|
221801
|
7.5 |
HIGH
Network
|
cisco
|
sf200-24_firmware sf200-24p_firmware sf200-48_firmware sf200-48p_firmware sg200-18_firmware sg200-26_firmware sg200-26p_firmware sg200-50_firmware sg200-50p_firmware sg300-…
|
A vulnerability in the Secure Sockets Layer (SSL) input packet processor of Cisco Small Business 200, 300, and 500 Series Managed Switches could allow an unauthenticated, remote attacker to cause a m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-1892
|
2024-11-21 13:37 |
2019-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221802
|
7.5 |
HIGH
Network
|
cisco
|
sf200-24_firmware sf200-24p_firmware sf200-48_firmware sf200-48p_firmware sg200-18_firmware sg200-26_firmware sg200-26p_firmware sg200-50_firmware sg200-50p_firmware sg300-…
|
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Managed Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on …
|
CWE-20
Improper Input Validation
|
CVE-2019-1891
|
2024-11-21 13:37 |
2019-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221803
|
7.5 |
HIGH
Network
|
cisco
|
unified_communications_manager
|
A vulnerability in the Session Initiation Protocol (SIP) protocol implementation of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to cause a denial of service (…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-1887
|
2024-11-21 13:37 |
2019-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221804
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
application_policy_infrastructure_controller
|
A vulnerability in the fabric infrastructure VLAN connection establishment of the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an unauthenticated,…
|
NVD-CWE-Other
|
CVE-2019-1890
|
2024-11-21 13:37 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221805
|
7.2 |
HIGH
Network
|
cisco
|
application_policy_infrastructure_controller
|
A vulnerability in the REST API for software device management in Cisco Application Policy Infrastructure Controller (APIC) Software could allow an authenticated, remote attacker to escalate privileg…
|
CWE-20
Improper Input Validation
|
CVE-2019-1889
|
2024-11-21 13:37 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221806
|
8.6 |
HIGH
Network
|
cisco
|
asyncos web_security_appliance
|
A vulnerability in the HTTPS decryption feature of Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability i…
|
CWE-295
Improper Certificate Validation
|
CVE-2019-1886
|
2024-11-21 13:37 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221807
|
6.5 |
MEDIUM
Network
|
cisco
|
asyncos web_security_appliance
|
A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to cause a denial of service (DoS) condit…
|
CWE-20
Improper Input Validation
|
CVE-2019-1884
|
2024-11-21 13:37 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221808
|
7.3 |
HIGH
Local
|
cisco
|
jabber
|
A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Jabber for Windows could allow an authenticated, local attacker to perform a DLL preloading attack. To exploit thi…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2019-1855
|
2024-11-21 13:37 |
2019-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221809
|
8.8 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the web-based UI (web UI) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The …
|
CWE-352
Origin Validation Error
|
CVE-2019-1904
|
2024-11-21 13:37 |
2019-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221810
|
6.5 |
MEDIUM
Network
|
cisco
|
prime_infrastructure
|
A vulnerability in the Virtual Domain system of Cisco Prime Infrastructure (PI) could allow an authenticated, remote attacker to change the virtual domain configuration, which could lead to privilege…
|
CWE-20
Improper Input Validation
|
CVE-2019-1906
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|