|
197851
|
6.7 |
MEDIUM
Local
|
cisco
|
staros
|
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili…
|
CWE-78
OS Command
|
CVE-2020-3602
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197852
|
6.7 |
MEDIUM
Local
|
cisco
|
staros
|
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili…
|
CWE-78
OS Command
|
CVE-2020-3601
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197853
|
6.5 |
MEDIUM
Network
|
cisco
|
vision_dynamic_signage_director
|
A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to access confidential information or make configuration…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-3598
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197854
|
5.4 |
MEDIUM
Network
|
cisco
|
nexus_data_broker
|
A vulnerability in the configuration restore feature of Cisco Nexus Data Broker software could allow an unauthenticated, remote attacker to perform a directory traversal attack on an affected device.…
|
CWE-22
Path Traversal
|
CVE-2020-3597
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197855
|
7.5 |
HIGH
Network
|
cisco
|
expressway telepresence_video_communication_server
|
A vulnerability in the Session Initiation Protocol (SIP) of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a …
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2020-3596
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197856
|
4.8 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker with administrative credentials to conduct a cross…
|
CWE-79
Cross-site Scripting
|
CVE-2020-3589
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197857
|
5.8 |
MEDIUM
Network
|
cisco
|
asyncos
|
A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the URL reputation f…
|
CWE-20
Improper Input Validation
|
CVE-2020-3568
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197858
|
6.5 |
MEDIUM
Network
|
cisco
|
network_level_service industrial_network_director
|
A vulnerability in the management REST API of Cisco Industrial Network Director (IND) could allow an authenticated, remote attacker to cause the CPU utilization to increase to 100 percent, resulting …
|
CWE-20
Improper Input Validation
|
CVE-2020-3567
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197859
|
8.8 |
HIGH
Adjacent
|
cisco
|
8000p_ip_camera_firmware 8020_ip_camera_firmware 8030_ip_camera_firmware 8070_ip_camera_firmware 8400_ip_camera_firmware 8620_ip_camera_firmware 8630_ip_camera_firmware 8930_spee…
|
A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker to execute arbitrary code on an af…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-3544
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197860
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
8000p_ip_camera_firmware 8020_ip_camera_firmware 8030_ip_camera_firmware 8070_ip_camera_firmware 8400_ip_camera_firmware 8620_ip_camera_firmware 8630_ip_camera_firmware 8930_spee…
|
A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker to cause a memory leak, which could lead to a deni…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-3543
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|