Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco prime infrastructure 1.4 vulnerabilities and exploits
(subscribe to this query)
4.8
CVSSv3
CVE-2015-8140
The ntpq protocol in NTP prior to 4.2.8p7 allows remote malicious users to conduct replay attacks by sniffing the network.
Ntp Ntp
6.5
CVSSv3
CVE-2015-7973
NTP prior to 4.2.8p6 and 4.3.x prior to 4.3.90, when configured in broadcast mode, allows man-in-the-middle malicious users to conduct replay attacks by sniffing the network.
Ntp Ntp
Ntp Ntp 4.2.8
Siemens Tim 4r-ie Firmware
Siemens Tim 4r-ie Dnp3 Firmware
Freebsd Freebsd 9.3
Freebsd Freebsd
Freebsd Freebsd 10.1
Freebsd Freebsd 10.2
Netapp Clustered Data Ontap -
Netapp Oncommand Balance -
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 16.04
6.2
CVSSv3
CVE-2015-7975
The nextvar function in NTP prior to 4.2.8p6 and 4.3.x prior to 4.3.90 does not properly validate the length of its input, which allows an malicious user to cause a denial of service (application crash).
Ntp Ntp 4.3.0
Ntp Ntp 4.3.1
Ntp Ntp 4.3.16
Ntp Ntp 4.3.17
Ntp Ntp 4.3.18
Ntp Ntp 4.3.24
Ntp Ntp 4.3.25
Ntp Ntp 4.3.31
Ntp Ntp 4.3.32
Ntp Ntp 4.3.39
Ntp Ntp 4.3.4
Ntp Ntp 4.3.40
Ntp Ntp 4.3.47
Ntp Ntp 4.3.48
Ntp Ntp 4.3.54
Ntp Ntp 4.3.55
Ntp Ntp 4.3.62
Ntp Ntp 4.3.63
Ntp Ntp 4.3.7
Ntp Ntp 4.3.70
Ntp Ntp 4.3.77
Ntp Ntp 4.3.78
4.3
CVSSv3
CVE-2015-7976
The ntpq saveconfig command in NTP 4.1.2, 4.2.x prior to 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows malicious users to cause unspecified impact via a crafted filename.
Ntp Ntp 4.1.2
Ntp Ntp
Ntp Ntp 4.3.0
Ntp Ntp 4.3.1
Ntp Ntp 4.3.16
Ntp Ntp 4.3.17
Ntp Ntp 4.3.24
Ntp Ntp 4.3.25
Ntp Ntp 4.3.31
Ntp Ntp 4.3.32
Ntp Ntp 4.3.39
Ntp Ntp 4.3.4
Ntp Ntp 4.3.47
Ntp Ntp 4.3.48
Ntp Ntp 4.3.54
Ntp Ntp 4.3.55
Ntp Ntp 4.3.61
Ntp Ntp 4.3.62
Ntp Ntp 4.3.63
Ntp Ntp 4.3.7
Ntp Ntp 4.3.70
Ntp Ntp 4.3.77
7.5
CVSSv3
CVE-2015-7848
An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode packet. The crafted packet needs to have the correct message authentication code and a valid timestamp. When processed by the NTP dae...
Ntp Ntp-dev 4.3.70
8.8
CVSSv3
CVE-2016-6443
A vulnerability in the Cisco Prime Infrastructure and Evolved Programmable Network Manager SQL database interface could allow an authenticated, remote malicious user to impact system confidentiality by executing a subset of arbitrary SQL queries that can cause product instability...
Cisco Evolved Programmable Network Manager 2.0
Cisco Prime Infrastructure 1.3.0.20
Cisco Prime Infrastructure 1.4.0.45
Cisco Prime Infrastructure 3.0
Cisco Prime Infrastructure 3.1.1
Cisco Prime Infrastructure 1.2
Cisco Prime Infrastructure 1.2.0.103
Cisco Prime Infrastructure 1.2.1
Cisco Prime Infrastructure 1.3
Cisco Prime Infrastructure 1.4.2
Cisco Prime Infrastructure 2.0
Cisco Prime Infrastructure 2.1.0
Cisco Prime Infrastructure 2.2
Cisco Evolved Programmable Network Manager 1.2
Cisco Prime Infrastructure 1.4
Cisco Prime Infrastructure 1.4.1
Cisco Prime Infrastructure 2.2\\(2\\)
Cisco Prime Infrastructure 3.1
8.8
CVSSv3
CVE-2016-1408
Cisco Prime Infrastructure 1.2 up to and including 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote authenticated users to execute arbitrary commands or upload files via a crafted HTTP request, aka Bug ID CSCuz01488.
