CVE-2023-44487
- EPSS 94.44%
- Published 10.10.2023 14:15:10
- Last modified 11.06.2025 17:29:54
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2020-3272
- EPSS 0.36%
- Published 22.05.2020 06:15:10
- Last modified 21.11.2024 05:30:41
A vulnerability in the DHCP server of Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of incom...
CVE-2020-3148
- EPSS 0.31%
- Published 04.03.2020 19:15:12
- Last modified 21.11.2024 05:30:25
A vulnerability in the web-based interface of Cisco Prime Network Registrar (CPNR) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient C...
CVE-2019-1840
- EPSS 0.54%
- Published 18.04.2019 02:29:06
- Last modified 21.11.2024 04:37:30
A vulnerability in the DHCPv6 input packet processor of Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to restart the server and cause a denial of service (DoS) condition on the affected system. The vulnerability is due...
CVE-2017-6613
- EPSS 0.29%
- Published 20.04.2017 22:59:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the DNS input packet processor for Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause the DNS process to momentarily restart, which could lead to a partial denial of service (DoS) condition on th...
CVE-2016-1427
- EPSS 0.31%
- Published 18.06.2016 01:59:00
- Last modified 12.04.2025 10:46:40
The System Configuration Protocol (SCP) core messaging interface in Cisco Prime Network Registrar 8.2 before 8.2.3.1 and 8.3 before 8.3.2 allows remote attackers to obtain sensitive information via crafted SCP messages, aka Bug ID CSCuv35694.
CVE-2015-6296
- EPSS 0.09%
- Published 18.09.2015 22:59:03
- Last modified 12.04.2025 10:46:40
Cisco Prime Network Registrar (CPNR) 8.1(3.3), 8.2(3), and 8.3(2) has a default account, which allows local users to obtain root access by leveraging knowledge of the credentials, aka Bug ID CSCuw21825.
CVE-2013-3394
- EPSS 0.25%
- Published 27.11.2013 04:43:33
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in the web interface in Cisco Prime Network Registrar 8.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted field, aka Bug ID CSCuh41429.