|
195691
|
7.3 |
HIGH
Network
|
cisco
|
data_center_network_manager
|
Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorizati…
|
-
|
CVE-2021-1133
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195692
|
4.9 |
MEDIUM
Network
|
cisco
|
unified_communications_manager_im_and_presence_service unified_communications_manager
|
Multiple vulnerabilities in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an attacker to conduct path traversal attacks and SQL injection attacks on…
|
CWE-89
SQL Injection
|
CVE-2021-1282
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195693
|
7.3 |
HIGH
Local
|
cisco
|
immunet advanced_malware_protection_for_endpoints
|
A vulnerability in the loading mechanism of specific DLLs of Cisco Advanced Malware Protection (AMP) for Endpoints for Windows and Immunet for Windows could allow an authenticated, local attacker to …
|
-
|
CVE-2021-1280
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195694
|
8.8 |
HIGH
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the session validation feature of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side reque…
|
-
|
CVE-2021-1272
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195695
|
4.8 |
MEDIUM
Network
|
cisco
|
web_security_virtual_appliance
|
A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (X…
|
-
|
CVE-2021-1271
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195696
|
6.5 |
MEDIUM
Network
|
cisco
|
dna_center
|
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of mana…
|
-
|
CVE-2021-1265
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195697
|
6.5 |
MEDIUM
Network
|
cisco
|
sd-wan_vmanage
|
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct path traversal attacks and obtain write access to sensi…
|
-
|
CVE-2021-1259
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195698
|
8.8 |
HIGH
Network
|
cisco mcafee
|
dna_center agent
|
A vulnerability in the web-based management interface of Cisco DNA Center Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack to manipulate …
|
CWE-352
Origin Validation Error
|
CVE-2021-1257
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195699
|
5.3 |
MEDIUM
Network
|
cisco
|
content_security_management_appliance web_security_appliance email_security_appliance
|
A vulnerability in the authentication for the general purpose APIs implementation of Cisco Email Security Appliance (ESA), Cisco Content Security Management Appliance (SMA), and Cisco Web Security Ap…
|
-
|
CVE-2021-1129
|
2024-11-21 14:43 |
2021-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195700
|
4.3 |
MEDIUM
Network
|
cisco
|
connected_mobile_experiences
|
A vulnerability in Cisco Connected Mobile Experiences (CMX) API authorizations could allow an authenticated, remote attacker to enumerate what users exist on the system. The vulnerability is due to a…
|
CWE-862
Missing Authorization
|
CVE-2021-1143
|
2024-11-21 14:43 |
2021-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|