|
222551
|
5.4 |
MEDIUM
Network
|
cisco
|
nx-os
|
A vulnerability in the NX API (NX-API) Sandbox interface for Cisco NX-OS Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the NX…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1733
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222552
|
6.4 |
MEDIUM
Local
|
cisco
|
nx-os nx_os
|
A vulnerability in the Remote Package Manager (RPM) subsystem of Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to leverage a time-of-check, time-of-…
|
CWE-667
Improper Locking
|
CVE-2019-1732
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222553
|
4.4 |
MEDIUM
Local
|
cisco
|
nx-os
|
A vulnerability in the SSH CLI key management functionality of Cisco NX-OS Software could allow an authenticated, local attacker to expose a user's private SSH key to all authenticated users on the t…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2019-1731
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222554
|
6.7 |
MEDIUM
Local
|
cisco
|
nx-os
|
A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker to bypass the limited command set of the restricted Guest Shell and execute comm…
|
NVD-CWE-noinfo
|
CVE-2019-1730
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222555
|
6.0 |
MEDIUM
Local
|
cisco
|
nx-os
|
A vulnerability in the CLI implementation of a specific command used for image maintenance for Cisco NX-OS Software could allow an authenticated, local attacker to overwrite any file on the file syst…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2019-1729
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222556
|
6.7 |
MEDIUM
Local
|
cisco
|
nx-os
|
A vulnerability in the Secure Configuration Validation functionality of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to run arbitrary commands at system b…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2019-1728
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222557
|
6.7 |
MEDIUM
Local
|
cisco
|
nx-os
|
A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker to escape the Python parser and issue arbitrary commands to elevate the attacker…
|
CWE-78
OS Command
|
CVE-2019-1727
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222558
|
7.8 |
HIGH
Local
|
cisco
|
nx-os
|
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to access internal services that should be restricted on an affected device, such as the NX-API. The vu…
|
CWE-78
OS Command
|
CVE-2019-1726
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222559
|
7.5 |
HIGH
Network
|
cisco
|
video_surveillance_manager
|
A vulnerability in the web-based management interface of Cisco Video Surveillance Manager could allow an unauthenticated, remote attacker to access sensitive information. The vulnerability is due to …
|
CWE-22
Path Traversal
|
CVE-2019-1717
|
2024-11-21 13:37 |
2019-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222560
|
7.2 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the web-based user interface (Web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to execute commands on the underlying Linux shell of an affected device…
|
CWE-20
Improper Input Validation
|
CVE-2019-1862
|
2024-11-21 13:37 |
2019-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|