|
197581
|
6.7 |
MEDIUM
Local
|
cisco
|
remote_phy_120_firmware remote_phy_220_firmware remote_phy_shelf_7200_firmware
|
A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vuln…
|
CWE-78
OS Command
|
CVE-2020-3176
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197582
|
5.3 |
MEDIUM
Network
|
cisco
|
email_security_appliance cloud_email_security web_security_appliance content_security_management_appliance
|
A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Email Security Appliance (ESA), Cisco Web Security Appliance (WSA), and Cisco Content Security Management Appliance (S…
|
CWE-20
Improper Input Validation
|
CVE-2020-3164
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197583
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a us…
|
CWE-79
Cross-site Scripting
|
CVE-2020-3157
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197584
|
7.4 |
HIGH
Network
|
cisco
|
webex_meetings webex_teams intelligence_proximity jabber meeting telepresence_codec_c40_firmware telepresence_codec_c60_firmware telepresence_codec_c90_firmware
|
A vulnerability in the SSL implementation of the Cisco Intelligent Proximity solution could allow an unauthenticated, remote attacker to view or alter information shared on Cisco Webex video devices …
|
CWE-295
Improper Certificate Validation
|
CVE-2020-3155
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197585
|
7.1 |
HIGH
Network
|
cisco
|
prime_network_registrar
|
A vulnerability in the web-based interface of Cisco Prime Network Registrar (CPNR) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected…
|
CWE-352
Origin Validation Error
|
CVE-2020-3148
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197586
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings_server webex_meetings webex_network_recording_player webex_meetings_online
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected sy…
|
CWE-20
Improper Input Validation
|
CVE-2020-3128
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197587
|
7.8 |
HIGH
Local
|
cisco
|
webex_meetings_server webex_meetings_online webex_meetings webex_network_recording_player
|
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected sy…
|
CWE-20
Improper Input Validation
|
CVE-2020-3127
|
2024-11-21 14:30 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197588
|
8.6 |
HIGH
Network
|
cisco
|
nx-os
|
A vulnerability in the resource handling system of Cisco NX-OS Software for Cisco MDS 9000 Series Multilayer Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-3175
|
2024-11-21 14:30 |
2020-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197589
|
4.7 |
MEDIUM
Adjacent
|
cisco
|
nx-os
|
A vulnerability in the anycast gateway feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a device to learn invalid Address Resolution Protocol (ARP) entries. …
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2020-3174
|
2024-11-21 14:30 |
2020-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197590
|
7.8 |
HIGH
Local
|
cisco
|
ucs_manager
|
A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (O…
|
CWE-78
OS Command
|
CVE-2020-3173
|
2024-11-21 14:30 |
2020-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|