Vulnerabilities > Cisco > IP Interoperability AND Collaboration System

DATE CVE VULNERABILITY TITLE RISK
2016-11-03 CVE-2016-6430 Permissions, Privileges, and Access Controls vulnerability in Cisco IP Interoperability and Collaboration System
A vulnerability in the command-line interface of the Cisco IP Interoperability and Collaboration System (IPICS) could allow an authenticated, local attacker to elevate the privilege level associated with their session.
local
low complexity
cisco CWE-264
7.8
2016-11-03 CVE-2016-6429 Cross-site Scripting vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1)
A vulnerability in the web framework code of the Cisco IP Interoperability and Collaboration System (IPICS) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack.
network
low complexity
cisco CWE-79
6.1
2016-10-28 CVE-2016-6397 Improper Authentication vulnerability in Cisco IP Interoperability and Collaboration System
A vulnerability in the interdevice communications interface of the Cisco IP Interoperability and Collaboration System (IPICS) Universal Media Services (UMS) could allow an unauthenticated, remote attacker to modify configuration parameters of the UMS and cause the system to become unavailable.
network
low complexity
cisco CWE-287
critical
9.8
2016-04-08 CVE-2016-1375 Cross-site Scripting vulnerability in Cisco IP Interoperability and Collaboration System 4.10
Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy12339.
network
low complexity
cisco CWE-79
6.1