Vulnerabilities > Cisco > Prime Access Registrar

DATE CVE VULNERABILITY TITLE RISK
2023-10-10 CVE-2023-44487 Resource Exhaustion vulnerability in multiple products
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
7.5
2021-11-04 CVE-2021-34731 Cross-site Scripting vulnerability in Cisco Prime Access Registrar
A vulnerability in the web-based management interface of Cisco Prime Access Registrar could allow an authenticated, remote attacker to perform a stored cross-site scripting attack on an affected system.
network
low complexity
cisco CWE-79
4.8
2018-10-05 CVE-2018-0421 Missing Release of Resource after Effective Lifetime vulnerability in Cisco products
A vulnerability in TCP connection management in Cisco Prime Access Registrar could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition when the application unexpectedly restarts.
network
low complexity
cisco CWE-772
5.0