Vulnerabilities > Cisco

DATE CVE VULNERABILITY TITLE RISK
2021-01-20 CVE-2021-1219 Unspecified vulnerability in Cisco Smart Software Manager On-Prem 5.0/5.1.0
A vulnerability in Cisco Smart Software Manager Satellite could allow an authenticated, local attacker to access sensitive information on an affected system.
local
low complexity
cisco
7.8
2021-01-20 CVE-2021-1218 Unspecified vulnerability in Cisco Smart Software Manager On-Prem 5.0
A vulnerability in the web management interface of Cisco Smart Software Manager satellite could allow an authenticated, remote attacker to redirect a user to an undesired web page.
network
low complexity
cisco
5.4
2021-01-20 CVE-2021-1142 OS Command Injection vulnerability in Cisco Smart Software Manager Satellite 5.1.0
Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system.
network
low complexity
cisco CWE-78
critical
9.8
2021-01-20 CVE-2021-1141 OS Command Injection vulnerability in Cisco Smart Software Manager Satellite 5.1.0
Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system.
network
low complexity
cisco CWE-78
8.8
2021-01-20 CVE-2021-1140 OS Command Injection vulnerability in Cisco Smart Software Manager Satellite 5.1.0
Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system.
network
low complexity
cisco CWE-78
critical
9.8
2021-01-20 CVE-2021-1139 OS Command Injection vulnerability in Cisco Smart Software Manager Satellite 5.1.0
Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system.
network
low complexity
cisco CWE-78
8.8
2021-01-20 CVE-2021-1138 OS Command Injection vulnerability in Cisco Smart Software Manager Satellite 5.1.0
Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system.
network
low complexity
cisco CWE-78
critical
9.8
2021-01-20 CVE-2021-1135 Unspecified vulnerability in Cisco Data Center Network Manager
Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization.
network
low complexity
cisco
4.3
2021-01-20 CVE-2021-1364 SQL Injection vulnerability in Cisco products
Multiple vulnerabilities in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an attacker to conduct path traversal attacks and SQL injection attacks on an affected system.
network
low complexity
cisco CWE-89
4.9
2021-01-20 CVE-2021-1357 Path Traversal vulnerability in Cisco products
Multiple vulnerabilities in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an attacker to conduct path traversal attacks and SQL injection attacks on an affected system.
network
low complexity
cisco CWE-22
6.5