|
197461
|
5.9 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the syslog processing engine of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected dev…
|
CWE-362
Race Condition
|
CVE-2020-3353
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197462
|
5.4 |
MEDIUM
Network
|
cisco
|
prime_infrastructure
|
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulnerabi…
|
CWE-89
SQL Injection
|
CVE-2020-3339
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197463
|
9.8 |
CRITICAL
Network
|
cisco
|
ios
|
Multiple vulnerabilities in Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an una…
|
NVD-CWE-Other
|
CVE-2020-3258
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197464
|
5.5 |
MEDIUM
Local
|
cisco
|
application_services_engine application_policy_infrastructure_controller
|
A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attacker to read sensitive information of other users on an affected device. The vul…
|
CWE-863
Incorrect Authorization
|
CVE-2020-3335
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197465
|
5.3 |
MEDIUM
Network
|
cisco
|
application_services_engine application_policy_infrastructure_controller
|
A vulnerability in the API of Cisco Application Services Engine Software could allow an unauthenticated, remote attacker to update event policies on an affected device. The vulnerability is due to in…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-3333
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197466
|
8.8 |
HIGH
Network
|
cisco
|
digital_network_architecture_center
|
A vulnerability in the audit logging component of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to view sensitive information in clear text. The vulner…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-3281
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197467
|
7.1 |
HIGH
Network
|
cisco
|
unified_contact_center_express
|
A vulnerability in the API subsystem of Cisco Unified Contact Center Express (Unified CCX) could allow an authenticated, remote attacker to change the availability state of any agent. The vulnerabili…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2020-3267
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197468
|
8.1 |
HIGH
Adjacent
|
cisco
|
ios
|
Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-3257
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197469
|
8.1 |
HIGH
Network
|
cisco
|
iox
|
A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, remote attacker to write or modify arbitrary files in the virtual i…
|
CWE-20
Improper Input Validation
|
CVE-2020-3238
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197470
|
6.3 |
MEDIUM
Local
|
cisco
|
iox
|
A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, local attacker to overwrite arbitrary files in the virtual instance…
|
CWE-59
Link Following
|
CVE-2020-3237
|
2024-11-21 14:30 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|