Vulnerabilities > Cisco > Network Assurance Engine > High

DATE CVE VULNERABILITY TITLE RISK
2019-02-12 CVE-2019-1688 Use of Hard-coded Credentials vulnerability in Cisco Network Assurance Engine 3.0(1)
A vulnerability in the management web interface of Cisco Network Assurance Engine (NAE) could allow an unauthenticated, local attacker to gain unauthorized access or cause a Denial of Service (DoS) condition on the server.
local
low complexity
cisco CWE-798
7.1
2018-08-06 CVE-2018-5390 Resource Exhaustion vulnerability in multiple products
Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service.
7.5