Cisco
cisco
6,588 CVEs • 6,222 products
Products (6,222)
Click to collapseToggle
Products (6,222)
Click to collapse
CVEs (6,588)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The FTP Server in Cisco IOS 11.3 through 12.4 does not properly check user authorization, which allows remote attackers to execute arbitrary code, and have other impact including reading startup-config, as demonstrated b...Show more |
1Cisco 2Adaptive Security Appliance Software PixApr 23, 2026 May 2, 2007 N/A· v4 N/A· v3 7.1 HIGH· v2 Race condition in Cisco Adaptive Security Appliance (ASA) and PIX 7.1 before 7.1(2)49 and 7.2 before 7.2(2)19, when using "clientless SSL VPNs," allows remote attackers to cause a denial of service (device reload) via "n...Show more |
1Cisco 2Adaptive Security Appliance Software PixApr 23, 2026 May 2, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Unspecified vulnerability in Cisco Adaptive Security Appliance (ASA) and PIX 7.1 before 7.1(2)49 and 7.2 before 7.2(2)17 allows remote attackers to cause a denial of service (device reload) via unknown vectors related to...Show more |
1Cisco 2Adaptive Security Appliance Software PixApr 23, 2026 May 2, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 Unspecified vulnerability in Cisco Adaptive Security Appliance (ASA) and PIX 7.2 before 7.2(2)8, when using Layer 2 Tunneling Protocol (L2TP) or Remote Management Access, allows remote attackers to bypass LDAP authentica...Show more |
1Cisco 2Adaptive Security Appliance Software PixApr 23, 2026 May 2, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 The DHCP relay agent in Cisco Adaptive Security Appliance (ASA) and PIX 7.2 allows remote attackers to cause a denial of service (dropped packets) via a DHCPREQUEST or DHCPINFORM message that causes multiple DHCPACK mess...Show more |
Cisco Network Services (CNS) NetFlow Collection Engine (NFC) before 6.0 has an nfcuser account with the default password nfcuser, which allows remote attackers to modify the product configuration and, when installed on L...Show more |
1Cisco 22100 Wireless Lan Controller 4400 Wireless Lan ControllerApr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which prevents WLAN ACLs from being loaded at boot time, and might allow remote attackers to bypass intended...Show more |
1Cisco 1Wireless Lan Controller Software Apr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 6.2 MEDIUM· v2 Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points before 3.2.185.0, and 4.0.x before 4.0.206.0, have a hard-coded password, which allows attackers with physical access to perform arbitrary actions on th...Show more |
1Cisco 1Wireless Lan Controller Software Apr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 6.1 MEDIUM· v2 The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of p...Show more |
1Cisco 42000 Wireless Lan Controller 2100 Wireless Lan Controller4100 Wireless Lan Controller+1 moreApr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 6.1 MEDIUM· v2 The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of p...Show more |
1Cisco 1Wireless Lan Controller Software Apr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 2.9 LOW· v2 Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local network to cause a denial of service (device crash) via malformed Ethernet traffic. |
1Cisco 1Wireless Lan Controller Software Apr 23, 2026 Apr 16, 2007 N/A· v4 N/A· v3 10.0 HIGH· v2 The SNMP implementation in the Cisco Wireless LAN Controller (WLC) before 20070419 uses the default read-only community public, and the default read-write community private, which allows remote attackers to read and modi...Show more |
Cisco Wireless Control System (WCS) before 4.0.66.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain network organization data via a direct request...Show more |
Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to t...Show more |
Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596. |
Cisco Wireless Control System (WCS) before 4.0.96.0 has a hard-coded FTP username and password for backup operations, which allows remote attackers to read and modify arbitrary files via unspecified vectors related to "p...Show more |
1Cisco 2Unified Callmanager Unified Presence ServerApr 23, 2026 Apr 3, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allow remote attackers to cause a denial of service (loss of voice services) via a flood of ICMP echo requ...Show more |
The Skinny Call Control Protocol (SCCP) implementation in Cisco Unified CallManager (CUCM) 3.3 before 3.3(5)SR2a, 4.1 before 4.1(3)SR4, 4.2 before 4.2(3)SR1, and 5.0 before 5.0(4a)SU1 allows remote attackers to cause a d...Show more |
1Cisco 2Unified Callmanager Unified Presence ServerApr 23, 2026 Apr 2, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 Unspecified vulnerability in the IPSec Manager Service for Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allows remote attackers to cause a denial of se...Show more |
Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture, ak...Show more |