|
198521
|
7.8 |
HIGH
Local
|
cisco
|
duo_authentication_for_windows_logon_and_rdp
|
The Windows Logon installer prior to 4.1.2 did not properly validate file installation paths. This allows an attacker with local user privileges to coerce the installer to write to arbitrary privileg…
|
NVD-CWE-noinfo
|
CVE-2020-3427
|
2024-11-21 14:31 |
2020-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198522
|
6.7 |
MEDIUM
Local
|
cisco
|
staros
|
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili…
|
CWE-78
OS Command
|
CVE-2020-3602
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198523
|
6.7 |
MEDIUM
Local
|
cisco
|
staros
|
A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili…
|
CWE-78
OS Command
|
CVE-2020-3601
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198524
|
6.5 |
MEDIUM
Network
|
cisco
|
vision_dynamic_signage_director
|
A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to access confidential information or make configuration…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-3598
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198525
|
5.4 |
MEDIUM
Network
|
cisco
|
nexus_data_broker
|
A vulnerability in the configuration restore feature of Cisco Nexus Data Broker software could allow an unauthenticated, remote attacker to perform a directory traversal attack on an affected device.…
|
CWE-22
Path Traversal
|
CVE-2020-3597
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198526
|
7.5 |
HIGH
Network
|
cisco
|
expressway telepresence_video_communication_server
|
A vulnerability in the Session Initiation Protocol (SIP) of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a …
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2020-3596
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198527
|
4.8 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker with administrative credentials to conduct a cross…
|
CWE-79
Cross-site Scripting
|
CVE-2020-3589
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198528
|
5.8 |
MEDIUM
Network
|
cisco
|
asyncos
|
A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the URL reputation f…
|
CWE-20
Improper Input Validation
|
CVE-2020-3568
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198529
|
6.5 |
MEDIUM
Network
|
cisco
|
network_level_service industrial_network_director
|
A vulnerability in the management REST API of Cisco Industrial Network Director (IND) could allow an authenticated, remote attacker to cause the CPU utilization to increase to 100 percent, resulting …
|
CWE-20
Improper Input Validation
|
CVE-2020-3567
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198530
|
8.8 |
HIGH
Adjacent
|
cisco
|
8000p_ip_camera_firmware 8020_ip_camera_firmware 8030_ip_camera_firmware 8070_ip_camera_firmware 8400_ip_camera_firmware 8620_ip_camera_firmware 8630_ip_camera_firmware 8930_spee…
|
A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker to execute arbitrary code on an af…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-3544
|
2024-11-21 14:31 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|