Vulnerabilities > Cisco > Umbrella

DATE CVE VULNERABILITY TITLE RISK
2018-10-05 CVE-2018-0435 Improper Authentication vulnerability in Cisco Umbrella
A vulnerability in the Cisco Umbrella API could allow an authenticated, remote attacker to view and modify data across their organization and other organizations.
network
low complexity
cisco CWE-287
6.5
2017-12-01 CVE-2017-6679 Unspecified vulnerability in Cisco Umbrella 2.0.3
The Cisco Umbrella Virtual Appliance Version 2.0.3 and prior contained an undocumented encrypted remote support tunnel (SSH) which auto initiated from the customer's appliance to Cisco's SSH Hubs in the Umbrella datacenters.
local
high complexity
cisco
6.4