CVE-2018-0358
- EPSS 1.41%
- Published 21.06.2018 11:29:00
- Last modified 21.11.2024 03:38:03
A vulnerability in the file descriptor handling of Cisco TelePresence Video Communication Server (VCS) Expressway could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to exhaustion of ...
CVE-2017-12287
- EPSS 0.5%
- Published 19.10.2017 08:29:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the cluster database (CDB) management component of Cisco Expressway Series Software and Cisco TelePresence Video Communication Server (VCS) Software could allow an authenticated, remote attacker to cause the CDB process on an affec...
CVE-2017-6790
- EPSS 1.8%
- Published 17.08.2017 20:29:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the targeted appliance. The vulnerabil...
CVE-2017-3790
- EPSS 0.3%
- Published 01.02.2017 19:59:00
- Last modified 20.04.2025 01:37:25
A vulnerability in the received packet parser of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) software could allow an unauthenticated, remote attacker to cause a reload of the affected system, resulting in a denial ...
CVE-2016-1468
- EPSS 1.5%
- Published 08.08.2016 00:59:06
- Last modified 12.04.2025 10:46:40
The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbitrary commands via crafted fields, aka Bug ID CSCuv12531.
CVE-2016-1444
- EPSS 0.1%
- Published 07.07.2016 14:59:05
- Last modified 12.04.2025 10:46:40
The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.6 mishandles certificates, which allows remote attackers to bypass authentication via an arbitrary tr...
CVE-2016-1400
- EPSS 0.72%
- Published 25.05.2016 01:59:08
- Last modified 12.04.2025 10:46:40
Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via a crafted URI in a SIP header, aka Bug ID CSCuy43258.
CVE-2015-0752
- EPSS 0.26%
- Published 29.05.2015 15:59:06
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCut27635.
- EPSS 0.85%
- Published 14.01.2015 19:59:03
- Last modified 12.04.2025 10:46:40
Cisco TelePresence Video Communication Server (VCS) and Cisco Expressway allow remote attackers to cause a denial of service (memory and CPU consumption, and partial outage) via crafted SIP packets, aka Bug ID CSCur12473.