|
222431
|
9.8 |
CRITICAL
Network
|
cisco
|
data_center_network_manager
|
A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary action…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-1619
|
2024-11-21 13:36 |
2019-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222432
|
8.8 |
HIGH
Network
|
cisco
|
sd-wan
|
A vulnerability in the vManage web-based UI (Web UI) in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges. Th…
|
CWE-77
Command Injection
|
CVE-2019-1624
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222433
|
8.0 |
HIGH
Network
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to conduct a cross-site request forgery (CSRF) atta…
|
CWE-352
Origin Validation Error
|
CVE-2019-1632
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222434
|
5.3 |
MEDIUM
Network
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to access potentially sensitive system usage info…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-1631
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222435
|
5.5 |
MEDIUM
Local
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the firmware signature checking program of Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker to cause a buffer overflow, resulting in a deni…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-1630
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222436
|
5.3 |
MEDIUM
Network
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to have write access and upload arbitrary data to t…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2019-1629
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222437
|
5.5 |
MEDIUM
Local
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker to cause a buffer overflow, resulting in a denial of service (DoS) condi…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-1628
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222438
|
6.5 |
MEDIUM
Network
|
cisco
|
integrated_management_controller unified_computing_system
|
A vulnerability in the Server Utilities of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to gain unauthorized access to sensitive user information from th…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2019-1627
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222439
|
8.8 |
HIGH
Network
|
cisco
|
sd-wan_firmware
|
A vulnerability in the vManage web-based UI (Web UI) of the Cisco SD-WAN Solution could allow an authenticated, remote attacker to gain elevated privileges on an affected vManage device. The vulnerab…
|
CWE-863
Incorrect Authorization
|
CVE-2019-1626
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222440
|
7.8 |
HIGH
Local
|
cisco
|
sd-wan_firmware
|
A vulnerability in the CLI of Cisco SD-WAN Solution could allow an authenticated, local attacker to elevate lower-level privileges to the root user on an affected device. The vulnerability is due to …
|
NVD-CWE-Other
|
CVE-2019-1625
|
2024-11-21 13:36 |
2019-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|