|
222171
|
7.5 |
HIGH
Network
|
cisco
|
ios ios_xe
|
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device…
|
CWE-20
Improper Input Validation
|
CVE-2019-1738
|
2024-11-21 13:37 |
2019-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222172
|
8.6 |
HIGH
Network
|
cisco
|
ios_xe ios
|
A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthenticated, remote attacker to cause an interface wed…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-1737
|
2024-11-21 13:37 |
2019-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222173
|
7.5 |
HIGH
Network
|
cisco
|
ip_phone_8800_firmware
|
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to cause high disk u…
|
CWE-20
Improper Input Validation
|
CVE-2019-1766
|
2024-11-21 13:37 |
2019-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222174
|
6.5 |
MEDIUM
Network
|
cisco
|
ip_phone_8821_firmware ip_phone_8821-ex_firmware ip_conference_phone_8832_firmware ip_phone_8800_firmware
|
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an authenticated, remote attacker to write arbitrary fil…
|
CWE-22
Path Traversal
|
CVE-2019-1765
|
2024-11-21 13:37 |
2019-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222175
|
8.8 |
HIGH
Network
|
cisco
|
ip_phone_8821_firmware ip_phone_8821-ex_firmware ip_conference_phone_8832_firmware ip_phone_8800_firmware
|
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to conduct a cross-s…
|
CWE-352
Origin Validation Error
|
CVE-2019-1764
|
2024-11-21 13:37 |
2019-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222176
|
7.5 |
HIGH
Network
|
cisco
|
ip_phone_8821_firmware ip_phone_8821-ex_firmware ip_conference_phone_8832_firmware ip_phone_8800_firmware
|
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to bypass authorizat…
|
NVD-CWE-Other
|
CVE-2019-1763
|
2024-11-21 13:37 |
2019-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222177
|
9.8 |
CRITICAL
Network
|
cisco
|
ip_phone_8821_firmware ip_phone_8821-ex_firmware ip_conference_phone_7800_firmware ip_phone_8800_firmware unified_ip_conferenece_phone_8831_firmware
|
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 7800 Series and Cisco IP Phone 8800 Series could allow an unauthenticated, remot…
|
CWE-20
Improper Input Validation
|
CVE-2019-1716
|
2024-11-21 13:37 |
2019-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222178
|
9.8 |
CRITICAL
Network
|
cisco
|
common_services_platform_collector
|
A vulnerability in the Cisco Common Services Platform Collector (CSPC) could allow an unauthenticated, remote attacker to access an affected device by using an account that has a default, static pass…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2019-1723
|
2024-11-21 13:37 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222179
|
5.4 |
MEDIUM
Network
|
cisco
|
dna_center
|
A vulnerability in the web-based management interface of Cisco DNA Center could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based …
|
CWE-79
Cross-site Scripting
|
CVE-2019-1707
|
2024-11-21 13:37 |
2019-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222180
|
6.1 |
MEDIUM
Network
|
cisco
|
enterprise_chat_and_email
|
Multiple vulnerabilities in the web-based management interface of Cisco Enterprise Chat and Email could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack agains…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1702
|
2024-11-21 13:37 |
2019-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|