|
190911
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trigger a crash of the dhcpd process, resulting in a denial o…
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-34737
|
2024-11-21 15:11 |
2021-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190912
|
8.6 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the IP Service Level Agreements (IP SLA) responder and Two-Way Active Measurement Protocol (TWAMP) features of Cisco IOS XR Software could allow an unauthenticated, remote attacker…
|
NVD-CWE-Other
|
CVE-2021-34720
|
2024-11-21 15:11 |
2021-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190913
|
8.1 |
HIGH
Network
|
cisco
|
ios_xr
|
A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, remote attacker to overwrite and read arbitrary files on the local device. This vulnerability is due t…
|
CWE-88
Argument Injection
|
CVE-2021-34718
|
2024-11-21 15:11 |
2021-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190914
|
7.4 |
HIGH
Adjacent
|
cisco
|
ios_xr
|
A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause the affected…
|
NVD-CWE-Other
|
CVE-2021-34713
|
2024-11-21 15:11 |
2021-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190915
|
4.3 |
MEDIUM
Network
|
cisco
|
nexus_insights
|
A vulnerability in the web UI for Cisco Nexus Insights could allow an authenticated, remote attacker to view and download files related to the web application. The attacker requires valid device cred…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2021-34765
|
2024-11-21 15:11 |
2021-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190916
|
4.8 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker with administrative credentials to conduct a cross…
|
CWE-79
Cross-site Scripting
|
CVE-2021-34759
|
2024-11-21 15:11 |
2021-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190917
|
9.8 |
CRITICAL
Network
|
cisco
|
enterprise_nfv_infrastructure_software
|
A vulnerability in the TACACS+ authentication, authorization and accounting (AAA) feature of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to by…
|
CWE-287
Improper Authentication
|
CVE-2021-34746
|
2024-11-21 15:11 |
2021-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190918
|
5.5 |
MEDIUM
Local
|
cisco
|
evolved_programmable_network_manager prime_infrastructure
|
A vulnerability in the CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, local attacker to access sensitive information stored on th…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2021-34733
|
2024-11-21 15:11 |
2021-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190919
|
6.1 |
MEDIUM
Network
|
cisco
|
prime_collaboration_provisioning
|
A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against …
|
CWE-79
Cross-site Scripting
|
CVE-2021-34732
|
2024-11-21 15:11 |
2021-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190920
|
8.1 |
HIGH
Network
|
testzentrum-odw
|
testerfassung
|
A Shell Metacharacter Injection vulnerability in result.php in DRK Odenwaldkreis Testerfassung March-2021 allow an attacker with a valid token of a COVID-19 test result to execute shell commands with…
|
CWE-78
OS Command
|
CVE-2021-35062
|
2024-11-21 15:11 |
2021-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|