|
223111
|
6.8 |
MEDIUM
Physics
|
cisco
|
ios
|
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local attacker with physical access to an affected device to execute arbitrary code on the underlying operatin…
|
CWE-59
Link Following
|
CVE-2019-12672
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223112
|
7.8 |
HIGH
Local
|
cisco
|
ios_xe
|
A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to gain shell access on an affected device and execute commands on the underlying operating system (OS…
|
CWE-863
Incorrect Authorization
|
CVE-2019-12671
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223113
|
8.6 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the Cisco TrustSec (CTS) Protected Access Credential (PAC) provisioning module of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affe…
|
CWE-20
Improper Input Validation
|
CVE-2019-12663
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223114
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the HTTP server code of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the HTTP server to crash. The vulnerability is due to a logical error in the …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-12659
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223115
|
6.7 |
MEDIUM
Local
|
cisco
|
ios
|
A vulnerability in the filesystem of Cisco IOS XE Software could allow an authenticated, local attacker within the IOx Guest Shell to modify the namespace container protections on an affected device.…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-12670
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223116
|
7.5 |
HIGH
Network
|
cisco
|
ios
|
A vulnerability in the RADIUS Change of Authorization (CoA) code of Cisco TrustSec, a feature within Cisco IOS XE Software, could allow an unauthenticated, remote attacker to cause a denial of servic…
|
NVD-CWE-noinfo
|
CVE-2019-12669
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223117
|
4.8 |
MEDIUM
Network
|
cisco
|
ios ios_xe
|
A vulnerability in the web framework code of Cisco IOS and Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of …
|
CWE-79
Cross-site Scripting
|
CVE-2019-12668
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223118
|
4.8 |
MEDIUM
Network
|
cisco
|
ios_xe
|
A vulnerability in the web framework code of Cisco IOS XE Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interf…
|
CWE-79
Cross-site Scripting
|
CVE-2019-12667
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223119
|
6.7 |
MEDIUM
Local
|
cisco
|
ios_xe
|
A vulnerability in the Guest Shell of Cisco IOS XE Software could allow an authenticated, local attacker to perform directory traversal on the base Linux operating system of Cisco IOS XE Software. Th…
|
CWE-22
Path Traversal
|
CVE-2019-12666
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223120
|
7.4 |
HIGH
Network
|
cisco
|
ios
|
A vulnerability in the HTTP client feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to read and modify data that should normally have been sent via an encrypte…
|
NVD-CWE-Other
|
CVE-2019-12665
|
2024-11-21 13:23 |
2019-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|