|
221691
|
7.2 |
HIGH
Network
|
cisco
|
sf-220-24_firmware sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28_firmware sg220-28mp_firmware sg220-50_firmware sg22…
|
A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an authenticated, remote attacker to perform a command injection attack. The vulnerabilit…
|
CWE-20
Improper Input Validation
|
CVE-2019-1914
|
2024-11-21 13:37 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221692
|
9.8 |
CRITICAL
Network
|
cisco
|
sf-220-24_firmware sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28_firmware sg220-28mp_firmware sg220-50_firmware sg22…
|
Multiple vulnerabilities in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to overflow a buffer, which then allows the …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-1913
|
2024-11-21 13:37 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221693
|
9.1 |
CRITICAL
Network
|
cisco
|
sf-220-24_firmware sf220-24p_firmware sf220-48_firmware sf220-48p_firmware sg220-26_firmware sg220-26p_firmware sg220-28_firmware sg220-28mp_firmware sg220-50_firmware sg22…
|
A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to upload arbitrary files. The vulnerability is due t…
|
CWE-863
Incorrect Authorization
|
CVE-2019-1912
|
2024-11-21 13:37 |
2019-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221694
|
8.8 |
HIGH
Adjacent
|
cisco
|
nx-os
|
A vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an adjacent, unauthenticated…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-1901
|
2024-11-21 13:37 |
2019-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221695
|
6.1 |
MEDIUM
Network
|
cisco
|
sg200-50_firmware sg200-50p_firmware sg200-50fp_firmware sg200-26_firmware sg200-26p_firmware sg200-26fp_firmware sg200-18_firmware sg200-10fp_firmware sg200-08_firmware sg…
|
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The…
|
CWE-601
Open Redirect
|
CVE-2019-1943
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221696
|
6.5 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the sponsor portal web interface for Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to impact the integrity of an affected system by executing a…
|
CWE-89
SQL Injection
|
CVE-2019-1942
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221697
|
6.1 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a …
|
CWE-79
Cross-site Scripting
|
CVE-2019-1941
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221698
|
5.9 |
MEDIUM
Network
|
cisco
|
industrial_network_director
|
A vulnerability in the Web Services Management Agent (WSMA) feature of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to gain unauthorized read access to sens…
|
CWE-295
Improper Certificate Validation
|
CVE-2019-1940
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221699
|
6.6 |
MEDIUM
Physics
|
cisco
|
spa501g_firmware spa502g_firmware spa504g_firmware spa508g_firmware spa509g_firmware spa512g_firmware spa514g_firmware spa525g2_firmware spa500s_firmware spa500ds_firmware
|
A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute arbitrary commands on the device. The vulnerability is due to improper input val…
|
CWE-20
Improper Input Validation
|
CVE-2019-1923
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221700
|
7.4 |
HIGH
Adjacent
|
cisco
|
aironet_3700e_firmware aironet_3700i_firmware aironet_3700p_firmware access_points
|
A vulnerability in the 802.11r Fast Transition (FT) implementation for Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) cond…
|
NVD-CWE-Other
|
CVE-2019-1920
|
2024-11-21 13:37 |
2019-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|