|
224021
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance_firmware
|
A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the con…
|
CWE-20
Improper Input Validation
|
CVE-2019-12706
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224022
|
8.8 |
HIGH
Network
|
cisco
|
firepower_management_center
|
A vulnerability in the web UI of the Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerability is du…
|
CWE-20
Improper Input Validation
|
CVE-2019-12687
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224023
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_management_center vdb_fingerprint_database
|
A vulnerability in the file and malware inspection feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass the file and malware inspectio…
|
CWE-20
Improper Input Validation
|
CVE-2019-12701
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224024
|
6.5 |
MEDIUM
Network
|
cisco
|
firepower_9300_firmware firepower_extensible_operating_system firepower_management_center firepower_threat_defense
|
A vulnerability in the configuration of the Pluggable Authentication Module (PAM) used in Cisco Firepower Threat Defense (FTD) Software, Cisco Firepower Management Center (FMC) Software, and Cisco FX…
|
NVD-CWE-Other
|
CVE-2019-12700
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224025
|
7.8 |
HIGH
Local
|
cisco
|
firepower_9300_firmware firepower_threat_defense firepower_extensible_operating_system
|
Multiple vulnerabilities in the CLI of Cisco FXOS Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute commands on the underlying operati…
|
CWE-78
OS Command
|
CVE-2019-12699
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224026
|
7.5 |
HIGH
Network
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software firepower_threat_defense
|
A vulnerability in the WebVPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause in…
|
NVD-CWE-Other
|
CVE-2019-12698
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224027
|
6.1 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software firepower_threat_defense
|
A vulnerability in the Clientless SSL VPN (WebVPN) portal of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker …
|
CWE-79
Cross-site Scripting
|
CVE-2019-12695
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224028
|
6.7 |
MEDIUM
Local
|
cisco
|
firepower_threat_defense
|
A vulnerability in the command line interface (CLI) of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker with administrative privileges to execute commands on…
|
CWE-20
Improper Input Validation
|
CVE-2019-12694
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224029
|
4.9 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software
|
A vulnerability in the Secure Copy (SCP) feature of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vu…
|
CWE-190 CWE-704
Integer Overflow or Wraparound Incorrect Type Conversion or Cast
|
CVE-2019-12693
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224030
|
4.9 |
MEDIUM
Network
|
cisco
|
firepower_management_center
|
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to perform a directory traversal attack on an a…
|
CWE-22
Path Traversal
|
CVE-2019-12691
|
2024-11-21 13:23 |
2019-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|