|
198631
|
7.8 |
HIGH
Local
|
cisco
|
asyncos
|
A vulnerability in the log subscription subsystem of Cisco AsyncOS for the Cisco Secure Web Appliance (formerly Web Security Appliance) could allow an authenticated, local attacker to perform command…
|
CWE-78
OS Command
|
CVE-2020-3367
|
2024-11-21 14:30 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198632
|
8.8 |
HIGH
Network
|
cisco
|
integrated_management_controller
|
A vulnerability in the web UI of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to inject arbitrary code and execute arbitrary commands at the underlying o…
|
CWE-78
OS Command
|
CVE-2020-3371
|
2024-11-21 14:30 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198633
|
9.8 |
CRITICAL
Network
|
cisco
|
a9k-rsp880-se_firmware ios_xr a9k-rsp880-tr_firmware a99-rp2-se_firmware a99-rp2-tr_firmware a99-rsp-se_firmware a99-rsp-tr_firmware a9k-rsp880-lt-se_firmware a9k-rsp880-lt-tr…
|
A vulnerability in the enhanced Preboot eXecution Environment (PXE) boot loader for Cisco IOS XR 64-bit Software could allow an unauthenticated, remote attacker to execute unsigned code during the PX…
|
NVD-CWE-noinfo
|
CVE-2020-3284
|
2024-11-21 14:30 |
2020-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198634
|
8.1 |
HIGH
Network
|
cisco
|
firepower_management_center
|
A vulnerability in the Common Access Card (CAC) authentication feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and…
|
CWE-287
Improper Authentication
|
CVE-2020-3410
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198635
|
8.6 |
HIGH
Network
|
cisco
|
firepower_threat_defense adaptive_security_appliance_software
|
A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-3373
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198636
|
5.5 |
MEDIUM
Local
|
cisco
|
firepower_threat_defense
|
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access hidden commands. The vulnerability is due to the presence of undocum…
|
NVD-CWE-Other
|
CVE-2020-3352
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198637
|
7.5 |
HIGH
Network
|
cisco
|
firepower_threat_defense
|
A vulnerability in the ssl_inspection component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to crash Snort instances. The vulnerability is due to …
|
CWE-20
Improper Input Validation
|
CVE-2020-3317
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198638
|
8.6 |
HIGH
Network
|
cisco
|
firepower_threat_defense adaptive_security_appliance adaptive_security_appliance_software
|
A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affect…
|
CWE-20
Improper Input Validation
|
CVE-2020-3304
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198639
|
5.8 |
MEDIUM
Network
|
cisco snort
|
firepower_threat_defense snort
|
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured File Policy for HTTP. The vulnerabili…
|
NVD-CWE-Other
|
CVE-2020-3299
|
2024-11-21 14:30 |
2020-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198640
|
5.4 |
MEDIUM
Network
|
cisco
|
sourcefire_defense_center firepower_management_center
|
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user …
|
CWE-79
Cross-site Scripting
|
CVE-2020-3320
|
2024-11-21 14:30 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|