|
221671
|
5.3 |
MEDIUM
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of Cisco RV110W, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to access the syslog file on an affected device. The …
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2019-1898
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221672
|
5.3 |
MEDIUM
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of Cisco RV110W, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to disconnect clients that are connected to the guest…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-1897
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221673
|
6.7 |
MEDIUM
Local
|
cisco
|
unified_computing_system integrated_management_controller
|
A vulnerability in the CLI of Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulner…
|
CWE-78
OS Command
|
CVE-2019-1879
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221674
|
8.8 |
HIGH
Adjacent
|
cisco
|
telepresence_tc telepresence_ce
|
A vulnerability in the Cisco Discovery Protocol (CDP) implementation for the Cisco TelePresence Codec (TC) and Collaboration Endpoint (CE) Software could allow an unauthenticated, adjacent attacker t…
|
CWE-78
OS Command
|
CVE-2019-1878
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221675
|
5.3 |
MEDIUM
Network
|
cisco
|
wide_area_application_services
|
A vulnerability in the HTTPS proxy feature of Cisco Wide Area Application Services (WAAS) Software could allow an unauthenticated, remote attacker to use the Central Manager as an HTTPS proxy. The vu…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-1876
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221676
|
4.8 |
MEDIUM
Network
|
cisco
|
prime_service_catalog
|
A vulnerability in the web-based management interface of Cisco Prime Service Catalog could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1875
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221677
|
8.8 |
HIGH
Network
|
cisco
|
prime_service_catalog
|
A vulnerability in the web-based management interface of Cisco Prime Service Catalog Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on …
|
CWE-352
Origin Validation Error
|
CVE-2019-1874
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221678
|
7.5 |
HIGH
Network
|
cisco
|
staros
|
A vulnerability in the internal packet-processing functionality of the Cisco StarOS operating system running on virtual platforms could allow an unauthenticated, remote attacker to cause an affected …
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2019-1869
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221679
|
9.3 |
CRITICAL
Adjacent
|
cisco
|
digital_network_architecture_center
|
A vulnerability in Cisco Digital Network Architecture (DNA) Center could allow an unauthenticated, adjacent attacker to bypass authentication and access critical internal services. The vulnerability …
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2019-1848
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221680
|
7.5 |
HIGH
Network
|
cisco
|
rv110w_firmware rv130w_firmware rv215w_firmware
|
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow…
|
CWE-20
Improper Input Validation
|
CVE-2019-1843
|
2024-11-21 13:37 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|