|
219551
|
4.8 |
MEDIUM
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in the web portal framework of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack agains…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1973
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219552
|
6.7 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, local attacker with valid administrator-level credentials to elevate privileges a…
|
NVD-CWE-Other
|
CVE-2019-1972
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219553
|
9.8 |
CRITICAL
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform a command injection attack and execute arbitrary c…
|
CWE-20
Improper Input Validation
|
CVE-2019-1971
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219554
|
4.4 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an aff…
|
CWE-78
OS Command
|
CVE-2019-1960
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219555
|
4.4 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an aff…
|
CWE-78
OS Command
|
CVE-2019-1959
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219556
|
7.5 |
HIGH
Network
|
cisco
|
firepower_management_center firepower_threat_defense
|
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) protocol inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote att…
|
CWE-693
Protection Mechanism Failure
|
CVE-2019-1970
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219557
|
4.9 |
MEDIUM
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system (OS) of an affected de…
|
CWE-20
Improper Input Validation
|
CVE-2019-1961
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219558
|
8.8 |
HIGH
Network
|
cisco
|
hyperflex_hx_data_platform
|
A vulnerability in the web-based management interface of Cisco HyperFlex Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected …
|
CWE-352
Origin Validation Error
|
CVE-2019-1958
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219559
|
7.5 |
HIGH
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the web interface of Cisco IoT Field Network Director could allow an unauthenticated, remote attacker to trigger high CPU usage, resulting in a denial of service (DoS) condition on…
|
NVD-CWE-noinfo
|
CVE-2019-1957
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219560
|
4.8 |
MEDIUM
Network
|
cisco
|
spa112_2-port_phone_adapter_firmware
|
A vulnerability in the web-based interface of the Cisco SPA112 2-Port Phone Adapter could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against another user o…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1956
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|