Vulnerabilities > Cisco > High

DATE CVE VULNERABILITY TITLE RISK
2019-08-07 CVE-2019-1926 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-119
7.8
2019-08-07 CVE-2019-1924 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-119
7.8
2019-08-07 CVE-2019-1918 Incorrect Calculation vulnerability in Cisco Carrier Routing System and IOS XR
A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS-IS area to cause a denial of service (DoS) condition.
low complexity
cisco CWE-682
7.4
2019-08-07 CVE-2019-1925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-119
7.8
2019-08-07 CVE-2019-1910 Improper Input Validation vulnerability in Cisco IOS XR
A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS–IS area to cause a denial of service (DoS) condition.
low complexity
cisco CWE-20
7.4
2019-08-07 CVE-2019-1914 Improper Input Validation vulnerability in Cisco products
A vulnerability in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an authenticated, remote attacker to perform a command injection attack.
network
low complexity
cisco CWE-20
7.2
2019-07-31 CVE-2019-1901 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Nx-Os
A vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an adjacent, unauthenticated attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privileges.
low complexity
cisco CWE-119
8.8
2019-07-17 CVE-2019-1920 Unspecified vulnerability in Cisco products
A vulnerability in the 802.11r Fast Transition (FT) implementation for Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected interface.
low complexity
cisco
7.4
2019-07-17 CVE-2019-1919 Use of Hard-coded Credentials vulnerability in Cisco Findit Network Manager and Findit Network Probe
A vulnerability in the Cisco FindIT Network Management Software virtual machine (VM) images could allow an unauthenticated, local attacker who has access to the VM console to log in to the device with a static account that has root privileges.
local
low complexity
cisco CWE-798
7.8
2019-07-10 CVE-2019-1873 Improper Input Validation vulnerability in Cisco products
A vulnerability in the cryptographic driver for Cisco Adaptive Security Appliance Software (ASA) and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reboot unexpectedly.
network
low complexity
cisco CWE-20
8.6