
7.2 |
HIGH
Network
|
cisco
|
vbond_orchestrator vedge-plus vedge-pro vsmart_controller vmanage_network_management vedge-100_firmware vedge_100b_firmware vedge_100m_firmware vedge_100wm_firmware vedge-1…
|
A vulnerability in the CLI of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to …
|
CWE-78
OS Command
|
CVE-2018-0348
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249540
|
7.8 |
HIGH
Local
|
cisco
|
vbond_orchestrator vedge-plus vedge-pro vsmart_controller vmanage_network_management vedge-100_firmware vedge_100b_firmware vedge_100m_firmware vedge_100wm_firmware vedge-1…
|
A vulnerability in the Zero Touch Provisioning (ZTP) subsystem of the Cisco SD-WAN Solution could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privi…
|
CWE-77
Command Injection
|
CVE-2018-0347
|
2024-11-21 12:38 |
2018-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|