Cisco
cisco
6,669 CVEs • 6,229 products
Products (6,229)
Click to collapseToggle
Products (6,229)
Click to collapse
CVEs (6,669)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cisco 1Unified Communications Domain Manager May 6, 2026 Jun 8, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to obtain potentially sensitive user information by visiting an uns...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 Jun 8, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to enumerate accounts by visiting an unspecified BVSMWeb web page,...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 Jun 3, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain potentially sensitive user...Show more |
1Cisco 1Wide Area Application Services May 6, 2026 May 29, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Cisco Wide Area Application Services (WAAS) 5.3(.5a) and earlier, when SharePoint acceleration is enabled, does not properly parse SharePoint responses, which allows remote attackers to cause a denial of service (applica...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 May 29, 2014 N/A· v4 N/A· v3 5.8 MEDIUM· v2 Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier allows remote attackers to redirect users to arbit...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 May 29, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The Administration GUI in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain s...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 May 29, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Administration GUI in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote attackers to enumerate account...Show more |
1Cisco 1Unified Communications Domain Manager May 6, 2026 May 29, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The Administration GUI in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain s...Show more |
Buffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX-OS 5.0 before 5.0(3)U2(2) on Nexus 3000 devices, NX-OS 4.1 before 4.1(...Show more |
1Cisco 7Mds 9000 Mds 9100Nexus 7000+4 moreMay 6, 2026 May 26, 2014 N/A· v4 N/A· v3 7.8 HIGH· v2 The Message Transfer Service (MTS) in Cisco NX-OS before 6.2(7) on MDS 9000 devices and 6.0 before 6.0(2) on Nexus 7000 devices allows remote attackers to cause a denial of service (NULL pointer dereference and kernel pa...Show more |
Cisco NX-OS 5.0 before 5.0(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows remote authenticated users to gain privileges within an unintended VDC via an SSH session to a manageme...Show more |
1Cisco 5Nexus 7000 Nexus 7000 10 SlotNexus 7000 18 Slot+2 moreMay 6, 2026 May 26, 2014 N/A· v4 N/A· v3 7.1 HIGH· v2 Cisco NX-OS 6.1 before 6.1(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows remote authenticated users to gain privileges within an unintended VDC via crafted SSH key data in an S...Show more |
1Cisco 1Identity Services Engine Software May 6, 2026 May 26, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Cisco Identity Services Engine (ISE) 1.2(.1 patch 2) and earlier does not properly handle deadlock conditions during reception of crafted RADIUS accounting packets from multiple NAS devices, which allows remote authentic...Show more |
1Cisco 1Identity Services Engine Software May 6, 2026 May 26, 2014 N/A· v4 N/A· v3 6.5 MEDIUM· v2 SQL injection vulnerability in the web framework in Cisco Identity Services Engine (ISE) 1.2(.1 patch 2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCul...Show more |
Cisco TelePresence System (CTS) 6.0(.5)(5) and earlier falls back to HTTP when certain HTTPS sessions cannot be established, which allows man-in-the-middle attackers to obtain sensitive directory information by leveragin...Show more |
The Agent in Cisco Tidal Enterprise Scheduler (TES) 6.1 and earlier allows local users to gain privileges via crafted Tidal Job Buffers (TJB) parameters, aka Bug ID CSCuo33074. |
Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Security Manager 4.6 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that make unspecified ch...Show more |
Cross-site scripting (XSS) vulnerability in the web framework in Cisco Security Manager 4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCun65189. |
Cisco Wide Area Application Services (WAAS) 5.1.1 before 5.1.1e, when SharePoint prefetch optimization is enabled, allows remote SharePoint servers to execute arbitrary code via a malformed response, aka Bug ID CSCue1847...Show more |
1Cisco 9Asr 1001 Asr 1002Asr 1002 X+6 moreMay 6, 2026 May 25, 2014 N/A· v4 N/A· v3 6.1 MEDIUM· v2 Cisco IOS XE on ASR1000 devices, when PPPoE termination is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed PPPoE packet, aka Bug ID CSCuo55180. |