|
246511
|
5.4 |
MEDIUM
Network
|
cisco
|
prime_service_catalog
|
A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the…
|
CWE-79
Cross-site Scripting
|
CVE-2018-15451
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246512
|
6.5 |
MEDIUM
Network
|
cisco
|
video_surveillance_media_server
|
A vulnerability in the web-based management interface of Cisco Video Surveillance Media Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of the web-based mana…
|
CWE-20
Improper Input Validation
|
CVE-2018-15449
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246513
|
7.5 |
HIGH
Network
|
cisco
|
registered_envelope_service
|
A vulnerability in the user management functions of Cisco Registered Envelope Service could allow an unauthenticated, remote attacker to discover sensitive user information. The attacker could use th…
|
NVD-CWE-Other
|
CVE-2018-15448
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246514
|
9.8 |
CRITICAL
Network
|
cisco
|
integrated_management_controller
|
A vulnerability in the web framework code of Cisco Integrated Management Controller (IMC) Supervisor could allow an unauthenticated, remote attacker to execute arbitrary SQL queries. The vulnerabilit…
|
CWE-89
SQL Injection
|
CVE-2018-15447
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246515
|
7.5 |
HIGH
Network
|
cisco
|
meeting_server
|
A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper protections on data that is retur…
|
CWE-200
Information Exposure
|
CVE-2018-15446
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246516
|
8.0 |
HIGH
Network
|
cisco
|
energy_management_suite_software
|
A vulnerability in the web-based management interface of Cisco Energy Management Suite Software could allow an authenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and…
|
CWE-352
Origin Validation Error
|
CVE-2018-15445
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246517
|
7.3 |
HIGH
Network
|
cisco
|
energy_management_suite_software
|
A vulnerability in the web-based user interface of Cisco Energy Management Suite Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on …
|
CWE-611
XXE
|
CVE-2018-15444
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246518
|
7.5 |
HIGH
Network
|
cisco
|
firepower_system_software
|
A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass a configured Intrusion Prevention System (IPS) rule that inspects …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-15443
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246519
|
5.5 |
MEDIUM
Local
|
cisco
|
advanced_malware_protection_for_endpoints immunet_for_endpoints
|
A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoints running on Microsoft Windows could allow a local attacker to disable the sc…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-15437
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246520
|
9.8 |
CRITICAL
Network
|
cisco
|
stealthwatch_enterprise
|
A vulnerability in the Stealthwatch Management Console (SMC) of Cisco Stealthwatch Enterprise could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions wi…
|
NVD-CWE-noinfo
|
CVE-2018-15394
|
2024-11-21 12:50 |
2018-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|