Vulnerabilities > Cisco > Network Level Service > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-08 CVE-2020-3567 Improper Input Validation vulnerability in Cisco Industrial Network Director and Network Level Service
A vulnerability in the management REST API of Cisco Industrial Network Director (IND) could allow an authenticated, remote attacker to cause the CPU utilization to increase to 100 percent, resulting in a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
6.5
2019-11-26 CVE-2019-15973 Cross-site Scripting vulnerability in Cisco Industrial Network Director and Network Level Service
A vulnerability in the web-based management interface of Cisco Industrial Network Director (IND) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected application.
network
low complexity
cisco CWE-79
6.1