|
190881
|
8.8 |
HIGH
Network
|
cisco
|
intersight_virtual_appliance
|
A vulnerability in the web-based management interface of Cisco Intersight Virtual Appliance could allow an authenticated, remote attacker to perform a command injection attack on an affected device. …
|
CWE-78
OS Command
|
CVE-2021-34748
|
2024-11-21 15:11 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190882
|
4.9 |
MEDIUM
Network
|
cisco
|
business_220-8t-e-2g_firmware business_220-8p-e-2g_firmware business_220-8fp-e-2g_firmware business_220-16t-2g_firmware business_220-16p-2g_firmware business_220-24t-4g_firmware bus…
|
Multiple vulnerabilities in Cisco Business 220 Series Smart Switches firmware could allow an attacker with Administrator privileges to access sensitive login credentials or reconfigure the passwords …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-34744
|
2024-11-21 15:11 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190883
|
6.1 |
MEDIUM
Network
|
cisco
|
vision_dynamic_signage_director
|
A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a…
|
CWE-79
Cross-site Scripting
|
CVE-2021-34742
|
2024-11-21 15:11 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190884
|
5.5 |
MEDIUM
Local
|
cisco
|
ip_conference_phone_7832_firmware ip_conference_phone_8832_firmware ip_phone_7811_firmware ip_phone_7821_firmware ip_phone_7832_firmware ip_phone_7841_firmware ip_phone_7861_firmwar…
|
A vulnerability in the debug shell of Cisco IP Phone software could allow an authenticated, local attacker to read any file on the device file system. This vulnerability is due to insufficient input …
|
CWE-22
Path Traversal
|
CVE-2021-34711
|
2024-11-21 15:11 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190885
|
5.4 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to access sensitive information or conduct a server-side re…
|
CWE-611
XXE
|
CVE-2021-34706
|
2024-11-21 15:11 |
2021-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190886
|
7.8 |
HIGH
Local
|
zyxel
|
zywall_vpn2s_firmware
|
A command injection vulnerability in the CGI program of the Zyxel VPN2S firmware version 1.12 could allow an authenticated, local user to execute arbitrary OS commands.
|
CWE-78
OS Command
|
CVE-2021-35028
|
2024-11-21 15:11 |
2021-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190887
|
7.5 |
HIGH
Network
|
zyxel
|
zywall_vpn2s_firmware
|
A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access to sensitive information.
|
CWE-22
Path Traversal
|
CVE-2021-35027
|
2024-11-21 15:11 |
2021-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190888
|
7.2 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allow an unau…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-34770
|
2024-11-21 15:11 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190889
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allo…
|
CWE-415
Double Free
|
CVE-2021-34769
|
2024-11-21 15:11 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190890
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Catalyst 9000 Family Wireless Controllers could allo…
|
CWE-415
Double Free
|
CVE-2021-34768
|
2024-11-21 15:11 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|