Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
owasp vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2017-6733
A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote malicious user to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More In...
Cisco Identity Services Engine 2.3\\(0.151\\)
Cisco Identity Services Engine 2.2\\(0.283\\)
Cisco Identity Services Engine 2.1\\(102.101\\)
5.4
CVSSv3
CVE-2017-6734
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected device, related to the Gues...
Cisco Identity Services Engine 1.3\\(0.909\\)
Cisco Identity Services Engine 2.1 Base
Cisco Identity Services Engine 1.3\\(0.722\\)
Cisco Identity Services Engine 1.3\\(106.146\\)
Cisco Identity Services Engine 1.3\\(0.876\\)
Cisco Identity Services Engine 1.3\\(120.135\\)
Cisco Identity Services Engine 2.1\\(0.474\\)
Cisco Identity Services Engine 2.1\\(0.800\\)
Cisco Identity Services Engine 2.1\\(102.101\\)
6.1
CVSSv3
CVE-2016-1451
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Meeting Server (formerly Acano Conferencing Server) 1.7 up to and including 1.9 allows remote malicious users to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva199...
Cisco Meeting Server 1.8 Base
Cisco Meeting Server 1.9 Base
Cisco Meeting Server 1.7 Base
6.1
CVSSv3
CVE-2017-6699
A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Evolved Programmable Network Manager (EPNM) could allow an unauthenticated, remote malicious user to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based ...
Cisco Prime Infrastructure 3.1
Cisco Evolved Programmable Network Manager 2.0\\(4.0.45b\\)
Cisco Evolved Programmable Network Manager 2.0\\(4.0.45d\\)
Cisco Prime Infrastructure 3.1\\(0.128\\)
Cisco Prime Infrastructure 3.1.1
Cisco Evolved Programmable Network Manager 2.0.0
6.1
CVSSv3
CVE-2017-6654
A vulnerability in the web-based management interface of Cisco Unified Communications Manager 10.5 up to and including 11.5 could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of...
Cisco Unified Communications Manager 11.5\\(1.10000.6\\)
Cisco Unified Communications Manager 11.0\\(1.10000.10\\)
Cisco Unified Communications Manager 10.5\\(2.10000.5\\)
6.1
CVSSv3
CVE-2017-6761
A vulnerability in the web-based management interface of Cisco Finesse 10.6(1) and 11.5(1) could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerab...
Cisco Finesse 11.5\\(1\\)
Cisco Finesse 10.6\\(1\\)
6.1
CVSSv3
CVE-2017-6762
A vulnerability in the web-based management interface of Cisco Jabber Guest Server 10.6(9), 11.0(0), and 11.0(1) could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affect...
Cisco Jabber Guest 10.6.11
Cisco Jabber Guest 10.6.9
Cisco Jabber Guest 11.0.0
Cisco Jabber Guest 10.6.10
Cisco Jabber Guest 10.6.12
6.1
CVSSv3
CVE-2017-12290
Multiple vulnerabilities in the web interface of the Cisco Registered Envelope Service (a cloud-based service) could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack or redirect a user of the affected service to an undesired web page....
Cisco Email Encryption 5.3.0-038
Cisco Email Encryption 5.3.0
6.1
CVSSv3
CVE-2017-12291
Multiple vulnerabilities in the web interface of the Cisco Registered Envelope Service (a cloud-based service) could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack or redirect a user of the affected service to an undesired web page....
Cisco Email Encryption 5.3.0
Cisco Email Encryption 5.3.0-038
6.1
CVSSv3
CVE-2017-12292
Multiple vulnerabilities in the web interface of the Cisco Registered Envelope Service (a cloud-based service) could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack or redirect a user of the affected service to an undesired web page....
Cisco Email Encryption 5.3.0-038
Cisco Email Encryption 5.3.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
NEXT »