Vulnerabilities > Cisco

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-15280 Cross-site Scripting vulnerability in Cisco Firepower Management Center
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface.
network
cisco CWE-79
3.5
2019-10-16 CVE-2019-15277 OS Command Injection vulnerability in Cisco Telepresence Collaboration Endpoint
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute code with root privileges.
local
low complexity
cisco CWE-78
7.2
2019-10-16 CVE-2019-15275 OS Command Injection vulnerability in Cisco Telepresence Collaboration Endpoint
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges.
local
low complexity
cisco CWE-78
7.2
2019-10-16 CVE-2019-15274 Improper Input Validation vulnerability in Cisco Telepresence Collaboration Endpoint
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to perform command injections.
local
low complexity
cisco CWE-20
7.2
2019-10-16 CVE-2019-15273 Unspecified vulnerability in Cisco Telepresence Collaboration Endpoint
Multiple vulnerabilities in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to overwrite arbitrary files.
local
low complexity
cisco
6.6
2019-10-16 CVE-2019-15270 Cross-site Scripting vulnerability in Cisco Firepower Management Center Firmware
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface.
network
cisco CWE-79
3.5
2019-10-16 CVE-2019-15269 Cross-site Scripting vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface.
network
cisco CWE-79
3.5
2019-10-16 CVE-2019-15268 Cross-site Scripting vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface.
network
cisco CWE-79
3.5
2019-10-16 CVE-2019-15266 Path Traversal vulnerability in Cisco Wireless LAN Controller Software
A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker to view system files that should be restricted.
local
low complexity
cisco CWE-22
2.1
2019-10-16 CVE-2019-15265 Improper Input Validation vulnerability in Cisco products
A vulnerability in the bridge protocol data unit (BPDU) forwarding functionality of Cisco Aironet Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an AP port to go into an error disabled state.
local
low complexity
cisco CWE-20
2.1