Vulnerabilities > Cisco > Elastic Services Controller > 2.0

DATE CVE VULNERABILITY TITLE RISK
2021-01-20 CVE-2021-1312 Resource Exhaustion vulnerability in Cisco Elastic Services Controller
A vulnerability in the system resource management of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) to the health monitor API on an affected device.
network
low complexity
cisco CWE-400
7.5
2017-07-06 CVE-2017-6713 Allocation of Resources Without Limits or Throttling vulnerability in Cisco Elastic Services Controller
A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to gain full access to the affected system.
network
low complexity
cisco CWE-770
critical
10.0
2017-07-06 CVE-2017-6712 OS Command Injection vulnerability in Cisco Elastic Services Controller
A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run dangerous commands on the server.
network
low complexity
cisco CWE-78
critical
9.0