Vulnerabilities > Cisco > Prime Central FOR Hosted Collaboration Solution Assurance

DATE CVE VULNERABILITY TITLE RISK
2015-08-01 CVE-2015-4292 Cross-site Scripting vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance 10.6(2)
Cross-site scripting (XSS) vulnerability in the management interface in Cisco Prime Central for Hosted Collaboration Solution (PC4HCS) 10.6(2) allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCuv45818.
network
cisco CWE-79
4.3
2013-09-20 CVE-2013-3473 Improper Authentication vulnerability in Cisco Prime Central FOR Hosted Collaboration Solution Assurance
The web framework in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance before 9.1.1 does not properly determine the existence of an authenticated session, which allows remote attackers to discover usernames and passwords via an HTTP request, aka Bug ID CSCud32600.
network
low complexity
cisco CWE-287
7.8
2013-08-25 CVE-2013-3390 Resource Management Errors vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance
Memory leak in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service (memory consumption) via a flood of TCP packets, aka Bug ID CSCub59158.
network
low complexity
cisco CWE-399
7.8
2013-08-25 CVE-2013-3389 Resource Management Errors vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance
Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service (memory consumption) via a flood of TCP packets to port (1) 61615 or (2) 61616, aka Bug ID CSCtz90114.
network
low complexity
cisco CWE-399
7.8
2013-08-25 CVE-2013-3388 Resource Management Errors vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance
Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service (memory consumption) via a flood of TCP packets to port 44444, aka Bug ID CSCtz92776.
network
low complexity
cisco CWE-399
7.8
2013-08-25 CVE-2013-3387 Resource Management Errors vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance
Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.x before 9.2(1) allows remote attackers to cause a denial of service (disk consumption) via a flood of TCP packets to port 5400, leading to large error-log files, aka Bug ID CSCua42724.
network
low complexity
cisco CWE-399
7.8
2013-02-27 CVE-2013-1135 Improper Input Validation vulnerability in Cisco Prime Central for Hosted Collaboration Solution Assurance 8.6/9.0
Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance 8.6 and 9.0 allows remote attackers to cause a denial of service (CPU consumption and monitoring outage) via malformed TLS messages to TCP port (1) 9043 or (2) 9443, aka Bug ID CSCuc07155.
network
cisco CWE-20
7.1