Vulnerabilities > Cisco > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-05-16 CVE-2019-1820 Path Traversal vulnerability in Cisco Prime Infrastructure
A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager software could allow an authenticated, remote attacker to download and view files within the application that should be restricted.
network
low complexity
cisco CWE-22
6.5
2019-05-16 CVE-2019-1819 Path Traversal vulnerability in Cisco Prime Infrastructure
A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager software could allow an authenticated, remote attacker to download and view files within the application that should be restricted.
network
low complexity
cisco CWE-22
6.5
2019-05-16 CVE-2019-1818 Path Traversal vulnerability in Cisco Prime Infrastructure
A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager software could allow an authenticated, remote attacker to download and view files within the application that should be restricted.
network
low complexity
cisco CWE-22
6.5
2019-05-15 CVE-2019-1813 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1812 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1811 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1810 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature used in an NX-OS CLI command in Cisco Nexus 3000 Series and 9000 Series Switches could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1809 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1808 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
4.4
2019-05-15 CVE-2019-1795 Argument Injection or Modification vulnerability in Cisco Nx-Os
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying Linux operating system with the privilege level of root.
local
low complexity
cisco CWE-88
6.7