|
221471
|
4.9 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the web-based user interface of Cisco Internet of Things Field Network Director (IoT-FND) Software could allow an authenticated, remote attacker to gain read access to information …
|
CWE-611
XXE
|
CVE-2019-1698
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221472
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense
|
A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause the unexpected restart of the SNORT detection engine, resul…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2019-1691
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221473
|
6.1 |
MEDIUM
Network
|
cisco
|
unity_connection
|
A vulnerability in the Security Assertion Markup Language (SAML) single sign-on (SSO) interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a cross-site scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1685
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221474
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
ip_phone_8800_firmware ip_phone_7800_firmware ip_conference_phone_7832_firmware ip_conference_phone_8832_firmware ip_phone_7811_firmware ip_phone_7821_firmware ip_phone_7841_firmwar…
|
A vulnerability in the Cisco Discovery Protocol or Link Layer Discovery Protocol (LLDP) implementation for the Cisco IP Phone 7800 and 8800 Series could allow an unauthenticated, adjacent attacker to…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-1684
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221475
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the TFTP service of Cisco Network Convergence System 1000 Series software could allow an unauthenticated, remote attacker to retrieve arbitrary files from the targeted device, poss…
|
CWE-22
Path Traversal
|
CVE-2019-1681
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221476
|
3.3 |
LOW
Local
|
cisco
|
hyperflex_hx_data_platform
|
A vulnerability in the Graphite interface of Cisco HyperFlex software could allow an authenticated, local attacker to write arbitrary data to the Graphite interface. The vulnerability is due to insuf…
|
CWE-863
Incorrect Authorization
|
CVE-2019-1667
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221477
|
6.1 |
MEDIUM
Network
|
cisco
|
hyperflex_hx_data_platform
|
A vulnerability in the web-based management interface of Cisco HyperFlex software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the …
|
CWE-79
Cross-site Scripting
|
CVE-2019-1665
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221478
|
7.8 |
HIGH
Local
|
cisco
|
hyperflex_hx_data_platform
|
A vulnerability in the hxterm service of Cisco HyperFlex Software could allow an unauthenticated, local attacker to gain root access to all nodes in the cluster. The vulnerability is due to insuffici…
|
CWE-287
Improper Authentication
|
CVE-2019-1664
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221479
|
9.1 |
CRITICAL
Network
|
cisco
|
prime_collaboration_assurance
|
A vulnerability in the Quality of Voice Reporting (QOVR) service of Cisco Prime Collaboration Assurance (PCA) Software could allow an unauthenticated, remote attacker to access the system as a valid …
|
CWE-287
Improper Authentication
|
CVE-2019-1662
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221480
|
7.4 |
HIGH
Network
|
cisco
|
prime_infrastructure
|
A vulnerability in the Identity Services Engine (ISE) integration feature of Cisco Prime Infrastructure (PI) could allow an unauthenticated, remote attacker to perform a man-in-the-middle attack agai…
|
CWE-295
Improper Certificate Validation
|
CVE-2019-1659
|
2024-11-21 13:37 |
2019-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|