Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2013-09-06 CVE-2013-1117 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco Webex Recording Format Player
Buffer overflow in the exception handler in Cisco WebEx Recording Format (WRF) player T27 LD before SP32 EP16, T27 L10N before SP32_ORION111, and T28 before T28.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted WRF file, aka Bug ID CSCuc27639.
network
cisco CWE-119
critical
9.3
2013-09-06 CVE-2013-1116 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco Webex Advanced Recording Format Player
Buffer overflow in Cisco WebEx Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T27 L10N before SP32_ORION111, and T28 before T28.8 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted ARF file, aka Bug IDs CSCue74147 and CSCub28383.
network
cisco CWE-119
critical
9.3
2013-09-06 CVE-2013-1115 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco Webex Advanced Recording Format Player
Buffer overflow in Cisco WebEx Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T27 L10N before SP32_ORION111, and T28 before T28.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ARF file, aka Bug IDs CSCue74118, CSCub28371, CSCud23401, and CSCud31109.
network
cisco CWE-119
critical
9.3
2013-08-31 CVE-2012-6605 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 34896.
network
low complexity
paloaltonetworks CWE-78
critical
9.0
2013-08-31 CVE-2012-6604 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Ref ID 35249.
network
low complexity
paloaltonetworks CWE-78
critical
9.0
2013-08-31 CVE-2012-6603 Improper Authentication vulnerability in Paloaltonetworks Pan-Os
The web management UI in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to bypass authentication and obtain administrator privileges via unspecified vectors, aka Ref ID 37034.
network
low complexity
paloaltonetworks CWE-287
critical
10.0
2013-08-31 CVE-2012-6602 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 30122.
network
low complexity
paloaltonetworks CWE-78
critical
9.0
2013-08-31 CVE-2012-6601 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to execute arbitrary code via unspecified vectors, aka Ref ID 36983.
network
low complexity
paloaltonetworks CWE-78
critical
10.0
2013-08-31 CVE-2012-6600 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 34502.
network
low complexity
paloaltonetworks CWE-78
critical
9.0
2013-08-31 CVE-2012-6599 OS Command Injection vulnerability in Paloaltonetworks Pan-Os
The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Ref ID 33476.
network
low complexity
paloaltonetworks CWE-78
critical
9.0