Cisco
cisco
6,590 CVEs • 6,223 products
Products (6,223)
Click to collapseToggle
Products (6,223)
Click to collapse
CVEs (6,590)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Multiple stack-based buffer overflows in Command EXEC in Cisco IOS allow local users to gain privileges via unspecified vectors, aka (1) PSIRT-0474975756 and (2) PSIRT-0388256465. NOTE: as of 20071016, the only disclosu...Show more |
Cross-site scripting (XSS) vulnerability in Cisco IOS allows remote attackers to inject arbitrary web script or HTML, and execute IOS commands, via unspecified vectors, aka PSIRT-2022590358. NOTE: as of 20071016, the on...Show more |
1Cisco 4Unified Contact Center Enterprise Unified Contact Center HostedUnified Icm Hosted+1 moreApr 23, 2026 Oct 18, 2007 N/A· v4 N/A· v3 9.0 HIGH· v2 Unspecified vulnerability in Cisco Unified Intelligent Contact Management Enterprise (ICME), Unified ICM Hosted (ICMH), Unified Contact Center Enterprise (UCCE), Unified Contact Center Hosted (UCCH), and System Unified C...Show more |
1Cisco 2Unified Callmanager Unified Communications ManagerApr 23, 2026 Oct 18, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), and Unified CallManager 5.0, allows remote attackers to execute arbitra...Show more |
1Cisco 2Unified Callmanager Unified Communications ManagerApr 23, 2026 Oct 18, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(2), and Unified CallManager 5.0, allow remote attackers to cause a denial of service (kernel panic) via a flood of SIP INVITE messages to U...Show more |
Cisco CallManager 5.1.1.3000-5 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers to use sniffed Digest authentication credentials to call arbitrar...Show more |
1Cisco 2Wireless Control System Wireless Lan Solution EngineApr 23, 2026 Oct 12, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 The conversion utility for converting CiscoWorks Wireless LAN Solution Engine (WLSE) 4.1.91.0 and earlier to Cisco Wireless Control System (WCS) creates administrator accounts with default usernames and passwords, which...Show more |
Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to execute arbitrary code by setting a long hostname on the target system, t...Show more |
1Cisco 9Catalyst 6500 Catalyst 6500 Ws Svc Nam 1Catalyst 6500 Ws Svc Nam 2+6 moreApr 23, 2026 Sep 27, 2007 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an interface for which networ...Show more |
1Cisco 2Content Switching Module With Ssl Content Switching ModulesApr 23, 2026 Sep 10, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Cisco Content Switching Modules (CSM) 4.2 before 4.2.7, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.6, when service termination is enabled, allow remote attackers to cause a denial of service (rebo...Show more |
1Cisco 2Content Switching Module With Ssl Content Switching ModulesApr 23, 2026 Sep 10, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Cisco Content Switching Modules (CSM) 4.2 before 4.2.3a, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.2a, allow remote attackers to cause a denial of service (CPU consumption or reboot) via sets of...Show more |
1Cisco 1Adaptive Security Appliance Software Apr 23, 2026 Sep 10, 2007 N/A· v4 5.3 MEDIUM· v3 4.3 MEDIUM· v2 Cisco Adaptive Security Appliance (ASA) running PIX 7.0 before 7.0.7.1, 7.1 before 7.1.2.61, 7.2 before 7.2.2.34, and 8.0 before 8.0.2.11, when AAA is enabled, composes %ASA-5-111008 messages from the "test aaa" command...Show more |
1Cisco 3Video Surveillance Ip Gateway Encoder Decoder Video Surveillance Sp IspVideo Surveillance Sp Isp Decoder SoftwareApr 23, 2026 Sep 6, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 The telnet service in Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Software firmware 1.11.0 and earlier, and the Video Surveill...Show more |
1Cisco 3Video Surveillance Ip Gateway Encoder Decoder Video Surveillance Sp IspVideo Surveillance Sp Isp Decoder SoftwareApr 23, 2026 Sep 6, 2007 N/A· v4 N/A· v3 9.0 HIGH· v2 The Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Software firmware 1.11.0 and earlier, and the Video Surveillance SP/ISP firmwa...Show more |
3Cisco OpenbsdTeamf13Openssh SshieldWebnsApr 23, 2026 Sep 4, 2007 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unspecified vulnerability in SSHield 1.6.1 with OpenSSH 3.0.2p1 on Cisco WebNS 8.20.0.1 on Cisco Content Services Switch (CSS) series 11000 devices allows remote attackers to cause a denial of service (connection slot ex...Show more |
1Cisco 2Call Manager Unified Communications ManagerApr 23, 2026 Aug 31, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple SQL injection vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) before 3.3(5)sr2b, 4.1 before 4.1(3)sr5, 4.2 before 4.2(3)sr2, and 4.3 before 4.3(1)sr1 allow remote attackers to exec...Show more |
1Cisco 2Call Manager Unified Communications ManagerApr 23, 2026 Aug 31, 2007 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Multiple cross-site scripting (XSS) vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) before 3.3(5)sr2b, 4.1 before 4.1(3)sr5, 4.2 before 4.2(3)sr2, and 4.3 before 4.3(1)sr1 allow remote atta...Show more |
Cisco IOS 12.2E, 12.2F, and 12.2S places a "no login" line into the VTY configuration when an administrator makes certain changes to a (1) VTY/AUX or (2) CONSOLE setting on a device without AAA enabled, which allows remo...Show more |
1Cisco 2Voip Phone Cp 7940 Voip Phone Cp 7960Apr 23, 2026 Aug 21, 2007 N/A· v4 N/A· v3 7.1 HIGH· v2 Cisco IP Phone 7940 and 7960 with P0S3-08-6-00 firmware, and other SIP firmware before 8.7(0), allows remote attackers to cause a denial of service (device reboot) via (1) a certain sequence of 10 invalid SIP INVITE and...Show more |
Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows context-dependent attackers to cause a denial of service (device restart and BGP routing table rebuild) via certain regular expressions in a "show ip bgp re...Show more |