Vulnerabilities > Cisco > Catalyst

DATE CVE VULNERABILITY TITLE RISK
2009-07-29 CVE-2009-1166 Unspecified vulnerability in Cisco Catalyst 3750G
The administrative web interface on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0 and 5.x before 5.2.191.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and Catalyst 3750G Integrated Wireless LAN Controllers, allows remote attackers to cause a denial of service (device reload) via a crafted (1) HTTP or (2) HTTPS request, aka Bug ID CSCsy27708.
network
low complexity
cisco
7.8
2009-02-26 CVE-2009-0625 Code Injection vulnerability in Cisco ACE 4710 and Application Control Engine Module
Unspecified vulnerability in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.2) and Cisco ACE 4710 Application Control Engine Appliance before A1(8.0) allows remote attackers to cause a denial of service (device reload) via a crafted SNMPv3 packet.
network
low complexity
cisco CWE-94
7.8
2009-02-26 CVE-2009-0623 Remote vulnerability in Multiple Cisco ACE Products
Unspecified vulnerability in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.3) and Cisco ACE 4710 Application Control Engine Appliance before A3(2.1) allows remote attackers to cause a denial of service (device reload) via a crafted SSH packet.
network
low complexity
cisco
7.8
2009-02-26 CVE-2009-0620 Credentials Management vulnerability in Cisco Application Control Engine Module
Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.1) uses default (1) usernames and (2) passwords for (a) the administrator and (b) web management, which makes it easier for remote attackers to perform configuration changes or obtain operating-system access.
network
low complexity
cisco CWE-255
critical
10.0
2005-12-15 CVE-2005-4258 Cisco Catalyst Switches LanD Packet Denial Of Service vulnerability in Multiple
Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD).
network
low complexity
cisco
7.8
2005-06-10 CVE-2005-1942 Security Bypass vulnerability in Catalyst
Cisco switches that support 802.1x security allow remote attackers to bypass port security and gain access to the VLAN via spoofed Cisco Discovery Protocol (CDP) messages.
network
low complexity
cisco
7.5