Cisco Prime Infrastructure 2.2\\(2\\)
Cisco Prime Infrastructure 2.2
Cisco Prime Infrastructure 1.4
Cisco Prime Infrastructure 2.0
Cisco Prime Infrastructure 1.2.0.103
Cisco Prime Infrastructure 1.4.0.45
Cisco Prime Infrastructure 1.2.1
Cisco Prime Infrastructure 1.3
Cisco Prime Infrastructure 3.1
Cisco Prime Infrastructure 3.0
Cisco Prime Infrastructure 1.3.0.20
Cisco Prime Infrastructure 1.4.2
Cisco Prime Infrastructure 1.2
Cisco Prime Infrastructure 1.4.1
Cisco Prime Infrastructure 2.1.0
Cisco Evolved Programmable Network Manager 1.2.300
Cisco Evolved Programmable Network Manager 1.2.200
Cisco Evolved Programmable Network Manager 1.2.1.3
Cisco Evolved Programmable Network Manager 1.2.0
Cisco Evolved Programmable Network Manager 1.2.500
Cisco Evolved Programmable Network Manager 1.2.400
9.8
CVSSv3
CVE-2016-1289
The API in Cisco Prime Infrastructure 1.2 up to and including 3.0 and Evolved Programmable Network Manager (EPNM) 1.2 allows remote malicious users to execute arbitrary code or obtain sensitive management information via a crafted HTTP request, as demonstrated by discovering mana...
Cisco Prime Infrastructure 2.2\\(2\\)
Cisco Prime Infrastructure 2.1.0
Cisco Prime Infrastructure 1.4
Cisco Prime Infrastructure 1.4.2
Cisco Prime Infrastructure 1.4.1
Cisco Prime Infrastructure 2.2
Cisco Prime Infrastructure 1.2.0.103
Cisco Prime Infrastructure 2.0
Cisco Prime Infrastructure 1.2.1
Cisco Prime Infrastructure 1.4.0.45
Cisco Prime Infrastructure 1.3.0.20
Cisco Prime Infrastructure 1.3
Cisco Prime Infrastructure 1.2
Cisco Evolved Programmable Network Manager 1.2.0
8.8
CVSSv3
CVE-2016-1406
The API web interface in Cisco Prime Infrastructure prior to 3.1 and Cisco Evolved Programmable Network Manager prior to 1.2.4 allows remote authenticated users to bypass intended RBAC restrictions and obtain sensitive information, and consequently gain privileges, via crafted JS...
Cisco Evolved Programmable Network Manager 1.2.1.3
Cisco Evolved Programmable Network Manager 1.2.0
Cisco Prime Infrastructure 1.4.2
Cisco Prime Infrastructure 1.4.1
Cisco Prime Infrastructure 2.2\\(2\\)
Cisco Prime Infrastructure 2.2
Cisco Prime Infrastructure 1.2.0.103
Cisco Prime Infrastructure 2.0
Cisco Prime Infrastructure 1.2.1
Cisco Prime Infrastructure 3.0
Cisco Prime Infrastructure 2.1.0
Cisco Prime Infrastructure 1.4
Cisco Evolved Programmable Network Manager 1.2.300
Cisco Evolved Programmable Network Manager 1.2.200
Cisco Prime Infrastructure 1.4.0.45
Cisco Prime Infrastructure 1.3.0.20
Cisco Prime Infrastructure 1.3
Cisco Prime Infrastructure 1.2
8.1
CVSSv3
CVE-2016-1290
The web API in Cisco Prime Infrastructure 1.2.0 up to and including 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allows remote authenticated users to bypass intended RBAC restrictions and gain privileges via an HTTP request that is inconsistent with a pattern ...
Cisco Prime Infrastructure 1.4.1
Cisco Prime Infrastructure 2.1.0
Cisco Prime Infrastructure 1.3.0.20
Cisco Prime Infrastructure 1.4.2
Cisco Prime Infrastructure 1.2
Cisco Evolved Programmable Network Manager 1.2.0
Cisco Prime Infrastructure 2.2\\\\\\(2\\\\\\)
Cisco Prime Infrastructure 2.2
Cisco Prime Infrastructure 1.4
Cisco Prime Infrastructure 2.0
Cisco Prime Infrastructure 1.2.0.103
Cisco Prime Infrastructure 1.4.0.45
Cisco Prime Infrastructure 1.2.1
Cisco Prime Infrastructure 1.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site scripting
CVE-2024-5158
XML external entity
CVE-2024-4262
CVE-2024-2036
CVE-2024-4985
CVE-2024-21791
remote attackers
CVE-2023-43208
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »