CVE-2021-1384
- EPSS 35.39%
- Veröffentlicht 24.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:44:13
A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remote attacker to inject commands into the underlying operating system as the root user. This vulnerability is due to incomplete vali...
CVE-2021-1385
- EPSS 2.67%
- Veröffentlicht 24.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:44:13
A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could allow an authenticated, remote attacker to conduct directory traversal attacks and read and write files on the underlying operating system or host syst...
CVE-2021-1390
- EPSS 0.33%
- Veröffentlicht 24.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:44:14
A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local attacker to execute arbitrary code on an affected device. To exploit this vulnerability, the attacker would need to have valid use...
CVE-2021-1391
- EPSS 0.31%
- Veröffentlicht 24.03.2021 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:44:14
A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escalate from privilege level 15 to root privilege. The vulnerability is due to the presence of development testing and verification sc...
CVE-2021-1223
- EPSS 1.99%
- Veröffentlicht 13.01.2021 22:15:20
- Zuletzt bearbeitet 11.08.2026 19:37:30
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerability is due to incorrect handling of an HTTP range he...
CVE-2021-1224
- EPSS 2.01%
- Veröffentlicht 13.01.2021 22:15:20
- Zuletzt bearbeitet 11.08.2026 19:37:30
Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection engine that could allow an unauthenticated, remote attacker to bypass a configured file policy for HTTP. The vulnerabil...
CVE-2021-1236
- EPSS 2.15%
- Veröffentlicht 13.01.2021 22:15:20
- Zuletzt bearbeitet 11.08.2026 19:37:30
Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. The vulnerability is due to a flaw in the ...
CVE-2020-3444
- EPSS 1.49%
- Veröffentlicht 06.11.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:31:04
A vulnerability in the packet filtering features of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic filters. The vulnerability is due to improper traffic filtering conditions on an affected device. An...
CVE-2020-3509
- EPSS 1.42%
- Veröffentlicht 24.09.2020 18:15:21
- Zuletzt bearbeitet 21.11.2024 05:31:13
A vulnerability in the DHCP message handler of Cisco IOS XE Software for Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to cause the supervisor to crash, which could result in a denial of service (DoS) conditi...
CVE-2020-3510
- EPSS 1.38%
- Veröffentlicht 24.09.2020 18:15:21
- Zuletzt bearbeitet 21.11.2024 05:31:13
A vulnerability in the Umbrella Connector component of Cisco IOS XE Software for Cisco Catalyst 9200 Series Switches could allow an unauthenticated, remote attacker to trigger a reload, resulting in a denial of service condition on an affected device...