Vulnerabilities > Cisco > Mobility Services Engine

DATE CVE VULNERABILITY TITLE RISK
2015-07-10 CVE-2015-4263 Information Exposure vulnerability in Cisco Mobility Services Engine 10.0(0.1)
The Control and Provisioning functionality in Cisco Mobility Services Engine (MSE) 10.0(0.1) allows remote authenticated users to obtain sensitive information by reading log files, aka Bug ID CSCut36851.
network
low complexity
cisco CWE-200
4.0
2015-03-26 CVE-2015-0673 Information Exposure vulnerability in Cisco Mobility Services Engine 8.0(110.0)
Cisco Mobility Services Engine (MSE) 8.0(110.0) allows remote authenticated users to discover the passwords of arbitrary users by (1) reading log files or (2) using an unspecified GUI feature, aka Bug ID CSCut24792.
network
low complexity
cisco CWE-200
4.0
2013-09-04 CVE-2013-3469 Information Exposure vulnerability in Cisco Mobility Services Engine
Cisco Mobility Services Engine does not properly set up the Oracle SSL service, which allows remote attackers to obtain an unauthenticated session to the database-replication port, and consequently obtain sensitive information, via an SSL connection, aka Bug ID CSCue50794.
network
low complexity
cisco CWE-200
5.0