Show filters
23 Total Results
Displaying 11-20 of 23
Sort by:
Attacker Value
Unknown

CVE-2016-1331

Disclosure Date: February 15, 2016 (last updated November 25, 2024)
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 11.5(0.99833.5) allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuy10766.
0
Attacker Value
Unknown

CVE-2016-1319

Disclosure Date: February 09, 2016 (last updated November 25, 2024)
Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified Contact Center Express 11.0(1); and Unity Connection 10.5(2) store a cleartext encryption key, which allows local users to obtain sensitive information via unspecified vectors, aka Bug ID CSCuv85958.
0
Attacker Value
Unknown

CVE-2016-1302

Disclosure Date: February 07, 2016 (last updated November 25, 2024)
Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) and 11.1 before 11.1(1j) allow remote authenticated users to bypass intended RBAC restrictions via crafted REST requests, aka Bug ID CSCut12998.
0
Attacker Value
Unknown

CVE-2016-1310

Disclosure Date: February 06, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cisco Unity Connection 11.5(0.199) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy09033.
0
Attacker Value
Unknown

CVE-2016-1306

Disclosure Date: February 06, 2016 (last updated November 25, 2024)
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Fog Director 1.0(0) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCux80466.
0
Attacker Value
Unknown

CVE-2015-6319

Disclosure Date: January 27, 2016 (last updated November 25, 2024)
SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows remote attackers to execute arbitrary SQL commands via a crafted header in an HTTP request, aka Bug ID CSCuv29574.
0
Attacker Value
Unknown

CVE-2010-0559

Disclosure Date: February 05, 2010 (last updated October 04, 2023)
The default configuration of Oracle OpenSolaris snv_91 through snv_131 allows attackers to have an unspecified impact via vectors related to using kclient to join a Windows Active Directory domain.
0
Attacker Value
Unknown

CVE-2010-0558

Disclosure Date: February 05, 2010 (last updated October 04, 2023)
The default configuration of Oracle OpenSolaris snv_77 through snv_131 allows attackers to have an unspecified impact via vectors related to using smbadm to join a Windows Active Directory domain.
0
Attacker Value
Unknown

CVE-2010-0453

Disclosure Date: February 03, 2010 (last updated October 04, 2023)
The ucode_ioctl function in intel/io/ucode_drv.c in Sun Solaris 10 and OpenSolaris snv_69 through snv_133, when running on x86 architectures, allows local users to cause a denial of service (panic) via a request with a 0 size value to the UCODE_GET_VERSION IOCTL, which triggers a NULL pointer dereference in the ucode_get_rev function, related to retrieval of the microcode revision.
0
Attacker Value
Unknown

CVE-2010-0271

Disclosure Date: January 08, 2010 (last updated October 04, 2023)
hald in Sun OpenSolaris snv_51 through snv_130 does not have the proc_audit privilege during unspecified attempts to write to the auditing log, which makes it easier for physically proximate attackers to avoid detection of changes to the set of connected hardware devices supporting the Hardware Abstraction Layer (HAL) specification.
0