|
197571
|
8.6 |
HIGH
Network
|
cisco
|
sd-wan_firmware vsmart_controller vedge_cloud_router
|
A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper validation of fiel…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-3351
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197572
|
4.8 |
MEDIUM
Network
|
cisco
|
data_center_network_manager
|
Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack…
|
CWE-79
Cross-site Scripting
|
CVE-2020-3349
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197573
|
4.8 |
MEDIUM
Network
|
cisco
|
data_center_network_manager
|
Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack…
|
CWE-79
Cross-site Scripting
|
CVE-2020-3348
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197574
|
4.3 |
MEDIUM
Network
|
cisco
|
webex_meetings_server webex_meetings
|
A vulnerability in certain web pages of Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to modify a web page in the context of a browser. The vuln…
|
CWE-20
Improper Input Validation
|
CVE-2020-3345
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197575
|
8.8 |
HIGH
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130_vpn_router_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Series Routers could allow an authenticated, remote attacker to inject arbitrary shell …
|
CWE-78
OS Command
|
CVE-2020-3332
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197576
|
9.8 |
CRITICAL
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv215w_wireless-n_vpn_router_firmware
|
A vulnerability in the web-based management interface of Cisco RV110W Wireless-N VPN Firewall and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to execute arbitra…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-3331
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197577
|
9.8 |
CRITICAL
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware
|
A vulnerability in the Telnet service of Cisco Small Business RV110W Wireless-N VPN Firewall Routers could allow an unauthenticated, remote attacker to take full control of the device with a high-pri…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-3330
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197578
|
9.8 |
CRITICAL
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130_vpn_router_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an…
|
CWE-20
Improper Input Validation
|
CVE-2020-3323
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197579
|
5.3 |
MEDIUM
Network
|
cisco
|
meeting_server
|
A vulnerability in the API subsystem of Cisco Meetings App could allow an unauthenticated, remote attacker to retain and reuse the Traversal Using Relay NAT (TURN) server credentials that are configu…
|
CWE-287
Improper Authentication
|
CVE-2020-3197
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197580
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan
|
A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, local attacker to access an affected device by using an account that has a default, static password. This account has…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-3180
|
2024-11-21 14:30 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|