|
212241
|
- |
|
cisco
|
spa500_firmware spa300_firmware
|
The TFTP implementation on Cisco Small Business SPA30x, SPA50x, SPA51x phones 7.5.7 improperly validates firmware-image file integrity, which allows local users to load a Trojan horse image by levera…
|
CWE-20
Improper Input Validation
|
CVE-2015-6403
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212242
|
- |
|
cisco
|
integrated_management_controller_supervisor
|
The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) before 2.0(9) allows remote authenticated users to cause a denial of service (IP interface outage) via crafted param…
|
CWE-399
Resource Management Errors
|
CVE-2015-6399
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212243
|
- |
|
cisco
|
ios
|
The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS 15.3(3)S0.1 on ASR devices mishandles internal tables, which allows remote attackers to cause a denial of service (m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6359
|
2024-11-21 11:34 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212244
|
- |
|
cisco
|
unified_communications_domain_manager
|
The self-service application in Cisco Unified Communications Domain Manager (CUCDM) 10.6(1) allows remote authenticated users to cause a denial of service (subapplication outage) via malformed reques…
|
CWE-399
Resource Management Errors
|
CVE-2015-6422
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212245
|
- |
|
cisco
|
unified_web_and_e-mail_interaction_manager
|
Cross-site scripting (XSS) vulnerability in Cisco Unified Email Interaction Manager and Unified Web Interaction Manager 11.0(1) allows remote attackers to inject arbitrary web script or HTML a crafte…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6416
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212246
|
- |
|
cisco
|
telepresence_video_communication_server_software
|
The Mobile and Remote Access (MRA) services implementation in Cisco Unified Communications Manager mishandles edge-device identity validation, which allows remote attackers to bypass intended call-re…
|
CWE-20
Improper Input Validation
|
CVE-2015-6410
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212247
|
- |
|
cisco
|
epc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter
|
Cross-site scripting (XSS) vulnerability in the management interface on Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allows remote attackers to inject arbitrary web script or HTML via an…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6402
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212248
|
- |
|
cisco
|
epc3928_docsis_3.0_8x4_wireless_residential_gateway_with_embedded_digital_voice_adapter
|
Cisco EPC3928 devices with EDVA 5.5.10, 5.5.11, and 5.7.1 allow remote attackers to bypass an intended authentication requirement and execute unspecified administrative functions via a crafted HTTP r…
|
CWE-287
Improper Authentication
|
CVE-2015-6401
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212249
|
- |
|
cisco
|
dpq3925_8x4_docsis_3.0_wireless_residential_gateway_with_embedded_digital_voice_adapter
|
Cross-site request forgery (CSRF) vulnerability on Cisco DPQ3925 devices with EDVA 5.5.2 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuv05943.
|
CWE-352
Origin Validation Error
|
CVE-2015-6378
|
2024-11-21 11:34 |
2015-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212250
|
- |
|
cisco
|
sa520 sa540 sa520w rv042g_dual_gigabit_wan_vpn_firmware rv082_dual_wan_vpn_router_firmware rv016_multi-wan_vpn_firmware rv042_dual_wan_vpn_router_firmware
|
The random-number generator on Cisco Small Business RV routers 4.x and SA500 security appliances 2.2.07 does not have sufficient entropy, which makes it easier for remote attackers to determine a TLS…
|
CWE-200
Information Exposure
|
CVE-2015-6418
|
2024-11-21 11:34 |
2015-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|