|
223751
|
7.2 |
HIGH
Network
|
cisco
|
unified_computing_system integrated_management_controller_supervisor
|
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an authenticated, remote attacker to inject arbitrary commands that are exec…
|
CWE-78
OS Command
|
CVE-2019-1850
|
2024-11-21 13:37 |
2019-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223752
|
6.7 |
MEDIUM
Local
|
cisco
|
remote_phy_120_firmware remote_phy_220_firmware remote_phy_shelf_7200_firmware cbr-8_firmware
|
A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vuln…
|
CWE-78
OS Command
|
CVE-2019-1839
|
2024-11-21 13:37 |
2019-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223753
|
4.8 |
MEDIUM
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in the web portal framework of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack agains…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1973
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223754
|
6.7 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability the Cisco Enterprise NFV Infrastructure Software (NFVIS) restricted CLI could allow an authenticated, local attacker with valid administrator-level credentials to elevate privileges a…
|
NVD-CWE-Other
|
CVE-2019-1972
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223755
|
9.8 |
CRITICAL
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform a command injection attack and execute arbitrary c…
|
CWE-20
Improper Input Validation
|
CVE-2019-1971
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223756
|
4.4 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an aff…
|
CWE-78
OS Command
|
CVE-2019-1960
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223757
|
4.4 |
MEDIUM
Local
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to read arbitrary files on the underlying operating system (OS) of an aff…
|
CWE-78
OS Command
|
CVE-2019-1959
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223758
|
7.5 |
HIGH
Network
|
cisco
|
firepower_management_center firepower_threat_defense
|
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) protocol inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote att…
|
CWE-693
Protection Mechanism Failure
|
CVE-2019-1970
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223759
|
4.9 |
MEDIUM
Network
|
cisco
|
enterprise_network_function_virtualization_infrastructure
|
A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system (OS) of an affected de…
|
CWE-20
Improper Input Validation
|
CVE-2019-1961
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223760
|
8.8 |
HIGH
Network
|
cisco
|
hyperflex_hx_data_platform
|
A vulnerability in the web-based management interface of Cisco HyperFlex Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected …
|
CWE-352
Origin Validation Error
|
CVE-2019-1958
|
2024-11-21 13:37 |
2019-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|