Vulnerabilities > Cisco > Enterprise Network Virtualization Software

DATE CVE VULNERABILITY TITLE RISK
2018-10-17 CVE-2018-15402 Cross-Site Request Forgery (CSRF) vulnerability in Cisco Enterprise Network Virtualization Software Nfvis8.0/Nfvis9.0
A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to conduct cross-site request forgery (CSRF) attacks.
network
low complexity
cisco CWE-352
8.8
2018-10-05 CVE-2018-0462 Improper Input Validation vulnerability in Cisco Enterprise Network Virtualization Software Nfvis6.0/Nfvis8.0
A vulnerability in the user management functionality of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform a denial of service (DoS) attack against an affected system.
network
low complexity
cisco CWE-20
4.9