Skip to main content

Vendor archive

cisco CVEs

Beta · best-effort

6,615 CVEs tagged to vendor cisco574 Critical, 2,397 High, 3,565 Medium, 77 Low, 2 Unrated.

CVE-2002-1222

Published Oct 28, 2002

Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote attackers to cause a denial of service (reset) via a long HTTP…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1189

Published Oct 11, 2002

The default configuration of Cisco Unity 2.x and 3.x does not block international operator calls in the predefined restriction tables, which could allow authenticated users to pla…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0886

Published Oct 4, 2002

Cisco DSL CPE devices running CBOS 2.4.4 and earlier allows remote attackers to cause a denial of service (hang or memory consumption) via (1) a large packet to the DHCP port, (2)…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0908

Published Oct 4, 2002

Directory traversal vulnerability in the web server for Cisco IDS Device Manager before 3.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTPS reque…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0938

Published Oct 4, 2002

Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0952

Published Oct 4, 2002

Cisco ONS15454 optical transport platform running ONS 3.1.0 to 3.2.0 allows remote attackers to cause a denial of service (reset) by sending IP packets with non-zero Type of Servi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0954

Published Oct 4, 2002

The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to d…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1092

Published Oct 4, 2002

Cisco VPN 3000 Concentrator 3.6(Rel) and earlier, and 2.x.x, when configured to use internal authentication with group accounts and without any user accounts, allows remote VPN cl…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1093

Published Oct 4, 2002

HTML interface for Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.0.3(B) allows remote attackers to cause a denial of service (CPU consumption) via a long URL request.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1104

Published Oct 4, 2002

Cisco Virtual Private Network (VPN) Client software 2.x.x and 3.x before 3.0.5 allows remote attackers to cause a denial of service (crash) via TCP packets with source and destina…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1105

Published Oct 4, 2002

Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.1C, allows local users to use a utility program to obtain the group password.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 6,476-6,500 of 6,615 CVEsPage 260 of 265