Show filters
59 Total Results
Displaying 51-59 of 59
Sort by:
Attacker Value
Unknown

CVE-2016-1365

Disclosure Date: August 18, 2016 (last updated November 25, 2024)
The Grapevine update process in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0 allows remote authenticated users to execute arbitrary commands as root via a crafted upgrade parameter, aka Bug ID CSCux15507.
0
Attacker Value
Unknown

CVE-2016-1420

Disclosure Date: June 10, 2016 (last updated November 25, 2024)
The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access via unspecified vectors, aka Bug ID CSCuz72347.
0
Attacker Value
Unknown

CVE-2016-1386

Disclosure Date: April 28, 2016 (last updated November 25, 2024)
The API in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0(1) allows remote attackers to spoof administrative notifications via crafted attribute-value pairs, aka Bug ID CSCux15521.
0
Attacker Value
Unknown

CVE-2016-1318

Disclosure Date: February 09, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.1 allows remote attackers to inject arbitrary web script or HTML via crafted markup data, aka Bug ID CSCux15489.
0
Attacker Value
Unknown

CVE-2016-1305

Disclosure Date: February 07, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving HTML entities, aka Bug ID CSCux15511.
0
Attacker Value
Unknown

CVE-2015-6337

Disclosure Date: January 26, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0.10 allows remote attackers to inject arbitrary web script or HTML via a crafted hostname in an SNMP response, aka Bug ID CSCuw47238.
0
Attacker Value
Unknown

CVE-2015-6424

Disclosure Date: December 18, 2015 (last updated October 05, 2023)
The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions and obtain single-user-mode root access via unspecified vectors, aka Bug ID CSCuu83985.
0
Attacker Value
Unknown

CVE-2015-6333

Disclosure Date: October 16, 2015 (last updated October 05, 2023)
Cisco Application Policy Infrastructure Controller (APIC) 1.1j allows local users to gain privileges via vectors involving addition of an SSH key, aka Bug ID CSCuw46076.
0
Attacker Value
Unknown

CVE-2015-4235

Disclosure Date: July 24, 2015 (last updated October 05, 2023)
Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3o) and 1.1 before 1.1(1j) and Nexus 9000 ACI devices with software before 11.0(4o) and 11.1 before 11.1(1j) do not properly restrict access to the APIC filesystem, which allows remote authenticated users to obtain root privileges via unspecified use of the APIC cluster-management configuration feature, aka Bug IDs CSCuu72094 and CSCuv11991.
0