Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco content security management appliance vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2021-1359
A vulnerability in the configuration management of Cisco AsyncOS for Cisco Web Security Appliance (WSA) could allow an authenticated, remote malicious user to perform command injection and elevate privileges to root. This vulnerability is due to insufficient validation of user-su...
Cisco Web Security Appliance 11.8.0-429
Cisco Web Security Appliance 11.8.0-453
Cisco Asyncos
8.8
CVSSv3
CVE-2020-3415
A vulnerability in the Data Management Engine (DME) of Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to execute arbitrary code with administrative privileges or cause a denial of service (DoS) condition on an affected device. The vulnerability is du...
Cisco Nx-os -
Cisco Nx-os
8.8
CVSSv3
CVE-2020-3172
A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to execute arbitrary code as root or cause a denial of service (DoS) condition on an affected device. The vulnerability ...
Cisco Firepower Extensible Operating System
Cisco Ucs Manager
Cisco Nx-os -
Cisco Nx-os 5.2\\(1\\)sv5\\(1.2\\)
Cisco Nx-os 7.3\\(5\\)n1\\(1\\)
Cisco Nx-os 7.3\\(0\\)d1\\(0.140\\)
Cisco Nx-os 7.3\\(0\\)d1\\(0.146\\)
Cisco Nx-os 7.0\\(3\\)i3\\(0.191\\)
Cisco Nx-os 13.2\\(7.230\\)
Cisco Nx-os 14.2\\(1i\\)
1 Github repository
8.8
CVSSv3
CVE-2019-15956
A vulnerability in the web management interface of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote malicious user to perform an unauthorized system reset on an affected device. The vulnerability is due to improper authorization c...
Cisco Asyncos
Cisco Web Security Appliance 10.5.2-072
Cisco Web Security Appliance 11.5.1-fcs-125
Cisco Web Security Appliance 11.7.0-fcs-418
8.8
CVSSv3
CVE-2019-1934
A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote malicious user to elevate privileges and execute administrative functions on an affected device. The vulnerability is due to insufficient...
Cisco Adaptive Security Appliance Software
8.8
CVSSv3
CVE-2019-1713
A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CS...
Cisco Adaptive Security Appliance Software
8.8
CVSSv3
CVE-2018-0365
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to ...
Cisco Firepower Management Center 6.0.1
Cisco Firepower Management Center 6.1.0
Cisco Firepower Management Center 6.2.0
Cisco Firepower Management Center 6.2.1
Cisco Firepower Management Center 6.2.2
Cisco Firepower Management Center 6.2.3
Cisco Firepower Appliance 8360 Firmware 6.1.0
Cisco Firepower Appliance 8360 Firmware 6.2.0
Cisco Firepower Appliance 8360 Firmware 6.2.1
Cisco Firepower Appliance 8360 Firmware 6.2.2
Cisco Firepower Appliance 8360 Firmware 6.2.3
Cisco Firepower Appliance 8360 Firmware 6.0.1
Cisco Firepower Management Center 2500 Firmware 6.2.2
Cisco Firepower Management Center 2500 Firmware 6.0.1
Cisco Firepower Management Center 2500 Firmware 6.1.0
Cisco Firepower Management Center 2500 Firmware 6.2.0
Cisco Firepower Management Center 2500 Firmware 6.2.1
Cisco Firepower Management Center 2500 Firmware 6.2.3
Cisco Firepower Appliance 8120 Firmware 6.1.0
Cisco Firepower Appliance 8120 Firmware 6.2.1
Cisco Firepower Appliance 8120 Firmware 6.2.3
Cisco Firepower Appliance 8120 Firmware 6.2.0
8.8
CVSSv3
CVE-2015-7849
Use-after-free vulnerability in ntpd in NTP 4.2.x prior to 4.2.8p4, and 4.3.x prior to 4.3.77 allows remote authenticated users to possibly execute arbitrary code or cause a denial of service (crash) via crafted packets.
Ntp Ntp
Ntp Ntp 4.2.8
Netapp Oncommand Balance -
Netapp Oncommand Performance Manager -
Netapp Oncommand Unified Manager -
Netapp Clustered Data Ontap -
Netapp Data Ontap -
8.8
CVSSv3
CVE-2015-7854
Buffer overflow in the password management functionality in NTP 4.2.x prior to 4.2.8p4, and 4.3.x prior to 4.3.77 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted key file.
Ntp Ntp
Ntp Ntp 4.2.8
Netapp Oncommand Balance -
Netapp Oncommand Performance Manager -
Netapp Oncommand Unified Manager -
Netapp Clustered Data Ontap -
Netapp Data Ontap -
8.8
CVSSv3
CVE-2016-1457
The web-based GUI in Cisco Firepower Management Center 4.x and 5.x prior to 5.3.1.2 and 5.4.x prior to 5.4.0.1 and Cisco Adaptive Security Appliance (ASA) Software on 5500-X devices with FirePOWER Services 4.x and 5.x prior to 5.3.1.2 and 5.4.x prior to 5.4.0.1 allows remote auth...
Cisco Firepower Management Center 5.3.0.4
Cisco Firepower Management Center 5.2.0
Cisco Firepower Management Center 5.3.1
Cisco Firepower Management Center 5.4.0
Cisco Firepower Management Center 4.10.3.9
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site scripting
CVE-2024-5158
XML external entity
CVE-2024-4262
CVE-2024-2036
CVE-2024-4985
CVE-2024-21791
remote attackers
CVE-2023-43208
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »